Supplier Cybersecurity Controls Lead Assessor, Vice

2 weeks ago


Singapore JPMorgan Chase Bank, N.A. Full time
The Supplier Assurance Services team performs comprehensive risk assessments of suppliers within JPMC's Corporate Third Party Oversight program.

Supplier Assurance Services also supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC's supply chain.

Supplier Assurance Services is part of Global Supplier Services, reporting directly to JPMC's Global Head of Corporate Third Party Oversight.


  • Identifying opportunities to improve third party risk posture, developing creative solutions for mitigating risks
  • Liaising with JPMC and supplier's senior managers to communicate and influence best risk practices
  • Driving compliance to adhere to best risk management practices throughout the organizations

Responsibilities:

  • Deliver comprehensive supplier assessments assigned to the Singapore assessment operations hub, Strong delivery and execution mindset with the ability to engage and influence at all levels
  • Manage all aspects of the control assessment of suppliers including assessing completed questionnaires and supporting field work materials to ensure they are complete and meet JPMC expectations
  • Lead the onsite / virtual assessment, providing the overall technology and cybersecurity risk and controls expertise
  • Identify and document control breaks and vulnerabilities within suppliers' IT environments and work with the Lines of Business Delivery Manager and Information Security Manager to resolve through action plans or seek risk acceptance approvals
  • Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc.
  • Support internal education and best practices sharing with peers and colleagues, as well as third party education & awareness

Required qualifications, capabilities, and skills

  • Minimum of a Bachelor's degree or equivalent
  • Minimum 6 years of experience in one or more Cybersecurity or Technology Controls disciplines including global operations delivery preferably in the Financial Services Industry
  • Minimum 6 years of experience in information technology risk management, third party outsourcing risk management including risk identification, classification, and remediation
  • Experience and good understanding of one or more technology areas, including Data security, Infrastructure security, Endpoint/Platform security, Security Analytics, Authentication/Identity Management, Mobile Security, Application Security, Network Security, Cyber Resiliency, Incident Management, Cloud Security
  • Understanding of industry risk frameworks e.g., ISO27001, NIST
  • Experience debating issues with senior decision makers and pushing back when necessary
  • Strong written and verbal presentation skills at the senior management level across various business groups
  • Proficiency in Chinese is required as this role will be managing and leading Chinese language assessments as majority of book of work assigned to the location requires this, and also this role will lead the Supplier Assurance Services assessors in China International Fund Management integration

Preferred qualifications, capabilities, and skills

  • CISSP, CISA, CISM, CCSP or CRISC certification is a plus
J.P.

Morgan is a global leader in financial services, providing strategic advice and products to the world's most prominent corporations, governments, wealthy individuals and institutional investors.

Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.


We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success.

We are an equal opportunity employer and place a high value on diversity and inclusion at our company.

We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law.

In accordance with applicable law, we make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as any mental health or physical disability needs.


  • Cybersecurity Lead

    2 weeks ago


    Singapore ST Engineering Group Full time

    Cybersecurity Lead & IT Manager:Date:19 Apr 2023Location: Singapore, SGCompany:ST Engineering GroupHead, Cyber SecurityST Engineering is a global technology, defence and engineering group with a diverse portfolio of businesses across the aerospace, smart city, defence and public security segments. The Group harnesses technology and innovation to solve...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    About the Job: Cybersecurity ConsultantJoin our team as a CISO as a Service Consultant and play a crucial role in developing and managing information cybersecurity for our clients. We are looking for someone with a high level of expertise in cybersecurity, strong technical skills, and a passion for making a positive impact.Roles & Responsibilities:Develop,...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    Roles & ResponsibilitiesDuties and Responsibilities:This individual will play a crucial role in developing and managing information cybersecurity for our clients. As a Cybersecurity Consultant, you will be responsible for developing, evaluating, and reviewing information security policies in accordance with relevant standards and frameworks such as ISO27001,...


  • Singapore STAR CAREER CONSULTING PTE. LTD. Full time

    About the Job: Providing leadership and guidance to Cyber Leads in business units To establish and implement cybersecurity policies, standards and procedures to ensure compliance Ensure timely conduct of audit framework, monitoring and examining audit findings to propose action plans to address noncompliances Inculcate a positive cybersecurity culture where...

  • Creative Copywriter

    2 weeks ago


    Singapore VICE MEDIA GROUP Full time

    Role x You:As a copywriter you will bring strong concepting and a storytelling background. You will be someone who wants something a little different from the traditional agency world. Someone who has genius ideas and the passion and knowledge to turn them into concepts, get them sold and make them a reality.In the short termYou would be expected to...

  • Account Director

    2 weeks ago


    Singapore VICE MEDIA GROUP Full time

    Role x You:Virtue is seeking an Account Director to join our client services team and push forward the boundaries of marketing. Virtue is a Creative Agency born out of VICE. At Virtue, we collaborate with the biggest brands, the brightest minds, and the most inspirational thought leaders in the world.As an Account Director you will be the owner of and key...

  • FPA Controller

    1 week ago


    Singapore, Singapore, SG Johnson Controls International Full time

    What you will do:This position is responsible to lead the overall FPA function in APAC Retail business, reporting to the Finance Director, APAC Retail.  This position plays a critical role in partnering with the business and functional leaders, to drive business performance across various key accounts, geographic regions & territories, performing FP&A...


  • Singapore NodeFlair Full time

    Job Summary:Job TypePermanentSeniorityLeadYears of ExperienceAt least 5 yearsCybersecurity Services Lead (Ref.No. R at our location in Singapore**This position reports directly to the Head of Engineering within the Head of Delivery Leads Team within the country. The Cybersecurity Services Lead also functionally reports to the Head of Discipline for Cyber who...


  • Singapore KRIS INFOTECH PTE. LTD. Full time

    Responsibilities: Develop and lead the implementation of the organization's cybersecurity architecture and strategies. Collaborate with IT teams to design and integrate security measures into the overall IT architecture. Create architectural blueprints and documentation for secure systems, including network diagrams, data flow diagrams, and security...


  • Singapore STAR CAREER CONSULTING PTE. LTD. Full time

    Roles & ResponsibilitiesAbout the Job Establish and implement cybersecurity Audit, Compliance, Governance Risk, Policies, Standards and Procedures to internal department. Responsible for Cyber Security Compliance, Audit , Governance, Risk Management. Work closely with Group GISO and Group IT to ensure oversight and security compliance Implement and...


  • Singapore NodeFlair Full time

    Job Summary:Job TypePermanentSeniorityLeadYears of ExperienceAt least 5 years The Cybersecurity Services Lead role is to provide strategic direction, leadership and operational oversight to ensure the successful delivery of cybersecurity services to Transport customers. By developing a capable team, establishing partnerships, expanding the services...


  • Singapore Singapore Technologies Engineering Ltd Full time

    Job ID:Location: ST Engineering Hub, SG- Description:- The Job: Establish and implement cybersecurity policies, standards and procedures on project networks to ensure compliance Ensure timely conduct of audit framework, monitoring and examining audit findings to propose action plans to address those noncompliances holistically Provide leadership and guidance...


  • Singapore Singapore Technologies Engineering Ltd Full time

    Date:4 Jul 2023Location: Singapore, SGCompany:ST Engineering GroupST Engineering is a global technology, defence and engineering group with offices across Asia, Europe, the Middle East and the U.S., serving customers in more than 100 countries. The Group uses technology and innovation to solve real-world problems and improve lives through its diverse...


  • Singapore Johnson Controls Full time

    Job DetailsWho we areJohnson Controls is the global leader for smart, healthy and sustainable buildings.At Johnson Controls, we've been making buildings smarter since 1885, and our capabilities, depth of innovation experience, and global reach have been growing ever since. Today, we offer the world's largest portfolio of building products, technologies,...


  • Singapore Singapore Technologies Engineering Ltd Full time

    Job ID: Location: ST Engineering Jurong East Bui, SG- Description:ST Engineering is a global technology, defence and engineering group with offices across Asia, Europe, the Middle East and the U.S., serving customers in more than 100 countries. The Group uses technology and innovation to solve real-world problems and improve lives through its diverse...


  • Singapore PRUDENTIAL ASSURANCE COMPANY SINGAPORE (PTE) LIMITED Full time

    Roles & ResponsibilitiesJob Description:Adjudicate Shield and Accident & Health (A&H) claims and ensure delivery of prudent and equitable claims decision within expected service level (i.e. claims turnaround time). Compliant with regulatory requirements, corporate guidelines, policy wording and reinsurance terms. Review workflow and claims processes to...

  • Vice President, Sales

    2 months ago


    Singapore MICROSEC PTE. LTD. Full time

    Roles & ResponsibilitiesWhat if you can safeguard the future of all technologies?Today, most of the systems are connected, automated, and remotely monitored/controlled. Be it Industrial or commercial, automation with connectivity has a huge impact on evolving sectors including HealthTech, Industry 4.0, Satellite, Defense/Military, 5G, and Smart cities. These...

  • Cybersecurity Analyst

    2 weeks ago


    Singapore GMP Group Full time

    Responsibilities: Be familiarise with the CSA CCoP 2.0 control requirements Initiate the review process for organisation policies, standards, guidelines and procedures being impacted by the CCoP revision Manage the roll out of the revised policies, standards, guidelines and procedures with the affected stakeholder groups Facilitate requirement gathering and...

  • Claims Assessor

    2 weeks ago


    Singapore Prudential plc Full time

    Prudential's purpose is to help people get the most out of life. We will deliver our purpose by creating a culture in which diversity is celebrated and inclusion assured, for our colleagues, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and in exchange, we support our people's career...


  • Singapore SCHLUMBERGER OILFIELD (S) PTE LTD Full time

    About us(About SLB):We are a global technology company, driving energy innovation for a balanced planet.Together, we create amazing technology that unlocks access to energy for the benefit of all.Our inclusive culture is the key to our success. We collaborate with our internal community of colleagues, alumni, and our valued external partners to support each...