JPMorganChase Logo

JPMorganChase

Global Supplier Services -Third Party Application Security Vice President

Posted Yesterday
Be an Early Applicant
Hybrid
Philadelphia, PA
Mid level
Hybrid
Philadelphia, PA
Mid level
Lead security initiatives for third party applications, assess risks, and engage with suppliers to enhance the firm's security resilience.
The summary above was generated by AI
Job Description
Bring your expertise to JPMorgan Chase, a global leader in financial services committed to innovation, integrity, and making a positive impact. As part of our Third Party Application Security (TPAS) program within Corporate Third Party Oversight (CTPO), you'll be at the heart of our mission to keep the firm's supply chain strong and resilient. Here, you'll help anticipate and address new and emerging risks in third party software, cloud environments, and AI systems-using your skills to solve real-world challenges that affect our company, partners, and communities.
As a Third Party Application Security Associate within the Third Party Application Security (TPAS) program, you'll play a pivotal role in protecting JPMorgan Chase's supply chain. You'll lead efforts to monitor and strengthen third party applications by assessing Software Bill of Materials (SBOMs), Artificial Intelligence Bill of Materials (AI BOMs), and cloud security controls. In this fast-paced environment, you'll engage directly with suppliers, analyze risk data, and track remediation efforts. You'll collaborate with stakeholders across Lines of Business, Technology, Cybersecurity, and Cloud Engineering to streamline security assessments and validate controls-making a tangible impact on the security and resilience of our organization.
Job Responsibilities
  • Drive the transformation agenda, including business justification and program build out.
  • Partner with internal risk teams to support business as usual risk activities, reporting and project initiatives.
  • Ensure risk impacting the business is effectively identified, quantified, communicated and remediated
  • Influence supplier adoption of the product vision, roadmap, and risk control objectives
  • Operationalize the Third Party Software Bill of Materials (SBOM) program

Required qualifications, capabilities and skills
  • Strong leadership skills, ability to multitask, sense of ownership, attention to detail and quality, and deliver on commitments
  • Understanding of Secure Software Development Life Cycle (SSDLC) (e.g., coding requirements, risk assessments, threat modeling, static code analysis, and dynamic application scanning)
  • 3+ years of experience in Third Party Risk Management (TPRM) or Governance, Risk Management, and Compliance (GRC), Cybersecurity, Application Security, Cloud Security Architecture (SaaS, PaaS & IaaS) within a large enterprise level environment
  • 3+ years of experience using a broad set of technologies (e.g., servers, operating systems, applications, databases, hypervisors, virtualization management, containers, compute, storage, etc.)
  • Bachelor's degree in a relevant discipline
  • Proficiency with Microsoft applications (e.g., Word, Excel, Outlook, Visio, OneNote, SharePoint, Teams, etc.)

Preferred qualifications, capabilities and skills
  • Certification in Public Cloud Technology from major Cloud Service Provider
  • Experience with Software Bill of Materials (SBOM)
  • CISSP, CISA, CISM, CCSP or CRISC certification

About Us
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Global Supplier Services (GSS) manages the source-to-pay cycle, engaging with suppliers, negotiating contracts, conducting risk assessments and evaluating the customer experience. Global teams support sourcing, third party oversight, procurement and payment operations, supplier relationship management and customer experience.

Top Skills

Cloud Security
Microsoft Applications
Secure Software Development Life Cycle

Similar Jobs at JPMorganChase

6 Hours Ago
Hybrid
Philadelphia, PA, USA
Entry level
Entry level
Financial Services
As an Associate in Risk Management, analyze credit risk data, produce reports, engage with stakeholders, and support risk analysis using tools like Tableau and Alteryx.
Top Skills: AlteryxMS OfficeTableau
Yesterday
Hybrid
Philadelphia, PA, USA
Mid level
Mid level
Financial Services
As a Total Return Swap Trading Associate, you will manage loan trade documentation and coordinate with clients and stakeholders to execute trades while monitoring escalated issues.
Top Skills: ClearparExcelLoaniqWord
Yesterday
Hybrid
Philadelphia, PA, USA
Entry level
Entry level
Financial Services
As an Asset Servicing Analyst, manage corporate actions, ensure accurate processing of events, and communicate effectively with clients while minimizing risk.
Top Skills: Data AnalysisReconciliation Tools

What you need to know about the Sydney Tech Scene

From opera to comedy shows, the Sydney Opera House hosts more than 1,600 performances a year, yet its entertainment sector isn't the only one taking center stage. The city's tech sector has earned a reputation as one of the fastest-growing in the region. More specifically, its IT sector stands out as the country's third-largest, growing at twice the rate of overall employment in the past decade as businesses continue to digitize their operations to stay competitive.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account