JPMorganChase Logo

JPMorganChase

Technology Risk and Controls Lead - Regulatory and Industry Risk Assessments

Posted An Hour Ago
Be an Early Applicant
Hybrid
Singapore, SGP
Senior level
Hybrid
Singapore, SGP
Senior level
Leads end-to-end regulatory and industry assessments of the firm's technology control environment. Evaluates cybersecurity, data governance, IT resilience, third-party risk, and change management controls against standards including CRI Profile, ISO 27001, Swift CSP, CHAPS CRM, HKMA CRAF, and Japan CSSA. Partners with audit, compliance, risk, technology, and business teams to identify issues, perform root-cause analysis, recommend remediation, standardize assessment practices, and improve audit readiness. Mentors junior staff and drives consistent assessment methodologies across APAC.
The summary above was generated by AI

We are seeking a Regulatory Assessment Lead with a deep background in audit, regulatory, and industry assessments to join our growing Technology Risk and Controls organization.

 

As a Regulatory Assessment Lead in Cybersecurity and Technology Controls, you will evaluate the firm's technology control environment against applicable regulatory requirements and industry standards. You will translate complex regulatory obligations and provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring that implemented controls comply with regulatory requirements and industry standards.

 

This role serves as the primary assessment lead, interfacing with internal auditors, compliance and risk teams, technology stakeholders and business product teams to drive complex assessments. The role ensures the firm's continuous compliance with key regulatory and industry standards, including CRI Profile, Swift CSP, CHAPS CRM, HKMA CRAF, and Japan CSSA.

 

The successful candidate will provide strategic direction and expert leadership in audit readiness and assessment practices, while driving continuous improvement in the firm's control posture. Strong knowledge of risk management principles and practices will enable you to deliver innovative solutions and lead a diverse team in a complex and evolving regulatory environment.

 

 

 Job responsibilities

 

  • Lead end-to-end delivery and drive efficient and effective execution of assessments, ensuring the firm's technology control environment meets applicable regulatory obligations and industry standards.

  • Communicate issues and observations identified from our assessments to relevant stakeholders, including root cause analysis and resolution recommendations.

  • Provide subject matter expertise in regulatory assessments, ensuring that the organization adheres to applicable regulations and industry standards such as CRI Profile, Swift CSP, CHAPS CRM, HKMA CRAF and Japan CSSA.

  • Partner with LOBs, global risk and control functions, cybersecurity and technology teams to conduct control assessments, ensuring compliance with regulatory requirements and alignment with the Firm’s policies, standards and procedures.

  • Build and sustain trusted relationships with Location CISO, Regulatory Engagement Management team, LOB technologists, CCOR (Compliance Conduct and Operational Risk), and Internal Audit to facilitate cross-functional collaboration and drive progress toward shared goals.

  • Collaborate with global teams to ensure consistency of assessment methodologies, tooling, and reporting standards across regions.

  • Manage and mentor junior team members, fostering a culture of excellence, continuous learning, and regulatory awareness within the APAC assessments practice.

 

 

Required qualifications, capabilities, and skills

 

  • Bachelor’s Degree in Management Information Systems, Cybersecurity or related disciplines.

  • 5+ years of experience or equivalent expertise in technology risk management, information security, technology audit or related field with a focus on assessments in the financial services industry.

  • Demonstrated experience leading regulatory assessments, control evaluations, or technology audits in a large organization.

  • Strong understanding of industry risk frameworks (CRI Profile, ISO 27001, etc.) and practical experience with regulatory and industry requirements, including Swift CSP, CHAPS CRM, HKMA CRAF and Japan CSSA.

  • Proficient knowledge of control evaluation of technology risk domains including cybersecurity, data governance, IT resilience, third-party risk management and change management.

  • Experience with payments environment and familiarity with payments-specific regulatory standards and cybersecurity control requirements.

  • Strong analytical, problem-solving, and critical thinking skills, with the ability to manage multiple priorities and deliver high-quality outputs under tight deadlines.

 

 

Preferred qualifications, capabilities, and skills

 

CISA, CISM, CRISC, CISSP, or similar industry-recognized risk and risk certifications are preferred.

About UsJ.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
  
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
About the TeamOur professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.

JPMorganChase Singapore, Singapore, SGP Office

One@Changi City, Changi Business Park Central 1, Singapore, Singapore, 486036

Similar Jobs

An Hour Ago
Easy Apply
Hybrid
Singapore, SGP
Easy Apply
Senior level
Senior level
Big Data • Cloud • Software • Database
Partner with Sales, Finance, and Legal leadership to structure and approve complex, high-value deals. Evaluate non-standard requests, ensure revenue recognition and operational compliance, develop deal strategy playbooks, improve deal desk processes, and present data-driven recommendations. The role also leads automation initiatives using AI and workflow tools, supports forecasting and deal analytics, and drives cross-functional process improvements.
Top Skills: CpqGenerative AiExcelSalesforceWorkflow Automation
3 Hours Ago
In-Office
Singapore, SGP
Mid level
Mid level
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Cybersecurity • Data Privacy
Generates qualified enterprise sales meetings through outbound prospecting and inbound lead follow-up across ASEAN. Responsibilities include researching prospects, personalizing email, social, and phone outreach, qualifying opportunities, collaborating with field sales, tracking activities in Salesforce and Outreach, monitoring market trends, and meeting sales targets. The role includes ongoing sales coaching and requires working in the Singapore office two to three days weekly.
Top Skills: OutreachSalesforce
3 Hours Ago
In-Office
Singapore, SGP
Mid level
Mid level
Fintech • Information Technology • Financial Services
Build, automate, maintain, and optimize hybrid Linux/UNIX platforms across Azure, AWS, and on-premises environments. Responsibilities include managing 12,000+ RHEL hosts, developing IaC and provisioning workflows, supporting CI/CD and SRE practices, monitoring reliability, responding to incidents, troubleshooting complex systems, participating in disaster recovery, remediating vulnerabilities, and documenting platform processes. The role also requires collaboration with global engineering teams and support for containerized workloads, networking, storage, and server hardware.
Top Skills: AnsibleAutofsAWSAwxAzureCi/CdDellDnsDockerFtpHpeInfrastructure As CodeKubernetesLdapLinuxNfsNtpPuppetPythonRhelSambaSreTcp/IpTerraformUnix

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account