Tech Risk and Controls Lead - Citizen Development Governance & Analytics
About the role
Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management. As a Tech Risk & Controls Lead, you will identify and mitigate compliance and operational risks in line with the firm's standards. You will provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring controls operate effectively and comply with regulatory, legal, and industry standards. By partnering with stakeholders including Product Owners, Business Control Managers, and Regulators, you will contribute to reporting a comprehensive view of technology risk posture and its impact on the business.
Responsibilities
- Ensure effective identification, quantification, communication, and management of risks/issues, focusing on root cause analysis, resolution recommendations, and actionable decision support.
- Develop and maintain robust relationships, becoming a trusted partner with FW & LOB Governance Leads, Technology teams, and Compliance/Controls SMEs to facilitate cross-functional collaboration.
- Develop and execute a reporting framework and supporting processes to offer senior management and stakeholders insights into control effectiveness and compliance.
- Proactively monitor and evaluate control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and customer experience.
- Partner with cross-regional and cross-LOB business stakeholders to understand desired outcomes and translate them into clear requirements, including onboarding new datasets and assessing governance policy impacts.
- Define, track, and deliver a book of work; own the pipeline of projects related to Citizen Developer Controls Governance metrics, reporting, and decision support materials.
- Oversee BAU Metrics Production and enhancements; monitor completion and take corrective action for critical deliverables consumed globally.
- Maintain documentation; update operational documentation such as metric definitions, report methodology, process diagrams, and how-to instructions.
- Operate as a self-sufficient owner; work independently with strong risk/issue management, clear status reporting, and disciplined execution.
- Use enterprise-authorized AI capabilities to accelerate synthesis of risk/control evidence and draft executive-ready reporting, validating outputs and handling data securely.
- Promote reuse-first, AI-assisted approaches to streamline recurring control testing and issue/action-plan management, ensuring human review and regulatory alignment.
Requirements
- 5+ years of experience or equivalent expertise in technology risk management, cybersecurity, or a related field, with a focus on regulatory compliance and risk mitigation.
- Demonstrated experience using enterprise-authorized AI capabilities to support technology risk and controls workflows, with strong validation habits and awareness of data sensitivity.
- Ability to review and validate AI-assisted risk summaries and recommendations, escalating uncertainties and ensuring alignment with security and regulatory expectations.
- Proven experience developing metrics, reports, dashboards, and data analytics, including executive reporting and working with large, disparate datasets.
- Strong project management and time management skills; able to plan, prioritize, and deliver independently.
- Strong collaboration, relationship, facilitation, and stakeholder management skills across a global, cross-functional environment.
- Hands-on experience and proficiency with Alteryx and Tableau (or equivalent tools).
- Experience using JIRA and Confluence, and working in an Agile framework.
- Excellent written and verbal communication skills in English, including tailoring messages for different audiences.
- Strong analytical and problem-solving skills; comfortable working in a fast-paced, results-driven environment.
- Detail-oriented with a focus on quality, efficiency, and control adherence.
Preferred Qualifications
- Familiarity with risk management frameworks, industry standards, and financial industry regulatory requirements.
- Proficient knowledge in data security, risk assessment and reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies.
- Demonstrated ability to influence executive-level strategic decision-making and translate technology insights into business strategies.
- Ability to work effectively in a geographically distributed team and manage work across time zones.
- Advanced MS Office skills (Excel, Word, PowerPoint, Visio, etc.).
Benefits
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set, and location. Eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in cash and/or forfeitable equity. Benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching, and more. Additional details about total compensation and benefits will be provided during the hiring process.
About Us
JPMorgan Chase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses, and many of the world's most prominent corporate, institutional, and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years, and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing, and asset management.