As a Third Party Application Security Associate, you'll assess third party application security, engage with suppliers, monitor controls, and drive continuous improvement in security processes.
Job Description
Bring your expertise to JPMorgan Chase, a global leader in financial services committed to innovation, integrity, and making a positive impact. As part of our Third Party Application Security (TPAS) program within Corporate Third Party Oversight (CTPO), you'll be at the heart of our mission to keep the firm's supply chain strong and resilient. Here, you'll help anticipate and address new and emerging risks in third party software, cloud environments, and AI systems-using your skills to solve real-world challenges that affect our company, partners, and communities.
As a Third Party Application Security Associate within the Third Party Application Security (TPAS) program, you'll play a pivotal role in protecting JPMorgan Chase's supply chain. You'll lead efforts to monitor and strengthen third party applications by assessing Software Bill of Materials (SBOMs), Artificial Intelligence Bill of Materials (AI BOMs), and cloud security controls. In this fast-paced environment, you'll engage directly with suppliers, analyze risk data, and track remediation efforts. You'll collaborate with stakeholders across Lines of Business, Technology, Cybersecurity, and Cloud Engineering to streamline security assessments and validate controls-making a tangible impact on the security and resilience of our organization.
Job Responsibilities
Required Qualifications, Capabilities, and Skills
Preferred Qualifications, Capabilities, and Skill s
Join us in keeping JPMorganChase secure, resilient, and ahead of emerging risks in third party applications and cloud environments.
About Us
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Global Supplier Services (GSS) manages the source-to-pay cycle, engaging with suppliers, negotiating contracts, conducting risk assessments and evaluating the customer experience. Global teams support sourcing, third party oversight, procurement and payment operations, supplier relationship management and customer experience.
Bring your expertise to JPMorgan Chase, a global leader in financial services committed to innovation, integrity, and making a positive impact. As part of our Third Party Application Security (TPAS) program within Corporate Third Party Oversight (CTPO), you'll be at the heart of our mission to keep the firm's supply chain strong and resilient. Here, you'll help anticipate and address new and emerging risks in third party software, cloud environments, and AI systems-using your skills to solve real-world challenges that affect our company, partners, and communities.
As a Third Party Application Security Associate within the Third Party Application Security (TPAS) program, you'll play a pivotal role in protecting JPMorgan Chase's supply chain. You'll lead efforts to monitor and strengthen third party applications by assessing Software Bill of Materials (SBOMs), Artificial Intelligence Bill of Materials (AI BOMs), and cloud security controls. In this fast-paced environment, you'll engage directly with suppliers, analyze risk data, and track remediation efforts. You'll collaborate with stakeholders across Lines of Business, Technology, Cybersecurity, and Cloud Engineering to streamline security assessments and validate controls-making a tangible impact on the security and resilience of our organization.
Job Responsibilities
- Assess, verify, and develop processes to gather and analyze third party application security data, including Software Bill of Materials (SBOMs), AI Bill of Materials (AI BOMs), and cloud security controls.
- Proactively engage with suppliers to encourage timely remediation of identified issues.
- Adapt and thrive in a rapidly evolving technology landscape by quickly learning new security frameworks and emerging standards.
- Continuously monitor controls to ensure supply chain security.
- Drive continuous improvement by identifying and implementing opportunities to processes, tools, and overall program.
Required Qualifications, Capabilities, and Skills
- Experience: 2+ years in application security, third party risk management, or cloud security within a financial services or technology environment.
- Analytical Mindset: Ability to understand security requirements, regulatory drivers, and a curiosity that looks for the story behind the data.
- Control Focused: Detail-oriented approach to verifying the accuracy of security assessments and underlying data, especially in large and complex environments.
- Tech-Savvy: Proficiency in Microsoft Office (especially Excel), and familiarity with security assessment tools, SBOM/AI BOM standards, and cloud security platforms (e.g., AWS, Azure, GCP).
- Team Player: Excellent interpersonal skills to work seamlessly within a team and communicate across various departments, both written and verbal.
- Multitasker: Ability to juggle multiple priorities and meet tight deadlines with exceptional organizational skills.
- Innovator: Capable of delivering continuous improvements to all stages of the third party application security process
Preferred Qualifications, Capabilities, and Skill s
- Risk: CISSP, CISA, CISM, CCSP or CRISC certification
- Bill of Materials: Software Bill of Materials (SBOM) and Artificial Intelligence Bill of Materials (AIBOM)
- Cloud: Certification in Public Cloud Technology (e.g., AWS, Azure, GCP)
Join us in keeping JPMorganChase secure, resilient, and ahead of emerging risks in third party applications and cloud environments.
About Us
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Global Supplier Services (GSS) manages the source-to-pay cycle, engaging with suppliers, negotiating contracts, conducting risk assessments and evaluating the customer experience. Global teams support sourcing, third party oversight, procurement and payment operations, supplier relationship management and customer experience.
Top Skills
AWS
Azure
GCP
MS Office
Similar Jobs at JPMorganChase
Financial Services
The Trade Support Analyst will manage trade orders, ensure accurate settlements, apply automation in processing, and enhance operational efficiencies while collaborating with internal stakeholders.
Top Skills:
Automation TechnologiesData Analysis
Financial Services
The Financial Controller - Analyst will oversee financial data integrity, create SQL queries, resolve reconciliation issues, and manage auditing processes.
Top Skills:
AccessExcelPowerPointSAPSQLVisio
Financial Services
The Client Solutions Architect Manager leads the development of tailored solutions for healthcare payments, managing projects and enhancing client experiences through collaboration and technical expertise.
Top Skills:
Healthcare Isv ProductsJ.P. Morgan Healthcare Payments Products
What you need to know about the Boston Tech Scene
Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.
Key Facts About Boston Tech
- Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
- Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
- Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
- Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories