Tech Risk and Controls Lead - Citizen Development Governance & Analytics
JPMorgan Chase
- Location
- Plano, TX, United States
- Work model
- On-Site
- Level
- Senior
- H-1B history
- 1,524 approvals (FY2023)
- Posted
- Aug 18, 2026
Skills
About this role
Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management. As a Tech Risk & Controls Lead in Chief Technology Office - Operational Execution & Governance - Risk, Control and Regulatory position, you will be responsible for identifying, and mitigating compliance and operational risks in line with the firm's standards. You will also provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring that implemented controls are operating effectively and in compliance with regulatory, legal, and industry standards. By partnering with various stakeholders, including Product Owners, Business Control Managers, and Regulators, you will contribute to the reporting of a comprehensive view of technology risk posture and its impact on the business. Your advanced knowledge of risk management principles, practices, and theories will enable you to drive innovative solutions and effectively manage a diverse team in a dynamic and evolving risk landscape.
Job responsibilities
Ensure effective identification, quantification, communication, and management of risks / issues and focusing on root cause analysis, resolution recommendations and actionable decision support Develop and maintain robust relationships, becoming a trusted partner with FW & LOB Governance Leads, Technology teams, and Compliance/Controls SMEs to facilitate cross-functional collaboration and progress toward shared goals Develop and execute reporting framework and supporting processes to offer senior management and stakeholders insights into control effectiveness, compliance and inform governance work Proactively monitor and evaluate control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and customer experience/success Partner with cross-regional and cross-LOB business stakeholders to understand desired outcomes and translate them into clear requirements. This may include onboarding new datasets, enhancing existing logic, and assessing the impact of governance policy/standard changes on reporting and metrics. Define, track, and deliver a book of work; Own the pipeline of projects and initiatives related to Citizen Developer Controls Governance metrics, reporting, and decision support materials. Oversee BAU Metrics Production and enhancements; Though largely automated, monitoring completion and take corrective active as necessary for critical deliverables/metrics consumed by broad user base globally Maintain documentation; Update and maintain operational documentation (e.g., metric definitions and logic, report methodology, process diagrams, and how-to instructions). Operate as a self-sufficient owner; Work independently with strong risk/issue management, clear status reporting, and disciplined execution. Uses enterprise-authorized AI capabilities within the work environment to accelerate synthesis of risk/control evidence and draft executive-ready reporting, validating outputs and handling data according to sensitivity and security requirements Promotes reuse-first, AI-assisted approaches to streamline recurring control testing and issue/action-plan management routines, ensuring human review and alignment to auditability and regulatory expectations Required qualifications, capabilities, and skills 5+ years of experience or equivalent expertise in technology risk management, cybersecurity, or a related field, with a focus on regulatory compliance and risk mitigation Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support technology risk and controls workflows with strong validation habits and awareness of data sensitivity Ability to review and validate AI-assisted risk summaries and recommendations before use, escalating when uncertain and ensuring outcomes align to security, auditability, and regulatory expectations Proven experience developing metrics and reports, including