Commercial Investment Bank Controls - Third Party Risk & Controls Insights Lead in Bournemouth

Commercial Investment Bank Controls - Third Party Risk & Controls Insights Lead in Bournemouth

Bournemouth Full-Time 60000 - 75000 £ / year (est.) No working from home possible
JPMorganChase

At a Glance

  • Tasks: Lead insights on third-party risk management and ensure safe vendor partnerships.
  • Company: Join a leading financial services firm committed to diversity and inclusion.
  • Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
  • Other info: Dynamic role with excellent career advancement opportunities.
  • Why this job: Make a real impact by connecting technical details to business outcomes.
  • Qualifications: Experience in risk management and strong analytical skills required.

The predicted salary is between 60000 - 75000 £ per year.

Join a controls team where your judgment and communication skills directly influence how we adopt and manage third parties safely. You'll work with partners across technology, procurement, legal, compliance, and operational risk to turn complex security and resilience findings into clear, business-ready decisions. If you enjoy connecting technical detail to real-world outcomes and constructively challenging when needed this role gives you a wide platform for impact.

As a Third Party Risk & Controls Insights Lead in CIB Controls, you own the insights agenda across the third‑party lifecycle – onboarding, change, ongoing monitoring, and exit – to provide consistent, defensible, decision‑grade risk conclusions. You synthesize and challenge third‑party assessment outputs (with a focus on data, cybersecurity, and resilience), translate technical evidence into clear narratives and recommendations, and strengthen the quality and consistency of risk decision artifacts. You'll partner closely with business control managers and cross‑functional stakeholders to improve risk visibility, align control expectations, and support responsible vendor adoption.

Job Responsibilities

  • Aggregate and analyze third‑party risk signals to deliver actionable insights focused on data protection, cybersecurity, and resilience.
  • Govern standards for third‑party risk decision artifacts (e.g., risk statements, residual risk framing, materiality thresholds, issue taxonomy, and escalation expectations).
  • Review and challenge onboarding, assessment, and monitoring outputs to ensure completeness, consistency, and defensibility of conclusions and remediation expectations.
  • Perform thematic analysis across the third‑party portfolio to identify emerging risks, root‑cause patterns, and concentration hot spots, and to elevate material themes through governance forums.
  • Advise on business cases for new or expanded third‑party engagements, including reuse opportunities, risk trade‑offs, and control uplift levers (standardization and contractual terms).
  • Evaluate cloud and SaaS architectures to identify material control gaps (e.g., IAM, encryption/key management, logging/monitoring, segmentation, data residency, dependency chains, concentration risk).
  • Define and maintain an insights framework including taxonomy mapping, KRI/KPI definitions, thresholds, trends, and executive dashboards.
  • Produce executive‑ready governance materials summarizing themes, exceptions, systemic issues, decision requests, and residual risk positions for senior stakeholders.
  • Partner across controls, technology, procurement, legal, compliance, operational risk, and business teams to maintain a single, consistent narrative on third‑party risk posture and priorities.

Required Qualifications, Capabilities, and Skills

  • Expertise in control management in financial services, focused on compliance and operational risk mitigation.
  • Third‑party risk experience across the vendor lifecycle (onboarding, assessment, control validation, monitoring, issue management, and exit).
  • Ability to synthesize assessment outputs into executive‑ready insights (themes, emerging risks, residual risk framing, and recommendations).
  • Cybersecurity and technology risk fluency, including ability to assess vendor security posture using common artifacts (e.g., SOC 2, ISO 27001, SIG/CAIQ).
  • Working knowledge of cloud/SaaS control domains, such as IAM, encryption, logging/monitoring, vulnerability management, incident response, SDLC controls, and dependency/concentration risk.
  • Ability to translate technical risk into clear business impacts, trade‑offs, residual risk statements, and recommended mitigations for senior stakeholders.
  • Strong data literacy, including defining and tracking KRIs/KPIs and performing structured analysis from models/diagrams to insights.

Preferred Qualifications, Capabilities, and Skills

  • Experience building portfolio insights and governance routines, including taxonomy design, MI standards, thresholds, trend analytics, and issue classification.
  • Experience using automation or advanced analytics (including AI/ML approaches) to improve monitoring and insights generation.
  • Operational resilience expertise, including service mapping concepts, recovery expectations, dependency analysis, and vendor failure‑mode impact narratives.
  • Strong executive presence and influencing skills to align stakeholders, challenge decisions appropriately, and drive remediation prioritization.
  • Business and market context awareness to align third‑party risk decisions with client, regulatory, and operational expectations.
  • Mentoring/coaching capability to build team discipline in risk thinking, documentation quality, and continuous improvement.

Equal Opportunity Statement

We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation. JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans.

Commercial Investment Bank Controls - Third Party Risk & Controls Insights Lead in Bournemouth employer: JPMorganChase

At JPMorgan Chase & Co., we pride ourselves on fostering a dynamic work environment that champions collaboration and innovation. As a Third Party Risk & Controls Insights Lead, you'll not only have the opportunity to influence critical business decisions but also benefit from our commitment to employee growth through mentorship and continuous learning. Our inclusive culture values diverse perspectives, ensuring that every team member can contribute meaningfully while enjoying a supportive atmosphere in one of the world's leading financial institutions.

JPMorganChase

Contact Details:

JPMorganChase Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Commercial Investment Bank Controls - Third Party Risk & Controls Insights Lead in Bournemouth

Join Compliance Communities

Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!

Attend Industry Conferences

Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.

Leverage Your University Career Services

If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.

Showcase Your Knowledge Online

Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like JPMorganChase looking for candidates who are engaged and informed.

We think you need these skills to ace Commercial Investment Bank Controls - Third Party Risk & Controls Insights Lead in Bournemouth

Control Management
Third-Party Risk Management
Cybersecurity Fluency
Data Protection
Operational Risk Mitigation
Cloud/SaaS Control Knowledge
Risk Analysis

Some tips for your application 🫡

Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!

Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.

Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!

Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at JPMorganChase. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!

How to prepare for a job interview at JPMorganChase

Master the Regulations

Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!

Show Your Analytical Skills

Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!

Know Your Tools

Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!

Align with Company Culture

Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with JPMorganChase’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!