Alexander Stevens

VP, Technology Risk & Governance at J.P. Morgan

New York, New York, United States

About

Technology risk and controls leader with experience shaping enterprise risk strategy and advising senior stakeholders at a top global financial institution. Skilled in guiding risk governance, regulatory alignment, and modernization initiatives that strengthen operational resilience and enable sustainable growth. Recognized for influencing executive decision-making by translating complex risk and regulatory issues into actionable strategies. Brings a collaborative approach to building cross-functional partnerships that drive innovation, improve control environments, and align risk programs with evolving business priorities. Dedicated to advancing the industry’s approach to cyber risk, operational resilience, and technology governance - supporting the stability and trust that underpin global financial systems.

Experience

  • Vice President, Technology Risk and Controls Lead at JPMorganChase
    Oct 2022 - Present · 3 yrs 9 mos

    - Partnered with all lines of business to shape IT operations strategy, aligning cybersecurity and risk practices to evolving business requirements and emerging threats. - Monitored and advised on the firm’s technology risk posture, providing management with clear visibility and actionable recommendations to mitigate key risks. - Built and maintained trusted partnerships with business leaders, technology stakeholders, and control partners across audit, corporate functions, and infrastructure teams for end-to-end risk management. - Interpreted regulatory expectations and corporate policies, translating them into actionable guidance to strengthen control environments and ensure compliance. - Supported audit and regulatory examinations by preparing responses, demonstrating control effectiveness, and driving remediation where necessary. - Promoted a culture of proactive risk awareness and continuous improvement, advancing the firm’s maturity in cybersecurity resilience.

  • Associate, Security Operations and Engineering at Morgan Stanley
    Jun 2019 - Oct 2022 · 3 yrs 5 mos

    - Partnered with business, technology, and vendor stakeholders (Symantec, Microsoft) to influence product enhancements and drive enterprise-wide data protection strategy. - Evaluated and integrated emerging cybersecurity technologies, with a focus on cloud security and data governance innovation. - Designed and implemented automation strategies for incident response, disaster recovery, and operational workflows to increase efficiency and resilience. - Advised senior management on security enhancements, risk mitigation, and regulatory alignment to strengthen the firm’s cyber resilience posture. - Championed security-by-design principles across legal, technical, and regulatory processes, positioning security as a business enabler. - Led post-incident reviews and strategic problem management, ensuring lessons learned translated into long-term improvements in controls and operations.