Director information
You Lead the Way. We’ve Got Your Back.
With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other.
At American Express, you’ll be recognized for your contributions, leadership, and impact every colleague has the opportunity to share in the company’s success.
Together, we’ll win as a team, striving to uphold our and powerful backing promise to provide the world’s best customer experience every day.
And we’ll do it with the utmost integrity, and in an environment where everyone is seen, heard and feels like they belong.
Join Team Amex and let's lead the way together.
As part of our diverse tech team, you can architect, code and ship software that makes us an essential part of our customers’ digital lives.
Here, you can work alongside talented engineers in an open, supportive, inclusive environment where your voice is valued, and you make your own decisions on what tech to use to solve challenging problems.
American Express offers a range of opportunities to work with the latest technologies and encourages you to back the broader engineering community through open source.
And because we understand the importance of keeping your skills fresh and relevant, we give you dedicated time to invest in your professional development.
Find your place in technology on #TeamAmex.
The Technology & Operational Risk Advisor will help ensure safe and sound banking & business operations by creating embedded partnerships focused on reducing technology and operational risk and advancing Technology Risk and Information Security objectives as needed to protect and secure the Company’s valuable information by ensuring the security and confidentiality of customer information, protecting against any anticipated threats or hazards to the security or integrity of such information, and protecting against unauthorized access to or use of such information that could result in substantial harm or inconvenience to any customer
This role will have a significant positive impact on the overall Operational, Technology, and Information Security risk posture of American Express and its legal entities by leading risk-reduction through clear and candid communication, early engagement in new products and projects, regulatory engagement, information security and technology risk consultation.
We are seeking an experienced and proactive leader to be responsible for technology risk, operational risk and information security control enforcement as well as risk prioritization across Business Unit CIO groups, the business, and American Express legal entities.
Responsibilities :
- Represent a tailored and prioritized view of Technology Risk for an assigned set of business units by procuring, filtering, and communicating key risk and key performance metrics and qualitative risk themes
- Build strong partnerships with key stakeholders with supporting business unit and technology control ownership domains to connect business and tech partners with the right Technology Risk & InfoSec SMEs
- Provide Technology Risk and Information Security technical consultation on new projects, products, applications, strategy, and other ventures to ensure appropriate security protection is delivered as part of any new solution.
- Assist with other Technology Risk related activities which arise based on the needs of the business unit or broader Technology Risk and Information Security organization
- Assist regulatory exam management related to Technology Risk and Information Security
- Assess the needs of the Business Unit to ensure sufficient understanding of Operational Risk Management and controls annual knowledge assessments and refresher trainings)
- Lead risk-reduction through clear and candid communication, early engagement in new products and projects, regulatory engagement, information security and technology risk consultation.
Qualifications :
- Information Security, Operational Risk or Technology Risk Management leadership experience
- Commensurate academic credentials (bachelor’s degree / Master’s Degree preferred) and security certifications and / or relevant experience
- Experience working with Regulators and in complex regulated businesses is an asset
- Broad understanding of information security subject areas with emphasis on vulnerability management, data protection, infrastructure security, application security, identity and access, incident management, risk management, and data analytics
- Understanding of regulatory landscape while able to link threats to risk tolerance and control efficiency measures.
- Calm and conclusive under pressure. Natural operational leadership in stressful situations.
- Ability to prioritize actions for the benefit of the organization to remain focused on most critical issues.
- Initiative and energy to go beyond minimum requirements of effort and activity; a bias for action and for getting things done.
- Experience in developing impactful talent.
- Proven track record in extending and maintaining strong relationships in a complex multi-national corporation. Ability to translate technical cyber security concepts to non-technical business leaders.
- Strong problem solver with the ability to use analytical methods to affect change.
- Effective organizational skills (including attention to detail) along with the ability to collaborate and influence in a matrix environment.
Salary Range : to annually + bonus + equity (if applicable) + benefits
The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we'll consider your location, experience, and other job-related factors.
We back our colleagues and their loved ones with benefits and programs that support their holistic well-being. That means we prioritize their physical, financial, and mental health through each stage of life. Benefits include :
- Competitive base salaries
- Bonus incentives
- 6% Company Match on retirement savings plan
- Free financial coaching and financial well-being support
- Comprehensive medical, dental, vision, life insurance, and disability benefits
- Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
- 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
- Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
- Free and confidential counseling support through our Healthy Minds program
- Career development and training opportunities
For a full list of Team Amex benefits, visit our .
American Express is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other status protected by law.
We back our colleagues with the support they need to thrive, professionally and personally. That's why we have Amex Flex, our enterprise working model that provides greater flexibility to colleagues while ensuring we preserve the important aspects of our unique in-person culture.
Depending on role and business needs, colleagues will either work onsite, in a hybrid model (combination of in-office and virtual days) or fully virtually.
US Job Seekers / Employees - to view the Know Your Rights poster and the Pay Transparency Policy Statement.
If the links do not work, please copy and paste the following URLs in a new browser window : to access the three posters.
Employment eligibility to work with American Express in the is required as the company will not pursue visa sponsorship for these positions.
Last updated : 2024-03-27