Talent.com
serp_jobs.error_messages.no_longer_accepting
Director - Information Security Risk

Director - Information Security Risk

American ExpressCharlotte, North Carolina, United States
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

At American Express, our culture is built on a 175-year history of innovation, shared and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. As part of Team Amex, you'll experience this powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new skills, develop as a leader, and grow your career.

Here, your voice and ideas matter, your work makes an impact, and together, you will help us define the future of American Express.

Global Risk, & Compliance (GRC) group is the independent risk management (Second Line) organization within American Express and is headed by the Chief Risk Officer (CRO). GRC provides oversight as well as governance of risks and ensure the company operates in a safe and sound manner within global regulatory expectations.

The Information Security Risk Director is a leadership position within GRC’s Cybersecurity, Technology, and Resiliency Risk Oversight (CTRRO) team. The Director will lead a team of colleagues who execute independent risk management activities for assigned cybersecurity processes as well as lead CTRRO’s data and automation capabilities. The role reports into the Vice President of CTRRO, who reports into the Head of CTRRO and Vendor Risk Oversight, who reports into the EVP of Enterprise Risk Management.

Responsibilities

  • Lead and nurture a global team of four to six direct reports and maintain performance management for assigned colleagues
  • Lead execution of risk assessments, monitoring, and reporting over assigned cybersecurity processes, such as vulnerability management
  • Identify and apply thought leadership, best practices, and emerging trends
  • Lead gap assessments per laws, regulations, and regulatory guidance as well as industry frameworks and company policies
  • Demonstrate high level of curiosity to learn and willingness to present an effective credible challenge
  • Identify issues for control failures or gaps and execute issue management until closure
  • Develop strong working relationships with all levels of the organization, handle and resolve conflict, to achieve results and enact wide-scale impact across the organization.
  • Lead CTRRO's data strategy, including analysis and creation risk metrics (KRIs / KPIs), direction of enhancement of the team's GRC modules and capabilities, query cyber data warehouses, and building risk dashboards and reporting.

Qualifications

  • BA or BS in Cybersecurity, Information Systems, Computer Science, Data Science, or related field is preferred
  • Must have relevant Cybersecurity, technology, or risk management certification (CISSP, CCSP, CEH, CISM, etc.)
  • 8+ of experience in relevant fields such as technology audit, risk, cybersecurity, or information technology, with 3+ years of experience in leadership roles
  • Prior experience in cybersecurity and information technology is preferred
  • Prior experience in creating or directing development of automation capabilities, GRC tools, big data platforms, KRIs / KPIs
  • Prior experience in applying cybersecurity concepts and countermeasures in public cloud environments
  • Demonstrated expertise in using regulatory and industry cybersecurity frameworks and guidance (CRI Sector Profile, NIST, FFIEC, MITRE ATT&CK) to audit cybersecurity controls
  • Knowledge of current cybersecurity industry trends and events and experience in applying evolving trends to audits, assessments, or lessons learned
  • Demonstrated proficiency in translating cybersecurity concepts for public cloud environments
  • Proven ability to lead projects and initiatives that drive performance
  • Demonstrated track record of integrity, effective communication, innovation, and excellence
  • Strong written and verbal communication skills to deliver high quality, actionable feedback to client management on control issues and potential solutions to close gaps
  • Salary Range : $170,000.00 to $255,000.00 annually + bonus + equity (if applicable) + benefits

    The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we’ll consider your location, experience, and other job-related factors.

    We back you with benefits that support your holistic well-being so you can be and deliver your best. This means caring for you and your loved ones' physical, financial, and mental health, as well as providing the flexibility you need to thrive personally and professionally :

  • Competitive base salaries
  • Bonus incentives
  • 6% Company Match on retirement savings plan
  • Free financial coaching and financial well-being support
  • Comprehensive medical, dental, vision, life insurance, and disability benefits
  • Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
  • 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
  • Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
  • Free and confidential counseling support through our Healthy Minds program
  • Career development and training opportunities
  • serp_jobs.job_alerts.create_a_job

    Director Information Security • Charlotte, North Carolina, United States

    Job_description.internal_linking.related_jobs
    Information Security Manager

    Information Security Manager

    Infovisa, Inc.Cornelius, NC, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Cornelius, NC &...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    ASSISTANT DIRECTOR OF INFORMATION TECHNOLOGY

    ASSISTANT DIRECTOR OF INFORMATION TECHNOLOGY

    Government JobsGastonia, NC, US
    serp_jobs.job_card.full_time
    Information Technology Manager.Assists the Chief Information Officer (CIO) with managing the Technology Services Department, in support of a highly diverse City government and public utility enviro...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Info Security Project Manager

    Info Security Project Manager

    TEKsystemsCharlotte, North Carolina, United States
    serp_jobs.job_card.full_time
    TEKsystems is looking for a Delivery Lead - Information Security Project Manager for one of our top financial clients in a highly regulated environment. This role offers long-term stability, exposur...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Director of eDiscovery

    Senior Director of eDiscovery

    Contact Government ServicesCharlotte, NC, US
    serp_jobs.job_card.full_time
    Charlotte, NC / Remote / Hybrid / Atlanta, GA.Contact Government Services is seeking an experienced and motivated Senior Director of eDiscovery for one of our large government projects.This is an e...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    AVP, Risk and Compliance

    AVP, Risk and Compliance

    LPL FinancialFort Mill, SC, US
    serp_jobs.job_card.full_time
    Assistant Vice President (AVP) Program Compliance.What if you could build a career where ambition meets innovation? At LPL Financial, we empower professionals to shape their success while helping c...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Chief Information Security Officer

    Chief Information Security Officer

    Chatham FinancialCharlotte, NC, United States
    serp_jobs.job_card.full_time
    Benefits : Benefits include health insurance, life and disability insurance, 401k, EAP, paid holidays and paid time off.We don’t simply hire employees. When you work at Chatham, we empower you — offe...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Information Security Specialist

    Information Security Specialist

    K2 IntegrityCharlotte, NC, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    K2 Integrity is seeking a highly skilled Information Security Specialist with a strong focus on security architecture to join our cybersecurity team. This candidate will be responsible for the opera...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Info Security Gov & Risk Specialist

    Info Security Gov & Risk Specialist

    Axelon Services CorporationCharlotte, NC, US
    serp_jobs.job_card.full_time
    Job Title : Info Security Gov & Risk Specialist (Hybrid).Location : Frisco, Charlotte, Denver, or Iselin.Defines, enhances, and implements information security configuration controls, while ensuring ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Director, Portfolio & Risk Analytics

    Director, Portfolio & Risk Analytics

    BaringsCharlotte, NC, US
    serp_jobs.job_card.full_time
    Director, Portfolio & Risk Analytics.At Barings, we are as invested in our associates as we are in our clients.We recognize those who work diligently for us and reward them for personal and profess...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Information Systems Security Officer (ISSO)

    Information Systems Security Officer (ISSO)

    CGSCharlotte, North Carolina, United States, 28202
    serp_jobs.job_card.full_time
    Employment Type : Full-Time, Experienced.Department : Information Technology.CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and / or RMF experience who has deep expertise in ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    VP, Enterprise Risk Management

    VP, Enterprise Risk Management

    LPL FinancialFort Mill, SC, US
    serp_jobs.job_card.full_time
    Vice President Of Enterprise Risk Management.We are seeking a Vice President to join our Enterprise Risk Management (ERM) team. In this role, the VP will oversee and manage the firm's risks across a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    VPII, Enterprise Risk Management

    VPII, Enterprise Risk Management

    LPL FinancialFort Mill, SC, US
    serp_jobs.job_card.full_time
    We are seeking a Vice President II to join our Enterprise Risk Management (ERM) team.In this role, the VPII will oversee and manage the firm's risks across all areas, ensuring alignment with the or...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Director Risk Management

    Director Risk Management

    AcostaCharlotte, NC, US
    serp_jobs.job_card.full_time
    The Risk Management Director is responsible for the strategic oversight and execution of the company's insurance and risk management programs. This role leads the development, implementation, and co...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Principal Auditor - Cyber, Risk and Analysis Technology Audit

    Principal Auditor - Cyber, Risk and Analysis Technology Audit

    Capital OneCharlotte, NC, US
    serp_jobs.job_card.full_time +1
    Principal Auditor - Cyber, Risk and Analysis Technology Audit.Capital One's Audit function is a dedicated group of professionals focused on delivering top-quality assurance services to the organiza...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Info Security Sr Engineer I (Hybrid)

    Info Security Sr Engineer I (Hybrid)

    Principal Financial Group, Inc.USA, North Carolina, Charlotte
    serp_jobs.job_card.full_time +1
    We're looking for an experienced Security Engineer, who is passionate about doing the right thing, to join our Information Security and Risk team. In this role, you will focus on being a thought lea...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Manager of Information and Awareness

    Senior Manager of Information and Awareness

    Global Support and DevelopmentCharlotte, NC, US
    serp_jobs.job_card.full_time
    Senior Manager Of Information And Awareness.Global Support and Development is seeking to hire a Senior Manager of Information and Awareness within our Programs section. The position is full-time and...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    CyberSecurity Solutions Engineer - USPS SLED

    CyberSecurity Solutions Engineer - USPS SLED

    Cisco Systems, Inc.Charlotte, North Carolina, United States
    serp_jobs.job_card.full_time
    You will provide guidance and assist Security Sellers and Account teams within the territory in a pre-sales technical role, showcasing Cisco security product solutions, setting up demonstrations, e...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Assistant Security Director

    Assistant Security Director

    SecuritasConcord, NC, US
    serp_jobs.job_card.full_time
    Focus on the core content of the job post, removing all extra metadata, navigation mentions, and redundant headers.Keep the high signal to noise ratio, making the content beautiful and condensed.serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Information Security Analyst

    Information Security Analyst

    K2 IntegrityCharlotte, NC, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    K2 Integrity is seeking an experienced Information Security Analyst who is passionate about secure software development and developer enablement. This candidate will be responsible for the design, i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    AVP, Technology and Cybersecurity Compliance

    AVP, Technology and Cybersecurity Compliance

    LPL FinancialFort Mill, SC, US
    serp_jobs.job_card.full_time
    What if you could build a career where ambition meets innovation? At LPL Financial, we empower professionals to shape their success while helping clients pursue their financial goals with confidenc...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days