Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Manager - Information Security image - Rise Careers
Job details

Manager - Information Security

You Lead the Way. We’ve Got Your Back.

With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other. Here, you’ll learn and grow as we help you create a career journey that’s unique and meaningful to you with benefits, programs, and flexibility that support you personally and professionally.

At American Express, you’ll be recognized for your contributions, leadership, and impact—every colleague has the opportunity to share in the company’s success. Together, we’ll win as a team, striving to uphold our company values and powerful backing promise to provide the world’s best customer experience every day. And we’ll do it with the utmost integrity, and in an environment where everyone is seen, heard and feels like they belong.

Join Team Amex and let's lead the way together.

How we serve our customers is constantly evolving and is a challenge we gladly accept. Whether you’re finding new ways to prevent identity fraud or enabling customers to start a new business, you can work with one of the most valuable data sets in the world to identify insights and actions that can have a meaningful impact on our customers and our business. And, with opportunities to learn from leaders who have defined the course of our industry, you can grow your career and define your own path. Find your place in risk and analytics on #TeamAmex.

How will you make an impact in this role?

The Global Risk & Compliance (GRC) group within American Express is responsible for providing oversight and governance of risks to ensure that the company operates in a safe and sound manner within regulatory expectations. In a world increasingly subject to digitalization and the use of technology, technology risk management has become increasingly significant across organizations, becoming one of the key themes at board meetings. Cyberattacks have become increasingly commonplace and the trend continues to move upward.

This individual contributor role is part of the second line technology risk management team within the GRC group, headed by the Chief Risk Officer (CRO) of the company. This is a unique opportunity to work with a team of diverse and talented professionals who are responsible for building the technology risk management program and providing independent risk oversight to the technology, cyber security and business continuity management risks.

Reporting to the Director for Technology Risk oversight, this position is responsible for independently assessing, reporting, and aggregating Technology and Cybersecurity risks.  The risks identified by this team are reported to the Senior Management, Risk Management Committees, Board of Directors, and Regulators. This position will be responsible for effectively collaborating with key stakeholders across lines of business and lines of defense to ensure risks are managed effectively and efficiently in accordance with the company policies and applicable regulatory requirements.

Essential Job Functions:

  • Proactively conduct independent oversight of technology, cyber security, and business disruption risk management practices, including risks generated by business processes or that occur due to the use of Technology.
  • Perform data-driven reviews focused on technology, cyber security, and business disruption management risks.
  • Conduct exploratory data analysis on large sets of structure data using industry standard tools (Ex: SQL, Python, Power BI, and Excel data models) to develop meaningful insights on cybersecurity and technology related data.
  • Learn technology, cyber security, and business continuity management processes at American Express, demonstrating strong levels of curiosity and willingness, in order to present an effective credible challenge.
  • Develop and enhance data-driven key risk indicators and key performance indicators that provide real time and meaningful insights into the risk and performance trends.
  • Stay knowledgeable of relevant regulations, guidelines & industry standards.
  • Support the design of independent technology risk oversight program which defines the engagement and integration with various risk management programs, including Risk and Control Self Assessments, Business Disruption Management, New Product Approval, Mergers & Acquisitions etc.

 Minimum Qualifications:

  • Bachelor’s Degree in a related field
  • 5+ years of experience in risk management across any of the three lines of defense.
  • Proven ability to identify risks, analyze issues and derive meaningful insights about risk trends by conducting interviews and analyzing large volumes of data.
  • Excellent analytical skills with high attention to detail and accuracy.
  • Excellent critical thinking and problem-solving skills.
  • Required self-starter who can work with minimal supervision.
  • Excellent verbal, written and interpersonal communication skills.
  • Willingness to challenge traditional thinking by actively engaging in constructive dialogue.

Preferred:

  • Educational background: Computer Science or Information Systems
  • Working knowledge of one or more of the data mining tools and technologies (SQL, Python, Power BI, Excel data models, pivot tables & DAX queries, R)
  • Experience in risk management frameworks and standards across cyber security, information technology, 3rd party, business continuity management.
  • Industry certifications (e.g. CISM, CISA, CRISC)
  • Understanding of risk assessment methodologies, frameworks, and industry standards (e.g. COSO, COBIT, ISO 27001, FAIR or NIST RMF)
  • Knowledge of relevant policies & regulations (e.g. OCC Heightened Standards, FFIEC IT booklets)
  • Experience with Governance, Risk and Compliance tools (Ex: Archer)

Salary Range: $110,000.00 to $190,000.00 annually + bonus + benefits

The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we’ll consider your location, experience, and other job-related factors.

We back our colleagues and their loved ones with benefits and programs that support their holistic well-being. That means we prioritize their physical, financial, and mental health through each stage of life. Benefits include:

  • Competitive base salaries 
  • Bonus incentives 
  • 6% Company Match on retirement savings plan 
  • Free financial coaching and financial well-being support 
  • Comprehensive medical, dental, vision, life insurance, and disability benefits 
  • Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need 
  • 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy 
  • Free access to global on-site wellness centers staffed with nurses and doctors (depending on location) 
  • Free and confidential counseling support through our Healthy Minds program 
  • Career development and training opportunities

For a full list of Team Amex benefits, visit our Colleague Benefits Site.

American Express is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other status protected by law. American Express will consider for employment all qualified applicants, including those with arrest or conviction records, in accordance with the requirements of applicable state and local laws, including, but not limited to, the California Fair Chance Act, the Los Angeles County Fair Chance Ordinance for Employers, and the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance. For positions covered by federal and/or state banking regulations, American Express will comply with such regulations as it relates to the consideration of applicants with criminal convictions.

We back our colleagues with the support they need to thrive, professionally and personally. That's why we have Amex Flex, our enterprise working model that provides greater flexibility to colleagues while ensuring we preserve the important aspects of our unique in-person culture. Depending on role and business needs, colleagues will either work onsite, in a hybrid model (combination of in-office and virtual days) or fully virtually.

US Job Seekers/Employees - Click here to view the “Know Your Rights” poster and the Pay Transparency Policy Statement.

If the links do not work, please copy and paste the following URLs in a new browser window: https://www.dol.gov/agencies/ofccp/posters to access the three posters.

*Employment eligibility to work with American Express in the U.S. is required as the company will not pursue visa sponsorship for these positions.

American Express Glassdoor Company Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
American Express DE&I Review
4.4 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of American Express
American Express CEO photo
Stephen J Squeri
Approve of CEO

Average salary estimate

$150000 / YEARLY (est.)
min
max
$110000K
$190000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Manager - Information Security, American Express

At American Express, the role of Manager - Information Security is all about making a real impact and leading the charge in technology risk management. Based in beautiful Phoenix, Arizona, you'll be joining a diverse and talented team that is passionate about safeguarding the company and its customers against the rising tide of cyber threats. Your day-to-day will include conducting independent oversight of technology and cybersecurity risks, ensuring that the company operates within regulatory frameworks. Imagine delving into vast datasets using tools like SQL and Python to uncover insights that can fortify our security measures. You’ll work collaboratively with various stakeholders across the organization, engaging in constructive dialogue to challenge the status quo and drive innovative solutions. If you're someone who thrives in a dynamic environment, has a keen eye for detail, and enjoys problem-solving, then this position could be a perfect fit for you. Here at American Express, we recognize that it’s the diversity of our workforce and ideas that shapes our success. You will have access to fantastic benefits, a chance to learn from industry leaders, and a path that you help define. Join us and let’s make the digital world a safer place together!

Frequently Asked Questions (FAQs) for Manager - Information Security Role at American Express
What are the essential responsibilities of a Manager - Information Security at American Express?

As a Manager - Information Security at American Express, your essential responsibilities involve independently assessing and reporting technology risks, overseeing cybersecurity measures, and collaborating with various business lines to manage risks effectively. You will conduct data-driven reviews focusing on risk management practices and develop key indicators to track performance trends.

Join Rise to see the full answer
What qualifications are required for the Manager - Information Security position at American Express?

To qualify for the Manager - Information Security role at American Express, candidates should have a Bachelor’s Degree in a related field and at least 5 years of experience in risk management. Additionally, a background in Computer Science or Information Systems, and industry certifications like CISM or CISA are preferred.

Join Rise to see the full answer
How does the Manager - Information Security role at American Express interact with other teams?

In the Manager - Information Security position at American Express, you will collaborate effectively with key stakeholders across different business lines, ensuring that technology risks are managed in accordance with company policies and regulatory requirements. This role emphasizes communication and cooperation among various departments.

Join Rise to see the full answer
What skills are important for success in the Manager - Information Security role at American Express?

Success in the Manager - Information Security role at American Express requires excellent analytical skills, attention to detail, critical thinking, and problem-solving abilities. Additionally, strong verbal, written, and interpersonal communication skills are crucial to effectively convey insights and engage with stakeholders.

Join Rise to see the full answer
What opportunities for career development can the Manager - Information Security expect at American Express?

The Manager - Information Security position at American Express offers numerous career development opportunities, including access to training programs led by industry leaders, mentorship, and the chance to work on significant projects within risk management. The company is committed to helping you carve out a unique and meaningful career path.

Join Rise to see the full answer
Common Interview Questions for Manager - Information Security
Can you explain your experience with risk management frameworks?

When answering this question, focus on any specific frameworks you have worked with, such as COSO, COBIT, or ISO 27001. Highlight how you have applied these frameworks in previous roles to identify and manage risks effectively.

Join Rise to see the full answer
Describe a time when you identified a critical technology risk.

Share a specific example demonstrating your analytical skills. Discuss how you identified the risk, the steps you took to assess it, and the actions you recommended to mitigate the risk, showcasing your problem-solving abilities.

Join Rise to see the full answer
How do you stay updated on cybersecurity trends and regulations?

You can respond by mentioning the sources you follow, such as industry blogs, webinars, or conferences. Emphasize your commitment to continuous learning and how it informs your approach to managing cybersecurity risks.

Join Rise to see the full answer
What tools are you familiar with for data analysis in risk management?

Detail your experience with tools like SQL, Python, or Power BI, and describe specific projects where you used these tools to analyze data effectively. Speak about how this has helped you derive meaningful insights for cybersecurity risks.

Join Rise to see the full answer
How would you approach conducting a risk assessment?

Outline your methodology, including steps like identifying assets, assessing vulnerabilities, and determining potential impacts. Explain how you would collect information and involve key stakeholders to ensure a comprehensive evaluation.

Join Rise to see the full answer
What steps would you take to improve existing risk management practices?

Discuss your experience with evaluating current practices and identifying gaps. Emphasize your analytical approach and the importance of data-driven insights in informing enhancements to risk management frameworks.

Join Rise to see the full answer
Can you discuss your experience with cybersecurity incident response?

Provide an overview of a situation where you were part of an incident response team. Detail your role, actions taken, and the outcome, showcasing your ability to manage crises effectively.

Join Rise to see the full answer
How do you balance business needs with security requirements?

Emphasize your understanding of the importance of both aspects and provide examples of how you have worked with stakeholders to find solutions that support business goals while maintaining robust security measures.

Join Rise to see the full answer
Describe how you would present risk findings to senior management.

Explain your approach to making complex data understandable and relevant for senior management. Highlight your communication skills and the importance of framing findings in terms that align with business objectives.

Join Rise to see the full answer
What do you believe is the most pressing issue in information security today?

Share your perspective on the evolving nature of cyber threats and the importance of proactive risk management. Discuss specific trends or incidents that underscore the urgency for organizations to prioritize cybersecurity.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
American Express Remote New York, New York, United States
Posted 9 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Join American Express as a Data Engineer to enhance their database systems while enjoying a supportive work environment.

Photo of the Rise User
American Express Remote Phoenix, Arizona, United States
Posted 9 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Join American Express as an Engineer to help design and develop innovative digital solutions for our customers.

Photo of the Rise User
Posted 6 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Explore future technology opportunities with American Express in Sunrise, FL, and become part of a diverse team focused on innovation and customer success.

Posted 8 days ago

Join HappyRobot as a Security Engineer and play a vital role in protecting our cutting-edge AI communication platform.

Posted 9 days ago

Join Kinaxis as a ServiceNow Developer and be part of a team that innovates supply chain management solutions globally.

Photo of the Rise User

AbbVie is looking for a Senior Information Security Architect to lead secrets management strategies in a fully remote role.

Photo of the Rise User
Posted yesterday

Method is on the lookout for a Technical Integration Engineer to drive forward customer initiatives and deliver exceptional experiences in the fintech sphere.

Photo of the Rise User
American Express Remote Phoenix, Arizona, United States
Posted 7 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Drive cloud innovation and ensure operational excellence as a Senior Infrastructure Engineer with American Express in Phoenix, AZ.

Photo of the Rise User
American Express Remote Phoenix, Arizona, United States
Posted 10 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Become a pivotal part of Team Amex as a Senior Agile Champion, driving Agile practices and delivering value in a dynamic tech environment.

Photo of the Rise User

As a Cyber Security Specialist at Accenture Federal Services, you will lead cybersecurity initiatives that protect vital information and systems within federal government operations.

American Express is a multinational financial services corporation and global leader in providing personal, small business, and corporate credit cards.

2281 jobs
MATCH
Calculating your matching score...
BADGES
Badge Family FriendlyBadge Office VibesBadge Work&Life BalanceBadge Rapid Growth
CULTURE VALUES
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
BENEFITS & PERKS
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 4, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Delaware just viewed Practice Group Manager at LifeStance Health
Photo of the Rise User
Someone from OH, Youngstown just viewed Event Services Human Resources Coordinator at Allied Universal
Photo of the Rise User
Someone from OH, Columbus just viewed IP Network Engineering Intern - Summer 2025 at Bandwidth
Photo of the Rise User
Someone from OH, Cleveland just viewed Director, Education Programs & Partnerships at Encoura
Photo of the Rise User
8 people applied to IT Intern - Seasonal at Carowinds
Photo of the Rise User
80 people applied to Jr SOC Analyst at IBM
Photo of the Rise User
Someone from OH, Cleveland just viewed Operations Associate (Part-Time) - Pinecrest at Alo Yoga
Photo of the Rise User
Someone from OH, Dayton just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
Someone from OH, Coldwater just viewed Engineering Design Checker Jobs at Lockheed Martin
Photo of the Rise User
Someone from OH, Loveland just viewed SEO Admin & Business Support at Outliant
Photo of the Rise User
45 people applied to IT Intern at USAA
Photo of the Rise User
Someone from OH, Columbus just viewed Casting: Cedar Lake - Pilot Episode at Backstage
Photo of the Rise User
Someone from OH, Mount Orab just viewed Software Development Manager at Assured Guaranty
H
Someone from OH, Mansfield just viewed Medical Appointment Setter (Remote LatAm) at HireHawk
S
15 people applied to SOC Intern at SHEIN
Photo of the Rise User
Someone from OH, Lewis Center just viewed Third Party Risk Analyst at Experian
Photo of the Rise User
Someone from OH, Columbus just viewed Lead Preschool Teacher at Guidepost Montessori
A
Someone from OH, Cincinnati just viewed Global Supply Manager - Taiwan at Also
Photo of the Rise User
Someone from OH, Cincinnati just viewed Global Supply Manager (Raptor Machining) at SpaceX
Photo of the Rise User
Someone from OH, Reynoldsburg just viewed Summer 2025 Financial Services Internship at Nationwide
Photo of the Rise User
Someone from OH, Brunswick just viewed Staff Software Engineer C++ / Computer Vision at ABBYY