Director- Cybersecurity (Cloud Security Strategy & Governance)

Remote Full-time
About the position

At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. From delivering differentiated products to providing world-class customer service, we operate with a strong risk mindset, ensuring we continue to uphold our brand promise of trust, security, and service. As part of Team Amex, you'll experience this powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new skills, develop as a leader, and grow your career. Here, your voice and ideas matter, your work makes an impact, and together, you will help us define the future of American Express. How will you make an impact in this role? American Express is on an exciting cloud transformation journey driven today by a successful, high-energy, delivery-focused team that enables our vision of “security-as-code” and integrations across a diverse set of teams and tools to ensure public cloud security equivalency with on-premises security capabilities, methods, and processes for all cloud service models (IaaS, PaaS, SaaS) and workloads. The Director – Cloud Security Strategy and Governance will collaboratively lead the Strategic Program Management, Governance, and Operations functions of the technology risk and cyber security controls and capabilities required to secure the American Express cloud journey, including both our private/public cloud. The Director will partner with Cloud Engineering, Cloud Operations, other Technology partners, and all TRIS domains to help drive secure adoption, governance, compliance, and operations using a standardized risk-based model. The Director will set the agenda by collaborating and driving cross-TRIS matrixed capabilities to ensure appropriate risk informed delivery, directly supporting the enterprise cloud strategy. The successful candidate will be accountable for the oversight and delivery of the Cloud Security Strategy and Governance program and the enablement of all up-stream/down-stream processes and methods. This position demands a well-organized action-oriented, team player with the ability to prioritize daily work vs strategic roadmap items; work on multiple initiatives simultaneously; establish and maintain an outward looking view on new and evolving technologies; and an ability to mature and operate business critical, end-to-end processes and solutions – while ensuring a great colleague user experience. You will work closely with other Information Security departments, architecture and the Enterprise Cloud team, as well as external cloud providers on requirements, design, integration and delivery of these solutions.

Responsibilities
• Build and lead Program Management functions to drive delivery of centralized cloud security reporting, governance, and finance functions
• Develop, coach and mentor a highly motivated team, while coordinating closely with other Information Security and Engineering leaders and business partners.
• Partner in external and internal audits, ensuring overall adherence to policies and standards, driving the highest level of compliance through response, remediation and escalation as necessary
• Establish and refine cloud security budget and finance forecasting for public cloud consumption of security tools
• Assess, measure and report against cloud controls, and drive risk reduction guidance across and in partnership with all TRIS domains
• Partner with TRIS, Engineering and business stakeholders to help define and prioritize cloud security initiatives
• Provide security expertise to the Cloud Program, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Cloud Application Architecture subprograms.
• Collaborate with enterprise architects and SMEs to deliver comprehensive security solutions that align to Amex cloud strategy
• Capture requirements; build functional specifications, timelines, adoption plans and other artifacts to support security implementation.
• Partner with Architecture teams to build cloud-optimized security patterns and contribute to Enterprise Architecture governance.
• Partner with and support the Engineering team to drive and execute results in a timely manner.

Requirements
• 8+ years of experience in Information Security Roles and/or 15+ years leading platform development
• Masters Degree in computer science or computer engineering, or related field
• Experience with Cloud Control Matrix and CIS benchmarks for gap assessment
• Platform engineering experience, including cloud modernization
• Broad understanding of all IS disciplines including, Governance, Cyber Threat, Identity and Access, Infrastructure, Endpoint, Vulnerability, Data Protection, Operations, Application, Incident Response.
• Understanding of Information Security technology and platform delivery with experience in planning and execution of security projects.
• Understanding of Cloud Fundamentals, including containers, software-defined networks, high availability design, multi-cloud, and serverless compute.
• Demonstrated experience in Agile environments, application design, software development, and testing.
• Experience with adoption and implementation of GenAI

Nice-to-haves
• Information Security Certification required, CISM or similar.

Benefits
• Competitive base salaries
• Bonus incentives
• 6% Company Match on retirement savings plan
• Free financial coaching and financial well-being support
• Comprehensive medical, dental, vision, life insurance, and disability benefits
• Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
• 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
• Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
• Free and confidential counseling support through our Healthy Minds program
• Career development and training opportunities

Apply Now

Apply Now
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

**Clinical Document Specialist/Full Time/Remote

Remote Full-time

Amazon Customer Support Representative – Remote Job – Amazon Store

Remote Full-time

Data Analyst

Remote Full-time

[Remote] Marketing And Public Relations Intern

Remote Full-time

Principal, Strategic Accounts

Remote Full-time

Creative Manager

Remote Full-time

**Experienced Customer Service Representative - Remote Amazon Data Entry Jobs**

Remote Full-time

Driver Operations Associate | Nhân viên Vận hành

Remote Full-time

**Experienced Customer Service Representative – Remote Work Opportunity with FedEx**

Remote Full-time

Project Manager (Contract) External Warehouse & FTZ Oversight

Remote Full-time
← Back to Home