Vice President, Security Engineering
American Express
**Description**
**You Lead the Way. We’ve Got Your Back.**
With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other. Here, you’ll learn and grow as we help you create a career journey that’s unique and meaningful to you with benefits, programs, and flexibility that support you personally and professionally.
At American Express, you’ll be recognized for your contributions, leadership, and impact—every colleague has the opportunity to share in the company’s success. Together, we’ll win as a team, striving to uphold our company values and powerful backing promise to provide the world’s best customer experience every day. And we’ll do it with the utmost integrity, and in an environment where everyone is seen, heard and feels like they belong.
Join Team Amex and let's lead the way together.
American Express is on an exciting journey to transform how strategic security programs are engineered and operationalized beginning with how colleagues securely operate when supporting our customers and the enterprise across all work styles and platforms. The Vice President – Security Engineering will collaboratively lead the engineering and operationalization of the technology risk and cyber security controls and capabilities required to secure American Express colleague journeys, including all virtual and hybrid colleague initiatives. The VP will partner with Digital Workplace, Developer Experience, other Technology partners, and all Technology Risk and Information Security (TRIS) leaders to drive secure design, implementation, and operations using standard frameworks and risk-based models. The VP will set the agenda by collaborating and driving cross-TRIS capabilities to ensure appropriate risk mitigation is delivered in conjunction with and directly supporting all colleague journeys and enabling the Digital Workplace and broader Technology strategies. The successful candidate will be accountable for the instantiation of a world-class Security Engineering program supporting critical business enablement underpinned by sound risk management practices. The new VP must be ready to address all current and emerging threats head-on and with the enthusiastic cooperation of all their partners and customers. This position demands a well-organized action-oriented, team player with the ability to deliver strategic programs that require prioritizing daily work vs strategic roadmap items; work on multiple initiatives simultaneously; establish and maintain an outward looking view on new and evolving technologies; and an ability to mature and operate business critical, end-to-end processes and solutions – while ensuring a great colleague user experience.
**This role will lead the following teams:**
+ Security Incident Response Engineering
+ Proxy, CASB, & SASE Security Engineering
+ EUC, Email, & Mobile Security
+ Data Loss Prevention & Unstructured Data Protection
+ Network Secure Access
+ India Strategic Service Outsourcing
**Responsibilities Include:**
+ Develop and execute a strategic vision and roadmap for the Security Engineering functions, inclusive of all applicable TRIS & Technology domains; ability to see the “big picture”
+ Deliver and maintain a comprehensive TRIS Colleague Security strategy and ensure the execution of all aligned monitoring and integration plans
+ Design, validate, implement, and mature Security Engineering programs required to ensure comprehensive, collaborative, and innovative security practices are consistently applied and maintained across the enterprise.
+ Champion the selection and successful implementation of aligned security tools and capabilities across all American Express colleague journeys and related technology platforms, with strong commercial stewardship.
+ Be a Change Agent and willing to challenge the status quo while helping build a culture of experimentation, innovation and drive to deliver value
+ Optimize security process maturity to exceed that consistent with applicable threat, legal and regulatory requirements
+ Operate all functions, capabilities, and services with extremely high levels of discipline and quality
+ Drive talent strategy (acquisition, development & retention) for these functions and the broader colleague security organization
+ Deliver leadership reporting and risk metrics that demonstrate the effectiveness of Security Engineering programs, functions, and services while providing information for continuous process enhancements
+ Consult on Business & Technologies projects to ensure appropriate security protection is delivered as part of any solution
+ Respond to audit and examination requirements for the Security Engineering function, as well as all shared or integrated security functions/domains
+ Operate as part of the extended Technology Risk and Information Security leadership team in support of all security and compliance initiatives.
**Required Role Qualifications:**
+ 10 years of Cyber or Information Security leadership experience – with increasing scope and complexity
+ 7 years experience supporting multiple information security technologies with demonstrated ability to integrate cyber security and technical risk requirements into architectural, engineering, and operational outcomes – including mergers, acquisitions, and divestitures.
+ Calm and decisive under pressure. Natural operational leadership in “Command and Control” situations
+ Ability to prioritize actions for the benefit of the organization to remain focused on most critical issues
+ Ability to negotiate pragmatic outcomes to complex issues/challenges
+ Initiative and energy to go beyond minimum requirements of effort and activity; a bias for action and for getting things done
+ Experience in managing large, global teams and in developing high performing talent
+ Skills in expense management, financial planning and other financial control for budgets more than $10M
+ Strong problem solver with the ability to use analytical methods to affect change
+ Effective organizational skills (including attention to detail) along with the ability to collaborate and influence in a matrix environment
+ Experience and expertise across multiple Cyber Security control areas with demonstrable knowledge across multiple security domains
+ Proven Cyber or Information Security leader with the ability to create and effectively manage large Cyber Security functions across the lifecycle of a threat, control, product, or role
+ Experience directly leading one or more teams, functions, controls, services, or capabilities within a Financial Services or other highly regulated institution
+ Demonstrated ability to manage colleagues and contractors across multiple work styles and geographies
+ Proven ability in extending and maintaining strong relationships in a complex multi-national corporation
+ Demonstrated leadership, collaboration, and execution delivering multi-year, enterprise initiatives
+ Understanding of control frameworks, compliance requirements, and regulatory/audit processes necessary to deliver consistent end-to-end security capabilities across complex and emerging platforms.
+ Demonstrated judgement and ability to make sound decisions in a fast-paced and dynamic setting.
+ Well-connected to external Cyber / Information Security institutions, as well as industry, government, and law enforcement agencies or forums.
+ Demonstrable expertise managing complex vendor / partner relationships – including direct examples where influence was applied to a 3rd party tool/platform roadmap and difficult financial or support concerns successfully negotiated
+ Experience leading a large cross-function team using multiple management and operations methods including standard service delivery, Agile SAFe framework, and SRE integration supporting outcomes that align to enterprise objectives.
**Educational Requirement:**
+ Bachelor’s Degree in computer science, computer engineering, or related field; or equivalent experience.
+ Information Security or Cloud Certification preferred – CISSP, CISM, CCSP, CCSK or similar
**Qualifications**
Employment eligibility to work with American Express in the U.S is required as the company will not pursue visa sponsorship for these positions
Salary Range: $210,000.00 to $300,000.00 annually bonus equity (if applicable) benefits
The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we’ll consider your location, experience, and other job-related factors.
We back our colleagues and their loved ones with benefits and programs that support their holistic well-being. That means we prioritize their physical, financial, and mental health through each stage of life. Benefits include:
+ Competitive base salaries
+ Bonus incentives
+ 6% Company Match on retirement savings plan
+ Free financial coaching and financial well-being support
+ Comprehensive medical, dental, vision, life insurance, and disability benefits
+ Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
+ 20 weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
+ Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
+ Free and confidential counseling support through our Healthy Minds program
+ Career development and training opportunities
For a full list of Team Amex benefits, visit our Colleague Benefits Site .
American Express is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other status protected by law.
We back our colleagues with the support they need to thrive, professionally and personally. That's why we have Amex Flex, our enterprise working model that provides greater flexibility to colleagues while ensuring we preserve the important aspects of our unique in-person culture. Depending on role and business needs, colleagues will either work onsite, in a hybrid model (combination of in-office and virtual days) or fully virtually.
US Job Seekers/Employees - Click here to view the “Know Your Rights” poster and the Pay Transparency Policy Statement.
If the links do not work, please copy and paste the following URLs in a new browser window: https://www.dol.gov/agencies/ofccp/posters to access the three posters.
**Job:** Executive
**Primary Location:** US-Arizona-Phoenix
**Other Locations:** US-New York-New York, US-Florida-Sunrise, US-Georgia-Atlanta
**Schedule** Full-time
**Req ID:** 25003124
Confirm your E-mail: Send Email
All Jobs from American Express