Manager, Tech Risk and Control
2 weeks ago
At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. As part of Team Amex, you'll experience this powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new skills, develop as a leader, and grow your career.
Here, your voice and ideas matter, your work makes an impact, and together, you will help us define the future of American Express.
How will you make an impact in this role?
The Manager – Tech Risk and Control function resides within the Regional Information Security Office and is responsible for control enforcement, cybersecurity awareness, reporting and enablement for American Express in Australia and New Zealand. The incumbent will be responsible for helping design and execute a regionalized information security risk management strategy closely informed by the APAC regulatory landscape and AXP business interests, including third party service providers, affiliates, and legal entities.
Key responsibilities include:
- Assist with the interconnection between core enterprise information security functions and American Express Asia-pacific legal entities
- Contribute to the first line information security risk management and reporting
- Assess the design and operating effectiveness of information security controls upon which the American Express Asia-pacific legal entities rely to protect Confidentiality, Availability, and Integrity of Information and Systems
- Collaborate with General Counsel, Market Compliance, and the American Express Privacy Office to support market regulatory requirements
- Lead the information security related aspects of regulatory changes and projects
- Identify, scope, and investigate new information security risks, including assisting with assessment of key American Express third-party providers in the region
- Deliver leadership reporting and risk metrics that demonstrate the effectiveness of the cyber security program to American Express Asia-pacific legal entities.
- Consult on market-specific Business & Technologies projects to ensure appropriate security protection
- Craft responses to Information Security audit and examination requirements for the market
- Operate as part of the extended Information Security team in support of all security and compliance initiatives
- Collaborate with global teams to publish market specific Information Security KPIs/KRIs
Participate in represent regional information security office in APAC risk committees
Required Skills:
- 5-10 years of Information Security and/or Data Privacy
- Experience working with regulators, such as METI, in complex regulated businesses
- Broad understanding of information security disciplines with emphasis on vulnerability management, data protection, infrastructure security, application security, identity and access, incident management and data analytics
- Strong in risk management. Ability to link threats to risk tolerance and control effectiveness measurements.
Understanding of cyber regulatory landscape
Required Work Experience, Education, Certification / Training:
- Bachelor's degree in computer science, information systems, network security or other related field. Master's degree preferred
- Professional certifications (CISSP, CRISC, CISA, PCI, CISM or equivalent)
- At least 5 years' work experience in information security or technology risk management
- Technical background with hands-on experience across a variety of technologies
Proficiency in information security, risk management and audit (risk/security policies, procedures and controls)
Required Knowledge, Skills and Abilities:
- Exceptional verbal and written communication skills
- Ability to lead and drive discussions on technical matter with senior business stakeholders along with partners and regulators
- Fluency English language
- Requires knowledge of a minimum of several business and technical functional capabilities in some of the following areas: security architecture; security engineering; threat management; vulnerability management; electronic discovery; computer and data breach incident management; data protection; forensics; 3rd party/vendor management; security monitoring; cryptography; cloud security; security operations and administration; access management; security policies and standards; security awareness; business continuity; disaster recovery; IT risk management and controls; web security; data security; network security; system security, technology operations and compliance
- Strong knowledge and experience in risk assessment and relevant methodologies including quantitative risk management techniques
- Knowledge of applicable information security standards and regulatory requirements
- Highly self-motivated and directed
- Keen attention to detail
We back you with benefits that support your holistic well-being so you can be and deliver your best. This means caring for you and your loved ones' physical, financial, and mental health, as well as providing the flexibility you need to thrive personally and professionally:
- Competitive base salaries
- Bonus incentives
- Support for financial-well-being and retirement
- Comprehensive medical, dental, vision, life insurance, and disability benefits (depending on location)
- Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
- Generous paid parental leave policies (depending on your location)
- Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
- Free and confidential counseling support through our Healthy Minds program
- Career development and training opportunities
Offer of employment with American Express is conditioned upon the successful completion of a background verification check, subject to applicable laws and regulations.
-
Manager, Tech Risk and Control
2 weeks ago
Sydney, New South Wales, Australia American Express Full time $120,000 - $180,000 per yearAt American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. As part of Team Amex, you'll experience this powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new...
-
Security Risk Manager
4 days ago
Sydney, New South Wales, Australia Tech Aalto Full time $150,000 - $200,000 per yearSecurity Risk AssuranceRole-The Senior Cyber Security Risk Assurance Lead is hands-on and multi disciplined, assessing complex technical issues and performing cyber security risk assessments across a wide range of initiatives in a fast-paced, complex environment.• Performing cyber security risk assessments across multiple projects.• Collaborating with...
-
Sydney, New South Wales, Australia Commonwealth Bank Full time $120,000 - $180,000 per yearSenior Manager, CCO Engineering, SRE and Tech RiskDo work that mattersThe Technology Chief Controls Office (TCCO) is a Line 1 risk team responsible for ensuring new and changing initiatives are assessed and that appropriate risk mitigations are in place.This role sits within the Chief Technology Office (CTO) Centre of Excellence of TCCO and partners closely...
-
Manager Risk and Controls
2 days ago
Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time $120,000 - $180,000 per yearDo work that mattersCommonwealth Bank's CommSec Division provides retail clients access to online broking and investment products, and geared solutions. CommSec's purpose is to empower more Australians to grow their wealth, as Australia's leading online broker.Our products include Equities, International Trading, Margin lending, Cash and Derivatives.See...
-
Risk Manager
2 days ago
Sydney, New South Wales, Australia Marketfinder Full time $150,000 - $200,000 per yearWe're looking for an experiencedRisk Managerto join our clients growing financial services team. This role will overseerisk management across trading platforms, client exposures, and hedging strategies, ensuring robust controls and compliance across the business.What You'll DoMonitor daily risk, exposures, and trading activity.Develop and implement risk...
-
Risk and Controls Manager Line 1
4 days ago
Sydney, New South Wales, Australia Commonwealth Bank Full timeSee yourself in our team:The Business Banking Customer, Channels and Data (CCD) strategic business unit is made up of four teams:Business Banking Services (BBS)Business Banking Channels (Channels), andBusiness Banking Analytics, Data and Decision Science (BB ADDS)Strategy and TransformationThe CCD teams support all BB segments and product houses and play a...
-
Risk & Control Officer
4 days ago
Sydney, New South Wales, Australia TP ICAP Full time $90,000 - $120,000 per yearGroup Overview:The TP ICAP Group is a world leading provider of market infrastructure.Our purpose is to provide clients with access to global financial and commodities markets, improving price discovery, liquidity, and distribution of data, through responsible and innovative solutions.Through our people and technology, we connect clients to superior...
-
Senior Auditor – Tech
2 days ago
Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time $120,000 - $180,000 per yearSenior Auditor – Tech & Cyber AuditJoin a high-impact team delivering assurance across critical technology and cyber domains for Australia's leading financial institution.Work on complex, cutting-edge IT environments, including cloud, APIs, and resilience frameworks.Be part of a collaborative, expert audit community that partners with senior leaders to...
-
Risk and Controls Analyst
1 week ago
Sydney, New South Wales, Australia 12 Month Contract Full time $80,000 - $120,000 per yearFor three decades, The Star Sydney has been a local landmark, deeply ingrained in Pyrmont and Darling Harbour. Committed to our communities, we strive to create fun in trusted destinations as Australia's premier entertainment hub. The Darling, and state-of-the-art venues including The Star Event Centre and The Lyric Theatre have hosted prestigious events and...
-
Senior Auditor – Tech
3 days ago
Sydney, New South Wales, Australia Commonwealth Bank Full time $80,000 - $120,000 per yearSenior Auditor – Tech & Cyber AuditJoin a high-impact team delivering assurance across critical technology and cyber domains for Australia's leading financial institution.Work on complex, cutting-edge IT environments, including cloud, APIs, and resilience frameworks.Be part of a collaborative, expert audit community that partners with senior leaders to...