FirstBank Jobs

Job Information

American Express Information Security Analyst I in Haryana, India

Description

You Lead the Way. We’ve Got Your Back.

With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other. Here, you’ll learn and grow as we help you create a career journey that’s unique and meaningful to you with benefits, programs, and flexibility that support you personally and professionally.

At American Express, you’ll be recognized for your contributions, leadership, and impact—every colleague has the opportunity to share in the company’s success. Together, we’ll win as a team, striving to uphold our company values and powerful backing promise to provide the world’s best customer experience every day. And we’ll do it with the utmost integrity, and in an environment where everyone is seen, heard and feels like they belong.

Join Team Amex and let's lead the way together.

Information Security Analyst

The Information Security Analyst function resides within the Regional Information Security Office and is responsible for control enforcement, cybersecurity awareness, reporting and enablement for American Express Banking Corp. The incumbent will be responsible for helping design and execute an information security risk management program in line with business strategy and regulatory requirements.

Key responsibilities include:

  • Contribute to the first line information security risk management and reporting by assisting in developing, implementing, and monitoring compliance to A AXP and Information security policies, standards and procedures, and other policies and standards as appropriate.

  • Assist in assessing the design effectiveness and operating effectiveness of information security controls which are relied on to protect Confidentiality, Availability, and Integrity of Information and Systems

  • Prepares materials (reports, presentations, spreadsheets, etc) on information security to help develop scenarios, response procedures, and to enable informed decision-making. verify completeness, accuracy and relevance of data captured.

  • Collaborate with stakeholders across Bank, Legal entities and Enterprise to deliver various goals as part of information security program.

  • Utilizes tools and documented processes to ensure consistency and optimization of information security processes; work in support of efforts to measure and improve information security processes.

  • Prepares status reports on information security, or other matters to help develop, track, monitor and report on projects and initiative.

  • Consults on controls, processes, and procedures for market-specific Business & Technologies projects to ensure appropriate security protection.

  • Maintains internal documentation library, ensuring that process and other documentation is regularly updated to reflect the latest operational processes and requirements

  • Deliver leadership/regulatory reporting and risk metrics that demonstrate the effectiveness of the program at Asia pacific level.

  • Identify and support information security regulatory changes and support implantation.

  • Support the audit and examination requirements for the regional information security office function, in close partnership with privacy office, compliance, general council and border information security organization.

  • Craft responses to Information Security audit and examination requirements for the market

  • Operate as part of the extended Information Security team in support of all security and compliance initiatives.

Required Skills:

  • Up to 6 years of Information Security and/or Data Privacy experience

  • Experience working with Indian and Asia pacific regulators in complex regulated payments industry.

  • Broad understanding of information security disciplines with emphasis on vulnerability management, data protection, infrastructure security, application security, identity and access, incident management and data analytics

  • Strong in risk management. Ability to link threats to risk tolerance and control effectiveness measurements.

  • Understanding of cyber regulatory landscape

Required Work Experience, Education, Certification / Training:

  • Bachelor’s degree in computer science, information systems, network security or other related field. Master’s degree preferred.

  • Preferred certifications (CISSP, CRISC, CISA, PCI, CISM or equivalent)

  • Technical background with hands-on experience across a variety of technologies

  • Proficiency in information security, risk management and audit (risk/security policies, procedures and controls)

Required Knowledge, Skills and Abilities:

  • Exceptional verbal and written communication skills

  • Requires knowledge of a minimum of several business and technical functional capabilities in some of the following areas: security architecture; security engineering; threat management; vulnerability management; electronic discovery; computer and data breach incident management; data protection; forensics; 3rd party/vendor management; security monitoring; cryptography; cloud security; security operations and administration; access management; security policies and standards; security awareness; business continuity; disaster recovery; IT risk management and controls; web security; data security; network security; system security, technology operations and compliance

  • Strong knowledge and experience in risk assessment and relevant methodologies including quantitative risk management techniques.

  • Knowledge of applicable information security standards and regulatory requirements

  • Highly self-motivated and directed.

  • Keen attention to detail

  • Analyzes complex information and identifies the most meaningful details.

  • Shows personal determination and resilience; is optimistic in changing circumstances

  • Continually seeks and learns from feedback.

Qualifications

We back our colleagues and their loved ones with benefits and programs that support their holistic well-being. That means we prioritize their physical, financial, and mental health through each stage of life. Benefits include:

  • Competitive base salaries

  • Bonus incentives

  • Support for financial-well-being and retirement

  • Comprehensive medical, dental, vision, life insurance, and disability benefits (depending on location)

  • Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need

  • Generous paid parental leave policies (depending on your location)

  • Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)

  • Free and confidential counseling support through our Healthy Minds program

  • Career development and training opportunities

American Express is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other status protected by law.

Offer of employment with American Express is conditioned upon the successful completion of a background verification check, subject to applicable laws and regulations.

Job: Technology

Primary Location: India-Haryana-Gurugram

Schedule Full-time

Req ID: 24012114

DirectEmployers