About this role
The Global Risk & Compliance (GRC) organization serves as American Express’ independent risk management function. GRC maintains the enterprise risk framework, provides oversight and challenge, and monitors key risks. By embedding risk discipline into strategy and operations, GRC enables responsible growth, innovation, and long-term value creation while protecting customers and shareholders.
Overview
The Associate in Cybersecurity Risk Management (CRM) will support CRM in leading the governance, strategy, and risk management for cybersecurity risks across American Express. The role includes assisting with supporting cybersecurity committees and other forums, and reporting to the Cybersecurity Risk Management Manager as part of a team that manages cybersecurity risk frameworks and supports core cyber domains such as Third-party Security Management, Risk Exception/Treatment, and Cyber Resilience.
Responsibilities
- Support cybersecurity risk governance, strategy, and risk management across American Express.
- Assist with supporting cybersecurity committees and other forums.
- Report to the Cybersecurity Risk Management Manager and collaborate with the CRM team.
- Help manage cybersecurity risk frameworks and support core cyber domains, including Third-party Security Management, Risk Exception/Treatment, and Cyber Resilience.
Requirements
- The description provided does not specify formal qualifications or requirements for this role.