-
hackajob

Information Security Analyst I

hackajob
India · Full-time · Mid-Senior

hackajob is collaborating with American Express to connect them with exceptional tech professionals for this role.

At American Express, our culture is built on a 175-year history of innovation,

shared values and Leadership Behaviors, and an unwavering commitment to back our

customers, communities, and colleagues. As part of Team Amex, you'll experience this

powerful backing with comprehensive support for your holistic well-being and many

opportunities to learn new skills, develop as a leader, and grow your career.

Here, your voice and ideas matter, your work makes an impact, and together, you will help

us define the future of American Express.

How will you make an impact in this role?

Responsible for contacting clients with overdue accounts to secure the settlement of the

account. Also they do preventive work to avoid future over dues with accounts that have a

high exposure.

  • The Global Risk & Compliance (GRC) group within American Express is responsible

for providing oversight and governance of risks to ensure that the company operates

in a safe and sound manner within regulatory expectations. In a world increasingly

subject to digitalization and the use of technology, technology risk management has

become increasingly significant across organizations, becoming one of the key

themes at board meetings. Cyberattacks have become increasingly commonplace

and the trend continues to move upward.

This individual contributor role is part of the second line technology risk management team

within the GRC group, headed by the Chief Risk Officer (CRO) of the company. This is a

unique opportunity to work with a team of diverse and talented professionals who are

responsible for building the technology risk management program and providing

independent risk oversight to the Information Technology (IT), Information Security (IS) and

Business Continuity management (BCM) risks.

Reporting to the Manager for Cybersecurity, Technology, and Resiliency Risk oversight, this

position is responsible for supporting independent assessments and reporting of risks. The

risks identified by this team are reported to the Senior Management, Risk Management

Committees, Board of Directors, and Regulators. This position will be responsible for

effectively collaborating with key stakeholders across lines of business and lines of

defense to ensure risks are managed effectively and efficiently in accordance with the

Essential Job Functions

company policies and applicable regulatory requirements.

  • Assist in identifying and assessing IT and IS risks across applications,

infrastructure, and third-party vendors.

  • Support IT and IS risk assessments and recommend mitigation strategies.
  • Monitor IT and IS risk trends and emerging threats to provide proactive

recommendations.

  • Assist in the testing and validation of IT and IS controls.
  • Prepare IT and IS risk reports and dashboards for management review.
  • Support internal and external audits related to IT and IS risk.
  • Support the implementation of IT and IS risk management frameworks,

policies, standards, and procedures.

  • Maintain IT and IS risk registers and track remediation efforts for identified

risks.

  • Support independent, proactive risk management and oversight of

information technology, information security and business continuity

management risks generated within business processes or that occur due to

use of Technology.

  • Support data-driven reviews focused on technology, cyber security, and

business continuity management risks.

  • Support development and enhancement of data-driven key risk indicators

and key performance indicators that provide real time and meaningful

insights into the risk and performance trends.

  • Stay knowledgeable of relevant regulations, guidelines & industry standards.
  • Support the design of independent Information Technology risk oversight

program which defines the engagement and integration with various risk

management programs, including Risk and Control Self Assessments,

Business Continuity Management, New Product Approval, Mergers &

Acquisitions etc.

Required Qualifications

  • Bachelor’s Degree in related field.
  • 3 + years of experience in IT and IS risk management across any of the three

lines of defense.

  • Proven ability to identify risks, analyze issues and derive meaningful insights

About Risk Trends.

by conducting interviews and analyzing large volumes of data.

  • Excellent analytical skills with high attention to detail and accuracy.
  • Excellent critical thinking and problem-solving skills.
  • Excellent verbal, written and interpersonal communication skills.
  • Willingness to challenge traditional thinking by actively engaging in

constructive dialogue.

Preferred

  • Educational background: Computer Science or Information Systems.
  • Experience in risk management across cyber security, information

technology, third party, business continuity management.

  • Working knowledge of one or more of the data mining tools/technologies

(e.g., Microsoft Excel: Pivot Tables SQL, SAS, Python, R).

  • Industry certifications (e.g., CISSP, CISM, CISA, CRISC, ITIL, CBCM, CBCP,

CBCI).

  • Understanding of risk assessment methodologies, frameworks, and industry

standards (e.g., COSO, COBIT, ISO 27001, ISO/IEC 20000-1, ISO 22301, FAIR

or NIST RMF).

  • Knowledge of relevant policies & regulations (e.g., OCC Heightened

Standards, FFIEC IT booklets).

  • Experience with Governance, Risk and Compliance tools (e.g., Archer)

Compliance Language

We back you with benefits that support your holistic well-being so you can be and deliver

your best. This means caring for you and your loved ones' physical, financial, and mental

health, as well as providing the flexibility you need to thrive personally and professionally:

  • Competitive base salaries
  • Bonus incentives
  • Support for financial-well-being and retirement
  • Comprehensive medical, dental, vision, life insurance, and disability benefits

(depending on location)

  • Flexible working model with hybrid, onsite or virtual arrangements depending on

role and business need

  • Generous paid parental leave policies (depending on your location)
  • Free access to global on-site wellness centers staffed with nurses and doctors

(depending on location)

  • Free and confidential counseling support through our Healthy Minds program
  • Career development and training opportunities

American Express is an equal opportunity employer and makes employment decisions

without regard to race, color, religion, sex, sexual orientation, gender identity, national

origin, veteran status, disability status, age, or any other status protected by law.

Offer of employment with American Express is conditioned upon the successful

completion of a background verification check, subject to applicable laws and regulations.

Key Skills

Ranked by relevance

cyber security cybersecurity data mining python cissp excel cisa cism nist itil sql sas
Login to Apply
Posted
Jun 20, 2025
Type
Full-time
Level
Mid-Senior
Location
Gurugram
Company
hackajob

Industries

Software Development

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
GlobalLogic
Related

Senior/Lead Python Cloud Engineer IRC291093

2026-04-11

Full-time
Not Applicable
Ukraine
Software Development
Engineering
View Job Details
hackajob
Related

AI Engineer

2026-04-11

Full-time
Not Applicable
United Kingdom
Software Development
Engineering
View Job Details
Experis Nederland
Related

Cyber Security Engineer

2026-04-13

Full-time
Entry
Netherlands
IT Services
Information Technology