Job Description
Amex GBT is a place where colleagues find inspiration in travel as a force for good and - through their work - can make an impact on our industry. We're here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued.
Amex GBT's Security GRC team is looking for a highly motivated Senior Security GRC Analyst to maintain our strong security posture by overseeing the governance, risk, and compliance processes. We are seeking a highly skilled and experienced individual who is passionate about security and has a strong understanding of GRC principles. With your expertise, you will help drive the development and implementation of security policies and procedures, as well as identify and mitigate potential risks.
**What You'll Do:**
+ Conduct regular risk assessments and identify potential security vulnerabilities, providing recommendations for risk mitigation and remediation.
+ Develop, monitor, and analyze security and compliance metrics to assess the effectiveness of information security controls.
+ Conduct assessment to ensure compliance with security frameworks, regulatory requirements, and internal policies.
+ Assist with audit activities by gathering evidence, conducting preliminary assessments, and supporting remediation efforts for identified findings.
+ Develop and maintain security documentation, including policies, procedures, and standards.
+ Identify and recommend process improvements and automation opportunities to enhance security GRC processes.
+ Lead and participate in security awareness training and education initiatives.
+ Serve as a subject matter expert on security GRC principles and provide guidance to other team members.
+ Stay up to date with industry trends and best practices in security governance, risk, and compliance.
**What We're Looking For:**
+ Bachelor's degree in information security, risk management, or a related field (or equivalent experience).
+ 7+ years of experience in Governance, Risk, and Compliance (GRC) within a cybersecurity context.
+ In-depth knowledge of cybersecurity frameworks (NIST, ISO 27001, SOC 2, GDPR, PCI DSS, etc.) and regulatory compliance requirements (GDPR, PCI DSS).
+ Experience with risk management processes, including risk assessments, mitigation plans, and monitoring.
+ Ability to conduct routine testing and internal control reviews.
+ Strong analytical skills to identify control gaps and evaluate remediation plans.
+ Familiarity with various security technologies and tools (e.g., SIEM, firewalls, vulnerability management, identity management systems).
+ Excellent communication and reporting skills, with the ability to present findings to stakeholders.
**Location**
United States
The US national annual base salary range for this position is from $70,000 to $140,000. The national range provided includes the base salary that GBT expects to pay for the role. Actual base salary will be based on factors including the scope and complexity of the role and the successful candidate's relevant experience, skills, knowledge, and work location.
In addition to base salary, this role is eligible for our Annual Incentive Award plan, which rewards participants based on company and individual performance. For information about our comprehensive US benefits programs and eligibility, please review our Benefits-at-a-Glance document.
Benefits at a glance (
**The #TeamGBT Experience**
Work and life: Find your happy medium at Amex GBT.
+ **Flexible benefits** are tailored to each country and start the day you do. These include health and welfare insurance plans, retirement programs, parental leave, adoption assistance, and wellbeing resources to support you and your immediate family.
+ **Travel perks:** get a choice of deals each week from major travel providers on everything from flights to hotels to cruises and car rentals.
+ **Develop the skills you want** when the time is right for you, with access to over 20,000 courses on our learning platform, leadership courses, and new job openings available to internal candidates first.
+ **We strive to champion Inclusion** in every aspect of our business at Amex GBT. You can connect with colleagues through our global INclusion Groups, centered around common identities or initiatives, to discuss challenges, obstacles, achievements, and drive company awareness and action.
+ And much more!
All applicants will receive equal consideration for employment without regard to age, sex, gender (and characteristics related to sex and gender), pregnancy (and related medical conditions), race, color, citizenship, religion, disability, or any other class or characteristic protected by law.
Click Here ( for Additional Disclosures in Accordance with the LA County Fair Chance Ordinance.
Furthermore, we are committed to providing reasonable accommodation to qualified individuals with disabilities. Please let your recruiter know if you need an accommodation at any point during the hiring process. For details regarding how we protect your data, please consult the Amex GBT Recruitment Privacy Statement ( .
**What if I don't meet every requirement?** If you're passionate about our mission and believe you'd be a phenomenal addition to our team, don't worry about "checking every box;" please apply anyway. You may be exactly the person we're looking for!
Click Here to Learn More (
Job Tags
Immediate start, Flexible hours,
Similar Jobs
Regions Bank
...Description:**At Regions, the Digital User Experience/User Interface (UX/UI) Designer is part of a User Experience team with a clear purpose: we... ...and assist in implementation of new tools+ Mentors junior designers and contribute to the growth and development of the...
Armstrong Logistics, LLC
...logistics company dedicated to delivering packages for Amazon. We prioritize the well-being of our drivers and believe in maintaining a healthy work-life... ...truly matters: family. Job Description As a Delivery Driver at Armstrong Logistics LLC, you will be...
Gainwell Technologies LLC
...Technologies is seeking a highly motivated and detail-oriented Process Writer to join our Customer Experience (CX) team. This role will be... ...teams and manage stakeholder expectations. Willingness to travel up to 25% as required. What you should expect in this role...
Fiber Materials
...EHS Specialist to provide full-time environmental health and safety support for all locations, with a focus on environmental activities... .... You will be responsible for developing regulatory programs, managing permitting applications, supervising the development,...
Spring Valley Ford, Inc.
Full Time, Lube Technician Full benefits include pension, vacations, health insurance. We are a drug/alcohol free workplace. We also do background checks and you must have a good driving record.