Director – Security Remediation Operations
Joining Amex Tech means discovering and shaping your contribution to something big. Here, you can work alongside talented tech teams and build a unique career with the Powerful Backing of American Express. With a range of opportunities to work with the latest technologies, and a commitment to back the broader engineering community through open source, our mission is to power your success. Because Amex Tech is powered by our technology, our culture, and our colleagues.
The Technology organization enables and accelerates the company’s growth strategies, delivering global capabilities and services in support of Amex’s customers and colleagues, while maintaining 24/7 servicing and availability to ensure an uninterrupted, high-quality customer experience. Technology provides the foundation for everything we do in the company while driving differentiation through building and leveraging innovative technology and data insights.
At American Express, our mission is to deliver the world’s best customer experience every day. At the heart of this mission is our Information Security organization, enabling exceptional experiences built on a foundation of trust, service, and security. We leverage advanced technologies and data-driven insights to stay ahead of an evolving threat landscape. We foster a culture of passion, curiosity, and courage—empowering you to innovate, grow, and help shape the future of a Fortune 100 company.
Trust. Service. Security.
American Express is committed to protecting our customers, colleagues, and technology assets through proactive, risk-based cybersecurity practices. As part of this mission, the Director – Security Remediation Operations will lead the enterprise strategy and execution for vulnerability remediation operations across the Security Posture Validation organization. This highly collaborative leadership role serves as the operational bridge across vulnerability management functions, Enterprise Technology Services, engineering teams, and application owners to ensure cybersecurity risks are prioritized, understood, and remediated efficiently.
The Director will lead the operational framework that drives end-to-end vulnerability management, enabling technology teams to focus on the most critical risks and exposures while improving remediation outcomes across the enterprise. This leader will partner closely with application development organizations to streamline remediation workflows, remove operational barriers, improve developer education, and establish measurable improvements in vulnerability lifecycle performance.
This position requires a strategic leader with strong cybersecurity expertise, operational excellence, and the ability to influence across a highly matrixed organization. The successful candidate will be responsible for driving enterprise remediation strategies, governance, metrics, and continuous improvement initiatives while advancing automation and AI-enabled capabilities that strengthen American Express' overall security posture.
- Build, lead, and mentor high-performing cybersecurity teams, fostering a culture of continuous learning, innovation, inclusion, and operational excellence.
- Lead the enterprise Security Remediation Operations program, driving consistent execution of vulnerability remediation processes across application, infrastructure, cloud, and platform security domains.
- Partner with Enterprise Technology Services, application development teams, product organizations, and cybersecurity stakeholders to prioritize remediation efforts based on business risk, exploitability, and enterprise impact.
- Drive the end-to-end vulnerability management lifecycle by improving operational workflows, reducing remediation friction, and increasing developer adoption of secure remediation practices.
- Develop enterprise remediation strategies, governance models, operational controls, and performance metrics that improve remediation effectiveness and reduce enterprise cyber risk.
- Collaborate closely with vulnerability management, penetration testing, application security, infrastructure security, and security engineering teams to ensure coordinated risk reduction across the organization.
- Lead strategic initiatives focused on automation, workflow optimization, and operational efficiency, integrating security tooling and data to improve visibility, prioritization, and remediation outcomes.
- Develop executive reporting, operational dashboards, and risk metrics that communicate enterprise security posture, remediation progress, and control effectiveness to senior leadership.
- Oversee responses to complex security and operational events, coordinating cross-functional remediation activities, root cause analysis, and continuous improvement initiatives.
- Establish and maintain security policies, standards, and operational procedures that align with enterprise governance, regulatory requirements, and industry best practices.
- Support regulatory examinations, internal and external audits, and compliance activities by providing defensible remediation evidence, operational metrics, and control validation.
- Partner with engineering and business leaders to improve developer education, vulnerability awareness, and secure development practices that reduce recurring security findings.
- Drive enterprise adoption of AI-enabled cybersecurity operations, leveraging automation and intelligent analytics to improve vulnerability prioritization, operational decision-making, and remediation effectiveness.
- Define governance, operational controls, and risk management strategies for AI-enabled cybersecurity capabilities, ensuring alignment with enterprise security standards, regulatory expectations, and responsible AI practices.
- Provide strategic leadership on emerging AI security risks, adversarial attack techniques, and AI security innovations to strengthen enterprise cyber resilience and operational readiness.
- Establish standards and governance for secure Prompt Design practices within cybersecurity operations to enable consistent, secure, and effective use of AI capabilities across vulnerability management and security operations.
- 10+ years of progressive experience in cybersecurity, including senior leadership experience leading enterprise security operations, vulnerability management, or remediation programs.
- Demonstrated experience leading cross-functional cybersecurity organizations within large, complex enterprise environments.
- Strong understanding of vulnerability management methodologies, application security, infrastructure security, cloud security, and enterprise risk management practices.
- Experience developing enterprise remediation strategies, operational governance, and metrics-driven security programs.
- Proven ability to influence engineering organizations, application owners, and executive stakeholders to prioritize and remediate cybersecurity risks.
- Strong understanding of security frameworks, governance models, and global regulatory requirements affecting enterprise cybersecurity programs.
- Knowledge of Network Security, Application Security, Threat Modeling, Identity & Access Management (IAM), Cloud Security, Data Security, Security Architecture, and Security Governance.
- Experience with Security Information and Event Management (SIEM) platforms such as Splunk, ArcSight, QRadar, or Elastic.
- Experience with Endpoint Detection and Response (EDR) platforms including CrowdStrike, Carbon Black, SentinelOne, Microsoft Defender, or similar technologies.
- Experience with endpoint protection technologies including Symantec Endpoint Protection, McAfee Endpoint Security, CrowdStrike Falcon, or comparable solutions.
- Working knowledge of network protocols, including TCP/IP, DNS, HTTP, and enterprise networking fundamentals.
- Experience using scripting languages such as Python, Bash, or PowerShell to automate operational workflows.
- Strong understanding of cybersecurity technologies, threat intelligence, incident response, vulnerability management, and operational risk management.
- Experience leading enterprise cybersecurity transformation initiatives involving AI-enabled monitoring, detection, automation, or threat management capabilities.
- Knowledge of AI-enabled cybersecurity architectures, automated threat detection and response frameworks, AI governance principles, adversarial AI risks, and enterprise AI security considerations.
- Exceptional communication, collaboration, and leadership skills with demonstrated ability to communicate effectively across technical teams, business partners, and executive leadership.
Educational Requirement: - Bachelor's Degree in Computer Science, Cybersecurity, Information Systems, or a related field; or equivalent professional experience.
- Advanced degree preferred (Master's Degree or MBA).
- Industry certifications preferred, including CISSP, CISM, CRISC, GIAC, or similar cybersecurity certifications.
Employment eligibility to work with American Express in the United States is required as the company will not pursue visa sponsorship for these positions.