Information Security Technology Manage

Information Security Technology Manage

Full-Time 36000 - 60000 £ / year (est.) No home office possible
Go Premium
American Express Global Business Travel

At a Glance

  • Tasks: Manage and enhance information security systems while ensuring compliance with industry standards.
  • Company: Join Amex GBT, a leader in travel and technology with a collaborative culture.
  • Benefits: Enjoy flexible benefits, travel perks, and access to over 20,000 learning courses.
  • Other info: Inclusive environment with opportunities for personal and professional growth.
  • Why this job: Make a real impact in the cybersecurity field while working with a diverse team.
  • Qualifications: Experience in ISO 27001 and PCI DSS, strong leadership, and analytical skills required.

The predicted salary is between 36000 - 60000 £ per year.

Amex GBT is a place where colleagues find inspiration in travel as a force for good and – through their work – can make an impact on our industry. We are here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued.

American Express Global Business Travel (Amex GBT) is seeking a motivated and driven individual to maintain and enhance an existing information security management system and associated frameworks. By joining our Global Cyber Governance, Risk and Compliance team, you will be a core member responsible for security oversight and compliance management for a dedicated product/service in the Company's portfolio. You will be responsible for promoting best practices, company's policies and controls in protecting the confidentiality, integrity and availability of GBT's assets.

The information security manager will be responsible for managing an existing ISO 27001 ISMS and maintaining associated ISO 27001 certification as well as PCI DSS certification for a product line. This role will include responsibility for managing policies, controls reviews, management reporting, exception and issue remediation tracking, metrics and support of customer facing security requests.

What You'll Do:

  • Serves as a single point of contact for information security related audit and assessments requests which will include Internal Audit, Key Controls Testing, PCI and ISO 27001 audit engagements.
  • Responsible for ISO 27001 and PCI DSS certification execution.
  • Supports departments by collecting and coordinating internal compliance data with auditors and various departments.
  • Maintains audit schedule and request trackers, collects evidence and supports audit fieldwork/certification engagements.
  • Prepares management reports for technical, management and leadership level stakeholders including Management Reviews and metrics.
  • Drives completion of management responses and compiles mitigation plans, tracks progress of mitigation activities, when applicable.
  • Enhances compliance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to job accomplishments which may include policy creation and management, exception evaluations and tracking, metrics, etc.
  • Identifies areas of improvement and enhances awareness of security requirements.
  • Drives information security policy and standard enhancements.
  • Provide support in various security risk reviews, conducts risk assessments, control testing and supports execution of assigned security controls.
  • Conducts internal and external audits.
  • Completes customer security questionnaires and assessments and participates in the customer RFP engagement process.

What We're Looking For:

  • Must have Fluent English and French, preference is for Bilingual background.
  • Strong leadership skills and ability to work effectively with a multi-disciplinary set of stakeholders across different levels, time zones and with minimal supervision.
  • Formal experience with ISO 27001 certification and ISMS management as well as PCI DSS.
  • Experience complying with industry security standards such as COBIT, ISO 27001/2, NIST CSF or similar.
  • Experience working with 3rd party security auditors.
  • Strong understanding of the business impact of security tools, processes, and policies as well as high proficiency in how to assess risk and business impact.
  • Team player; able to work collaboratively and effectively with and through others at all levels in an organization; proven ability to influence others and move toward a common vision or goal.
  • Technical knowledge of IT processes to include configuration management, networking, database management, application coding, availability, data center operations, etc.
  • Excellent understanding of technical security safeguards.
  • Solid business acumen, flexibility, and judgment to evaluate issues/problems of high complexity and make sound decisions.
  • Strong project management and people management skills.
  • Solid analytical skills and understanding of processes, technology and operational concepts.
  • 5+ years of relevant security technology experience.
  • 3+ years in similar role, such as Information Security Officer/Manager, IT Administrator, or Data Governance Officer/Manager.

All applicants will receive equal consideration for employment without regard to age, sex, gender (and characteristics related to sex and gender), pregnancy (and related medical conditions), race, color, citizenship, religion, disability, or any other class or characteristic protected by law.

Furthermore, we are committed to providing reasonable accommodation to qualified individuals with disabilities. Please let your recruiter know if you need an accommodation at any point during the hiring process.

If you're passionate about our mission and believe you'd be a phenomenal addition to our team, don't worry about 'checking every box;' please apply anyway. You may be exactly the person we're looking for.

Information Security Technology Manage employer: American Express Global Business Travel

At Amex GBT, we foster an inclusive and collaborative culture where your contributions are valued, making it an exceptional place to work. With flexible benefits tailored to your needs, extensive learning opportunities, and a commitment to employee growth, you can thrive in your career while enjoying travel perks and a supportive environment. Join us in making a meaningful impact in the travel industry as part of our dedicated team in the United Kingdom.
American Express Global Business Travel

Contact Detail:

American Express Global Business Travel Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Technology Manage

✨Tip Number 1

Network like a pro! Reach out to current employees at Amex GBT on LinkedIn or through mutual connections. A friendly chat can give you insider info and might just get your foot in the door.

✨Tip Number 2

Prepare for the interview by researching Amex GBT's culture and values. Show them you’re not just about the skills, but that you genuinely vibe with their mission of making travel a force for good.

✨Tip Number 3

Practice common interview questions related to information security management. Be ready to discuss your experience with ISO 27001 and PCI DSS certifications, as well as how you handle compliance challenges.

✨Tip Number 4

Don’t forget to follow up after your interview! A quick thank-you email reiterating your enthusiasm for the role can leave a lasting impression and keep you top of mind.

We think you need these skills to ace Information Security Technology Manage

ISO 27001 Management
PCI DSS Certification
Information Security Audits
Risk Assessment
Compliance Management
Stakeholder Engagement
Technical Security Safeguards
Project Management
Analytical Skills
Leadership Skills
Collaboration
Communication Skills
Understanding of IT Processes
Business Acumen
Flexibility

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Information Security Technology Manager role. Highlight your experience with ISO 27001 and PCI DSS, as well as any relevant leadership skills. We want to see how your background aligns with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our team. Don't forget to mention your bilingual skills if you have them – they’re a big plus for us!

Showcase Your Achievements: When detailing your experience, focus on specific achievements rather than just duties. Did you lead a successful audit? Implement a new security policy? We love to see concrete examples of how you've made an impact in your previous roles.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us that you’re genuinely interested in joining our team at Amex GBT!

How to prepare for a job interview at American Express Global Business Travel

✨Know Your ISO 27001 Inside Out

Make sure you have a solid understanding of ISO 27001 and its requirements. Be prepared to discuss your experience with managing an Information Security Management System (ISMS) and how you've maintained compliance in previous roles. This will show that you're not just familiar with the standards, but that you can actively contribute to maintaining Amex GBT's certifications.

✨Showcase Your Leadership Skills

As this role requires strong leadership abilities, think of examples where you've successfully led a team or project. Be ready to discuss how you influenced stakeholders and drove security initiatives. Highlighting your collaborative approach will resonate well with their inclusive culture.

✨Prepare for Technical Questions

Brush up on your technical knowledge related to IT processes, security tools, and risk assessments. Expect questions about how you would handle specific security scenarios or audits. Demonstrating your analytical skills and understanding of complex issues will set you apart from other candidates.

✨Understand the Business Impact of Security

Be ready to discuss how security policies and practices impact business operations. Think about how you've previously balanced security needs with business objectives. Showing that you can align security strategies with overall business goals will be key in this interview.

Information Security Technology Manage
American Express Global Business Travel
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>