Skip to content

Open nowPosted 2 days ago

Agentic AI Cybersecurity Engineer - Identity Access Lifecycle Managementgmt

American Express84 open roles

Where
Phoenix, AZ, United States
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowAgentic AI Cybersecurity Engineer - Identity Access Lifecycle ManagementgmtAmerican Express · Phoenix, AZ, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on American Express's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. American Express postings stay open a median of 3 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 34.0%30 days
This job: posted 2 days ago

American Express median: 3 days open

The posting

Job Description

Joining Amex Tech means discovering and shaping your contribution to something big. Here, you can work alongside talented tech teams and build a unique career with the Powerful Backing of American Express. With a range of opportunities to work with the latest technologies, and a commitment to back the broader engineering community through open source, our mission is to power your success. Because Amex Tech is powered by our technology, our culture, and our colleagues.

The Technology organization enables and accelerates the company’s growth strategies, delivering global capabilities and services in support of Amex’s customers and colleagues, while maintaining 24/7 servicing and availability to ensure an uninterrupted, high-quality customer experience. Technology provides the foundation for everything we do in the company while driving differentiation through building and leveraging innovative technology and data insights.

At American Express, our mission is to deliver the world’s best customer experience every day. At the heart of this mission is our Information Security organization, enabling exceptional experiences built on a foundation of trust, service, and security. We leverage advanced technologies and data-driven insights to stay ahead of an evolving threat landscape. We foster a culture of passion, curiosity, and courage—empowering you to innovate, grow, and help shape the future of a Fortune 100 company.

Trust. Service. Security.

We are seeking an experienced and results-oriented Cybersecurity Engineer to join the Identity Access and Lifecycle Management team. This role will help ensure first-line defense cybersecurity operational goals are met by partnering with cross-functional teams, engineering automation, and building AI-enabled agents that can support self-auditing of controls. The ideal candidate will bring a strong foundation in control management, data-driven control testing, automation engineering, stakeholder engagement, and AI-enabled solution design and delivery—sitting at the intersection of risk, controls, software engineering, and process automation in a fast-paced, matrixed environment.

Responsibilities

Engineering, Agent Development & Automated Metrics

  • Design, build, and enhance automated metrics that strengthen control effectiveness and enable continuous control monitoring.
  • Develop, configure, test, and maintain AI-enabled agents and automation workflows that can evaluate control evidence, identify exceptions, surface control gaps, recommend remediation actions, and support scalable self-auditing capabilities.
  • Partner with data, engineering, and technology teams to source, validate, and transform data used in automated control testing and agent-driven analysis.
  • Define and track KPIs/KRIs such as control performance trends, exception volumes, agent findings, remediation timeliness, and self-audit coverage.

Data Engineering, Insights & Reporting

  • Analyze control testing outputs, cybersecurity telemetry, and agent-generated findings to identify trends, anomalies, emerging risks, and opportunities for control improvement.
  • Engineer dashboards, reports, and data products that provide clear visibility into control health, self-audit results, exception patterns, and operational risk posture.
  • Translate technical findings into concise, risk-informed insights and recommendations for control owners, engineering partners, and leadership stakeholders.

Continuous Improvement, Control Automation & Agentic AI

  • Identify opportunities to enhance documentation quality, data integrity, and control standardization in accordance with the RCSA framework.
  • Support the enhancement of metrics frameworks, automated testing logic, and reporting capabilities to increase repeatability and reduce manual effort.
  • Partner with engineering and tooling teams to scale automated testing, monitoring, and agent-enabled self-audit solutions across controls.
  • Contribute to automation and efficiency initiatives related to control documentation review, monitoring, metric design, evidence validation, and exception identification.
  • Apply AI-enabled security tooling and automation capabilities to improve control observability, evidence review, investigation efficiency, and operational risk visibility.
  • Create and implement secure, governed AI agents and workflows that align with enterprise security standards, risk requirements, control objectives, data protection expectations, and responsible AI practices.
  • Design and refine prompts, rules, workflows, orchestration logic, validation criteria, and feedback loops that improve AI agent-enabled cybersecurity engineering activities, including control implementation, self-audit execution, exception triage, remediation tracking, control evidence analysis, and security research.
  • Apply AI-enabled security tooling and automation capabilities to improve threat detection, investigation efficiency, and operational observability across cybersecurity environments.
  • Support the implementation of security controls and monitoring practices for AI-enabled applications and workflows, ensuring alignment with enterprise security standards and risk requirements.

Qualifications

  • 2+ years of experience in cybersecurity, control management, technology risk, audit response, automation engineering, or related disciplines.
  • Experience designing or supporting automated control testing, continuous control monitoring, automated evidence review, or self-audit capabilities.
  • Knowledge of AI security concepts, including risks associated with generative AI, model integrity, prompt security, data protection, and responsible use of AI-enabled workflows.
  • Experience creating or configuring AI agents, automation frameworks, or agentic AI workflows used to enhance monitoring, detection, control validation, evidence analysis, and security engineering outcomes.
  • Ability to design agent workflows that translate control objectives into executable tasks, including evidence collection, test execution, exception identification, result summarization, and escalation routing.
  • Experience designing, building, testing, and governing AI agents or agentic workflows that connect to enterprise data sources, execute control validation tasks, evaluate evidence, identify exceptions, summarize results, and support human-reviewed self-auditing of cybersecurity controls.
  • Strong engineering mindset with the ability to translate control requirements into automated logic, repeatable tests, data pipelines, dashboards, and agent-enabled workflows.
  • Understanding of RCSA control processes, operational risk management concepts, control design, evidence expectations, and audit readiness requirements.
  • Demonstrated ability to recognize opportunities and deliver automation of data metrics, control testing, and self-audit processes to support control effectiveness.
  • Understanding of how AI/ML, NLP, and generative AI can be used to analyze control performance data, detect anomalies, summarize evidence, and identify potential control gaps.
  • Experience using AI tools to assist in metric design, documentation review, evidence validation, exception analysis, workflow automation, and efficiency improvements.
  • Ability to interpret AI-generated outputs, validate accuracy, identify limitations, and apply findings within a risk, control, and governance context.
  • Experience leveraging Python, SQL, APIs, workflow automation, and analytics tools and Excel, PowerPoint to build scalable control monitoring and reporting solutions.
  • Strong proficiency with Amex collaboration platforms such as Confluence, SharePoint, Slack, or Teams.
  • Knowledge of AI security concepts, including risks associated with generative AI, model integrity, prompt security, and protection of sensitive enterprise data.
  • Knowledge of AI-assisted cybersecurity operations and automation frameworks used to enhance detection, response, and security engineering workflows.
  • Bachelor’s degree required in Computer Science, Information Systems, Cybersecurity, Engineering, Data Analytics, or comparable experience.
  • Employment eligibility to work with American Express in the United States is required as the company will not pursue visa sponsorship for these positions.
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against American Express's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on American Express's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    American Express's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.