American Express logo

Campus - Full Time - Information Security Engineer - 2027 (UK - London/Brighton/Burgess Hill)

Hiring from
United Kingdom
Work type
Hybrid
Posted
Sep 18, 2026
Is this job info correct?

At American Express, we empower technologists to learn, innovate, and make an impact from day one. As a Cybersecurity Engineer in Enterprise Technology Services, you’ll join a full-time graduate program and contribute to work that helps protect American Express information systems, customer data, colleague experiences, and digital assets.

Cybersecurity teams help identify, reduce, monitor, and respond to technology and information security risks. In this role, you may support secure architecture, identity and access management, endpoint protection, application security, security monitoring, cloud security, documentation, and AI-enabled cybersecurity workflows while collaborating with cybersecurity engineers, product partners, software development teams, operations teams, and business stakeholders.

Responsibilities & What Type of Work to Expect:

  • Support secure network, endpoint, identity, access management, application security, and cloud security activities under guidance from experienced engineers.
  • Assist with security documentation, assessment findings, remediation tracking, reporting, and control implementation activities that support compliance and security posture improvements.
  • Collaborate with software development and product teams to help integrate security into the software development lifecycle and support secure coding practices.
  • Research emerging cyber threats, security technologies, AI-enabled security risks, and control approaches to support team knowledge and decision-making.
  • Use AI-enabled cybersecurity tools to support threat detection, alert triage, analysis, documentation, and investigation activities while validating outputs before escalation or implementation.
  • Support security control implementation and monitoring approaches for cloud-based, AI-enabled, or enterprise technology services.
  • Apply structured prompt design techniques when using AI agent-enabled security tools, including clear context, objectives, constraints, and security requirements.
  • Collaborate across cybersecurity, engineering, product, risk, operations, and business teams to strengthen secure technology delivery and enterprise risk reduction.

Minimum Qualifications:

  • Must have earned a Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Systems, Computer Engineering, Engineering, or another technical field before the full-time start date.
  • Students must have a graduation date between December 2026 and June 2027.
  • Foundational understanding of cybersecurity, information security, application security, network security, cloud security, or technology risk concepts.
  • Foundational knowledge of network protocols, security fundamentals, identity and access management, data privacy, data protection, or secure software development concepts.
  • Interest in scripting or automation using languages such as Python, Bash, PowerShell, or similar technologies.
  • Strong communication, collaboration, analytical thinking, discretion, attention to detail, and learning agility with the ability to work effectively in a team environment.

Preferred Qualifications:

  • Coursework, projects, internships, labs, competitions, research, or extracurricular experience in cybersecurity, information security, software development, cloud, data, networking, or technology risk.
  • Awareness of security standards, regulatory compliance, data privacy, data protection, security governance, and risk management concepts.
  • Familiarity with security monitoring, threat detection, vulnerability management, incident response, endpoint protection, network security, or identity and access management concepts.
  • Exposure to security tools, platforms, or operational processes used to investigate alerts, analyze threats, document findings, or support remediation activities.
  • Interest in application security, secure coding, DevSecOps, cloud security, IAM, data security, network security, or AI-enabled application security.
  • Awareness of AI-enabled cybersecurity capabilities and emerging risks such as prompt injection, model misuse, data exposure, AI-assisted security operations, and automation-enabled analysis.
  • Interest in cybersecurity certifications or continued learning; certifications are not required for early-career consideration.
  • Strong problem solving, curiosity, ownership, professionalism, ethical judgment, and comfort learning new technologies in a fast-paced environment.

Employment eligibility to work with American Express in the United Kingdom is required as the company will not pursue visa sponsorship for these positions.

Similar jobs

Apply for this job