Director, Regulatory RiskOur Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networksbine to deliver a unique set of products and services that help people, businesses andernments realize their greatest potential.
Title and Summary
Director, Regulatory Risk
Who is Mastercard?
Mastercard is a global technologypany in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions,ernments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of ourpany. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Mission First, People Always
As Corporate Security, we are responsible for keeping Mastercard safe and secure from cyber and physical threats, and it is our people on the frontlines who make this happen every day.
By taking care of our people, their wellbeing, and career development, we provide them the necessary tools and environment to ensure the success of our mission.
Overview
The Corporate Security Regulatory Risk Management team is looking for a Director, Technology Risk Management, to drive readiness andpliance on security aspects related to the evolving regulatory and statutory needs across global markets with a focus on Europe region. The ideal candidate should be passionate about information security, cybersecurity, intellectually curious and analytical with strong exposure to business and regulatory environment.
In this highly visible role, you will:
• Provide security leadership in the region and drive Mastercard's regulatory security strategy in alignment with business goals.
• Monitor and assess security obligations from new and evolving regulations and statutes across global markets, including gap analysis and planning for required remediation.
• Actively engage with cross functional teams within Technology, Risk, Regulatory Counsels, Business teams etc. to drive and ensurepliance to security requirements from regulatory and statutory obligations.
• Manage and oversee security aspects of regulatory audits and assessments including remediation, regulatory reporting, responding to regulatory queries and notifications.
• Provide regular updates to senior leadership and regional boards on securitypliance posture, strategic initiatives and regulatory risks, including representation at market level risk andernance forums, security representation to Regulatory bodies.
• Collaborate with broader teams across Corporate Security, including M&As to drive engagement on actions pertaining to regulatorypliance, audit readiness, regulatory dashboarding, driving efficiencies and scale.
• Work closely with security engineering teams to ensure Regulatory obligations are addressed at the design level, track key performance indicators (KPIs) and metrics to measure the effectiveness of regulatory security efforts.
• Maintain the regulatory security roadmap aligned with business objectives, changing regulatory landscape, emerging technologies and regulatory trends that may impact Mastercard and proactively develop strategies to address them.
All About You
The ideal candidate for this position should have:
• Strong understanding of information and cyber security domains,ernance and risk management practices.
• Experience in handling security audits, conducting assessments, senior stakeholder management, regulatory enquiries
• Proven ability to lead cross-functional teams and manageplex projects.
• Strategic thinking, executivemunication and strong analytical and problem-solving abilities
• Strong knowledge of regulatory frameworks and security standards ( DORA, CROE, NIST, ISO 27001, PCI-DSS etc.)
• Preferred security certification CISSP, CISM, CISA, CRISC or equivalent.
• Be seen as a trusted advisor with understanding of business processes and able to provide security consultation and advisory on regulatory matters.
NICE Framework References
National Initiative for Cybersecurity Education (NICE)petency proficiency levels of advanced to expert in the following areas:
• Client Relationship Management
• Risk Management
• Interpersonal Skills
• Information Systems/Network Security
• Information Assurance
• Project Management
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networkses with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:
• Abide by Mastercard's security policies and practices;
• Ensure the confidentiality and integrity of the information being accessed;
• Report any suspected information security violation or breach, and
•plete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networkses with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
1. Abide by Mastercard's security policies and practices;
2. Ensure the confidentiality and integrity of the information being accessed;
3. Report any suspected information security violation or breach, and
Job ID R-253611