Manager, Information Security Engineering
MasterCard
O'Fallon, MO
45.0-55.0
See Details

MasterCard

Our Purpose

We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. We cultivate a culture of inclusion for all employees that respects their individual strengths, views, and experiences. We believe that our differences enable us to be a better team – one that makes better decisions, drives innovation and delivers better business results.

Title and Summary

Manager, Information Security Engineering

Overview:
Mastercard is seeking a manager to join our global Enterprise Cryptography team.

Mastercard is developing the next generation of applications and services facilitate consumers and businesses to conduct payment transactions securely, efficiently, and intelligently, and is leveraging state-of-the-art cryptography to protect its assets.
Whether through traditional retail, mobile, or e-commerce, Mastercard innovation is leading the digital convergence of traditional and emerging payments technologies across a wide variety of new devices and services.

Role:

  • Assist in settling and maintaining a global strategy for cryptographic tools and devices, for both on-premises and cloud-based applications.
  • Build, maintain and execute roadmaps for large scale projects that advance current state of cryptography to support crypto agility and post quantum readiness.
  • Assist in implementing and managing proactive governance model to ensure adherence to Mastercard policies and regulatory compliance.
  • Lead a team focusing on validation and governance of encryption configurations and key management practices.
  • Ensure the implementation of security controls and assist with data protection activities
  • Direct technology evaluations including business case development, test case definition, and vendor selection based on industry standard criteria
  • Define process improvements and automation opportunities to gain efficiencies across security domains
  • Provide consultation in legal, technical and regulatory areas that affect information security

• • Maintain policy exceptions – understanding gaps in crypto, reviewing remediation, and ability to assess the risk to make decisions

  • Cultivate and maintain effective working relationships with a variety of internal Mastercard stakeholders, including business owners, end-users, customers, project managers, and engineers
  • Lead the development of governance strategy for data encryption while engaging with security and business teams to ensure controls are designed appropriately and operationalized
  • Provide governance roadmap input to business, operations, and product development processes for data encryption
  • Build control frameworks to ensure needs and expectations over services are met for various standards, certifications and/or regulatory requirements (e.g., NIST, ISO 27001, ISAE 3000, SOC2 etc.)
  • Assess and recommend policies, standards, procedures, controls, and security solutions to assure the confidentiality, integrity, and availability of the information technology environment
  • Analyze existing/new cybersecurity regulations along with colleagues from the Security and Architecture & Technology teams
  • Establish appropriate controls and undertake risks assessments on compliance position for Mastercard
  • Interpret assessment results and partner with business to advise, develop, and communicate recommendations to management
  • Identify & define process improvements for gained efficiencies across security and technology domains


All about you

  • Effective at managing a team as a servant leader.
  • Demonstrated effectiveness working in a global environment with staff distributed in multiple time zones.
  • Strong interpersonal, communication, and presentation skills necessary for interaction with business leaders and teams across all levels of the organization
  • Familiar with and able to apply generally accepted security methods, concepts, and techniques
  • Understanding of information security controls for various computing environments and applications including experience with NIST and ISO 27001
  • Bachelor’s degree or equivalent combination of education and experience/Bachelor’s degree in computer science, information technology or related field preferred
  • Demonstrated ability to operate with independence and autonomy
  • Contribute to work environment that encourages knowledge of, respect for, and development of skills to engage with those of other cultures and backgrounds
  • The ability to push back and challenge decisions as necessary
  • Strong negotiation and consensus building skills

Mastercard is an inclusive equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.

Corporate Security Responsibility


All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:

  • Abide by Mastercard’s security policies and practices;
  • Ensure the confidentiality and integrity of the information being accessed;
  • Report any suspected information security violation or breach, and
  • Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.

In line with Mastercard’s total compensation philosophy and assuming that the job will be performed in the US, the successful candidate will be offered a competitive base salary based on location, experience and other qualifications for the role and may be eligible for an annual bonus or commissions depending on the role. Mastercard benefits for full time (and certain part time) employees generally include: insurance (including medical, prescription drug, dental, vision, disability, life insurance), flexible spending account and health savings account, paid leaves (including 16 weeks new parent leave, up to 20 paid days bereavement leave), 10 annual paid sick days, 10 or more annual paid vacation days based on level, 5 personal days, 10 annual paid U.S. observed holidays, 401k with a best-in-class company match, deferred compensation for eligible roles, fitness reimbursement or on-site fitness facilities, eligibility for tuition reimbursement, gender-inclusive benefits and many more.