This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Business Security Enablement (BSE) team is looking for a Business Security Officer (BSO). The BSO is a senior level contributor that will drive partnerships with technology, engineering, and business teams. This BSO role will function as the primary security advocate and advisor for Data Commercialization and Artificial Intelligence.
Job Responsibility:
Provide information security risk advice and consultation to the data commercialization and artificial intelligence initiatives for the enterprise
Enable programs to proactively manage, control, mitigate and/or remediate security risk within the organization's risk appetite
Provide guidance to programs on Corporate Security topics, policies, standards, and controls
Partner with application development teams to improve the security of the application code and architecture
Drive risk culture and promote security awareness activities within the Product and Technology organization
Lead a team of security engineers dedicated to aligned programs
Partner and collaborate with other BSOs to continuously improve security engineering processes
Collaborate with the various Corporate Security teams on risks associated with the Data Commercialization and Artificial Intelligence organization
Requirements:
Demonstrated effectiveness working in a global environment and leading a global team of security engineers
Demonstrated experience building organizational relationships, partnering with, and influencing executive leadership while commanding the respect of the individuals with varying technical expertise across the organization
Strong understanding of information security, risk and data privacy within the domain of digital commerce including relevant practical experience, integration of different security technologies, and designing secure multi-domain solutions
Demonstrate a broad awareness of security operations concepts and practices across all phases of the development and delivery lifecycle
Experience and proficiency with cloud technologies, API design, AI/ML systems, and distributed systems operations
Knowledge and technical security experience in cryptography, including several of the following: encryption, hashing, key management, digital certificates, TLS
Knowledge of relevant industry standards and guidelines such as ISO27001, PCI-DSS, NIST SP800-53, COBIT
Experience of continuous delivery/continuous integration processes and procedures including critical security considerations in automated workflows
Experience and understanding of architecture and technologies used in payments and e-commerce
National Initiative for Cybersecurity Education (NICE) competency proficiency levels of limited in leadership, limited to developing in operational and professional, and developing to proficient in technical
Abide by Mastercard’s security policies and practices
Ensure the confidentiality and integrity of the information being accessed
Report any suspected information security violation or breach
Complete all periodic mandatory security training in accordance with Mastercard’s guidelines
What we offer:
insurance (including medical, prescription drug, dental, vision, disability, life insurance)
flexible spending account and health savings account
paid leaves (including 16 weeks of new parent leave and up to 20 days of bereavement leave)
80 hours of Paid Sick and Safe Time, 25 days of vacation time and 5 personal days, pro-rated based on date of hire
10 annual paid U.S. observed holidays
401k with a best-in-class company match
deferred compensation for eligible roles
fitness reimbursement or on-site fitness facilities