Search for More Jobs
Get alerts for jobs like this Get jobs like this tweeted to you
Company: Mastercard
Location: Purchase, NY
Career Level: Mid-Senior Level
Industries: Banking, Insurance, Financial Services

Description

Our Purpose

Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.

Title and Summary

Director, Senior Counsel About Mastercard:
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible.

Job Summary:
Mastercard is seeking a highly skilled and experienced Director, Senior Counsel to join our Global Privacy, AI and Data Responsibility team. This role is critical to enable our threat intelligence services across cyber, supply chain, physical, and fraud domains. The position will be responsible for advising on third-party supplier risks in Mastercard's Global Supply Chain, Sourcing, and Third-Party Risk Management (TPRM) programs. The ideal candidate will have significant experience with privacy, data protection, AI and cybersecurity laws and regulations, including the design and management of legal and regulatory compliance programs.


Key Responsibilities:

Leadership and Strategy:

Develop and implement a comprehensive strategy for third-party supplier risks in the cyber threat domain within Mastercard's Global Supply Chain, Sourcing, and TPRM programs.

Enable business strategy through providing expert guidance on the legal and regulatory environment and risks.

Foster a culture of accountability and responsibility regarding privacy, data protection, and cybersecurity among all employees.


Policy and Compliance:

Ensure compliance with all relevant legal and regulatory requirements related to privacy, data protection, AI and cybersecurity.

Develop, update, and maintain policies, procedures, and guidelines for third-party supplier risks and activities from a privacy, data protection and cybersecurity standpoint.

Train business stakeholders and TPRM teams on onboarding, risk assessment, and risk management of third-party supplier risks.

Stakeholder Engagement:

Engage with third-party suppliers for risk assessments and provide guidance on privacy, data, and cyber controls.

Consult in the design and operationalization of third-party supplier risk assessment procedures, templates, and documentation.

Collaborate with key stakeholders, including legal, compliance, technology, enterprise risk and business teams, to ensure effective risk management practices.

Risk Management:

Lead and manage the onboarding, risk assessment, and risk management of third-party supplier risks.

Manage and document escalations, risk acceptances, and adoption of mitigating controls during third-party supplier risk assessments.

Provide advice on escalated third-party supplier contractual negotiations regarding privacy, cyber, and data-related issues, in partnership with dedicated resources.

Contractual Negotiations:

Lead and support the negotiation of Data Processing Agreements (DPAs) and other data-related contracts with third-party suppliers.

Ensure that all contractual agreements comply with relevant privacy, data protection, and cybersecurity regulations.

Work closely with internal stakeholders to address and resolve any contractual issues or disputes related to privacy, data protection, AI and cyber laws.

Provide expert guidance on third-party supplier clauses during contract negotiations to mitigate risks and ensure compliance.

Oversight and Reporting:

Provide ongoing oversight of the third-party supplier management program.

Prepare and deliver regular reports on risk management activities, compliance status, and program enhancements to senior management.

Qualifications:

Juris Doctor (JD) degree from an accredited US law school.

Minimum of 10 years of experience in privacy, data protection, cybersecurity, or a related field.

Strong knowledge of legal and regulatory requirements related to privacy, data protection, and cybersecurity.

Experience in the technology and financial services industries.

Proven leadership and management skills, with the ability to lead cross-functional teams and drive organizational change.

Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels.

Strong analytical and problem-solving skills, with the ability to develop and implement effective solutions.

Why Join Mastercard:

Be part of a global company that is driving innovation in the payments industry.

Work in a dynamic and collaborative environment with opportunities for professional growth and development.

Contribute to Mastercard's mission of connecting and powering an inclusive, digital economy. Mastercard is a merit-based, inclusive, equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. We hire the most qualified candidate for the role. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.

Corporate Security Responsibility


All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:

  • Abide by Mastercard's security policies and practices;

  • Ensure the confidentiality and integrity of the information being accessed;

  • Report any suspected information security violation or breach, and

  • Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.

In line with Mastercard's total compensation philosophy and assuming that the job will be performed in the US, the successful candidate will be offered a competitive base salary based on location, experience and other qualifications for the role and may be eligible for an annual bonus or commissions depending on the role. Mastercard benefits for full time (and certain part time) employees generally include: insurance (including medical, prescription drug, dental, vision, disability, life insurance), flexible spending account and health savings account, paid leaves (including 16 weeks new parent leave, up to 20 paid days bereavement leave), 10 annual paid sick days, 10 or more annual paid vacation days based on level, 5 personal days, 10 annual paid U.S. observed holidays, 401k with a best-in-class company match, deferred compensation for eligible roles, fitness reimbursement or on-site fitness facilities, eligibility for tuition reimbursement, gender-inclusive benefits and many more.

Pay Ranges

Purchase, New York: $187,000 - $300,000 USD Arlington, Virginia: $187,000 - $300,000 USD Atlanta, Georgia: $163,000 - $261,000 USD Boston, Massachusetts: $187,000 - $300,000 USD O'Fallon, Missouri: $163,000 - $261,000 USD


 Apply on company website