Lead Information Security Consultant at Mastercard ensuring product security and compliance across multiple teams. Delivering quality services and improving security frameworks within the organization.
Responsibilities
Deliver a quality service within the enterprise.
Contribute to maturing the Security Consultancy team; building skills, improving consistency and allowing scalability.
Guide product and business teams on security best practices, and Corporate Security policies and procedures to ensure secure products are developed.
Provide assurance that products are developed and deployed with the right balance of security to protect against threats to the business, built upon reliable processes and procedures.
Develop and improve security standards and frameworks to meet the future needs of Mastercard.
Requirements
Strong security mindset and knowledge of current best practices, common exploits and threat landscape.
Broad security experience across a range of disciplines with demonstrable experience of implementing technology or business process solutions across software development, architecture, network security, assurance testing.
Natural ability to negotiate with business to balance risk and security requirements with business opportunity, while ensuring ongoing compliance and regulatory needs.
The ability to work with teams and manage expectations while building strong business relationships.
Confident in providing technical guidance to team members for complex decisions including cryptography, network design, application security, data protection, identity and access management etc.
Experience of security governance frameworks as well as producing required security outputs, including documentation and threat models over the course of projects to meet deadlines.
Experience working with a range of security standards, such as ISO27001, NIST SP800-53, PCI-DSS etc.
Motivated self-starter with agility, ability to manage ambiguity, deal with and anticipate change, while still meeting business objectives.
Organisation of security assurance testing, using third party vendors.
Natural ability to negotiate with business to balance risk with business opportunity, while ensuring ongoing compliance and regulatory needs.
Proactive approach to helping develop the maturity of the security team’s capabilities.
Cyber Security Architect developing high - quality Cyber and IT security solutions for Webster Bank. Focused on formulating, designing, assessing security systems, and ensuring compliance across technology initiatives.
Leading technical excellence and innovation as Head of Data Protection for Barclays, ensuring robust data security and operational efficiency. Mentoring engineering teams and aligning strategy with business goals.
Senior Cybersecurity Engineer at MSIG - North America, designing and implementing cybersecurity solutions. Managing security infrastructure and collaborating with the Information Security Officer.
Security Risk Analyst focusing on Enterprise Security Risk Management for Xcel Energy. Collaborating on risk assessments and ensuring documentation aligns with industry standards.
Conseiller juridique stratégique au sein des Services juridiques pour la protection des renseignements personnels au Canada. Fournissant des conseils stratégiques en matière de cybersécurité et réglementaire.
Cyber Security Manager leading the safeguarding of technology assets and data against threats at Barnet Council. Driving strategies, compliance, and risk management aligned with national standards.
Solution Train Engineer facilitating Information Security Agile Release Train processes for delivering solutions. Coaching teams while overseeing Program Increment sessions and managing risks and delivery flow.
Cloud and Security Engineer at Circuit Check responsible for architecting, implementing, and maintaining secure cloud infrastructure. Focused on hybrid cloud architecture and compliance frameworks to protect enterprise systems.
Supporting data privacy incident response processes as Cybersecurity Senior Analyst at financial services company. Engaging with various teams for documenting and mitigating privacy risks.