Program Manager, Technology Controls and Compliance
Dublin
Stripe
Stripe powers online and in-person payment processing and financial solutions for businesses of all sizes. Accept payments, send payouts, and automate financial processes with a suite of APIs and no-code tools.Who we are
About Stripe
Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the Internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career.
About the team
The Compliance Management team is responsible for managing Technology compliance, controls and risk initiatives at Stripe. We have a team of technical program managers who focus on driving compliance within Stripe against industry/regulatory standards and helping us achieve compliance against them. Program managers in the team not only work on leading compliance and risk efforts to completion but also maintain strong relationships with internal stakeholders to support and answer compliance questions.
What you’ll do
You will be a subject matter expert in technology compliance standards and controls to ensure that Stripe’s products and platform operate in accordance to requirements that they are subject to. You will have deep technical discussions with our engineering teams to understand controls, processes and come up with creative ways to meet the intent of security requirements. In this role you will be managing compliance audits by planning requirements, identifying risks, managing schedules and clearly communicating to internal and external stakeholders. You will also be supporting Stripe’s controls initiatives to design, document, monitor and update technical controls by working closely with engineering owners.
Responsibilities
- Conduct and lead security assessments, working closely with our Product and Engineering teams to ensure that our services and users remain compliant and ahead of applicable security standards
- Work closely with internal teams at Stripe to design, document, monitor and update technical controls
- Partner with Engineering teams to decompose ambiguous technical regulatory requirements into clear actionable deliverables
- Maintain and enhance compliance to product security requirements
- Stay abreast of upcoming security regulatory changes that may impact Stripe or our users, and collaborate with engineering teams to make them seamless and transparent
- Partner with teams across Stripe to develop our communication strategy on Security
- Identifying inefficiencies in processes and products and driving improvements
Who you are
We’re looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply.
Minimum requirements
- 3+ years of experience managing compliance (SOC, PCI, ISO) and control programs
- Has experience working designing and monitoring technical controls
- Solid understanding of security risks, threats, and in developing effective and measurable mitigation programs
- Technical security background and an understanding of the payment ecosystem
- A growth mind-set to help scale security compliance initiatives for the future of Stripe
- Great communicator and able to effectively prioritize and advance a large number of projects happening simultaneously, often on tight deadlines
- Experience building and managing relationships with internal stakeholders and driving all parties towards an optimal outcome
- Out-of-the-box thinking that challenges industry norms with a solid grounding in creating great and safe experiences
- Resourceful, action-oriented with strong organization skills and attention to detail
- Able to prioritize competing demands while working on complex problems
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Compliance Monitoring Product security Security assessment SOC Strategy
Perks/benefits: Career development
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Staff Security Engineer jobs
- Open Information Security Specialist jobs
- Open Cyber Security Architect jobs
- Open Manager Pentest H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Senior Information Security Analyst jobs
- Open Cyber Security Specialist jobs
- Open Principal Security Engineer jobs
- Open Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Cybersecurity Analyst jobs
- Open IT Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Chief Information Security Officer jobs
- Open Senior Information Security Engineer jobs
- Open Security Specialist jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open Senior Security Architect jobs
- Open Security Operations Analyst jobs
- Open CISM-related jobs
- Open ISO 27001-related jobs
- Open Network security-related jobs
- Open Application security-related jobs
- Open Windows-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open DevOps-related jobs
- Open Security assessment-related jobs
- Open Kubernetes-related jobs
- Open Security Clearance-related jobs
- Open Malware-related jobs
- Open CI/CD-related jobs
- Open IDS-related jobs
- Open DevSecOps-related jobs
- Open EDR-related jobs