Mastercard
Mastercard is seeking a highly skilled and experienced Director, Senior Counsel to join our Global Privacy, AI and Data Responsibility team. This role is critical to enable our threat intelligence services across cyber, supply chain, physical, and fraud domains.
The position will be responsible for advising on third-party supplier risks in Mastercard's Global Supply Chain, Sourcing, and Third-Party Risk Management (TPRM) programs. The ideal candidate will have significant experience with privacy, data protection, AI and cybersecurity laws and regulations, including the design and management of legal and regulatory compliance programs.
Key Responsibilities
Develop and implement a comprehensive strategy for third-party supplier risks in the cyber threat domain within Mastercard's Global Supply Chain, Sourcing, and TPRM programs. Enable business strategy through providing expert guidance on the legal and regulatory environment and risks. Foster a culture of accountability and responsibility regarding privacy, data protection, and cybersecurity among all employees. Policy And Compliance
Ensure compliance with all relevant legal and regulatory requirements related to privacy, data protection, AI and cybersecurity. Develop, update, and maintain policies, procedures, and guidelines for third-party supplier risks and activities from a privacy, data protection and cybersecurity standpoint. Train business stakeholders and TPRM teams on onboarding, risk assessment, and risk management of third-party supplier risks. Stakeholder Engagement
Engage with third-party suppliers for risk assessments and provide guidance on privacy, data, and cyber controls. Consult in the design and operationalization of third-party supplier risk assessment procedures, templates, and documentation. Collaborate with key stakeholders, including legal, compliance, technology, enterprise risk and business teams, to ensure effective risk management practices. Risk Management
Lead and manage the onboarding, risk assessment, and risk management of third-party supplier risks. Manage and document escalations, risk acceptances, and adoption of mitigating controls during third-party supplier risk assessments. Provide advice on escalated third-party supplier contractual negotiations regarding privacy, cyber, and data-related issues, in partnership with dedicated resources. Contractual Negotiations
Lead and support the negotiation of Data Processing Agreements (DPAs) and other data-related contracts with third-party suppliers. Ensure that all contractual agreements comply with relevant privacy, data protection, and cybersecurity regulations. Work closely with internal stakeholders to address and resolve any contractual issues or disputes related to privacy, data protection, AI and cyber laws. Oversight And Reporting
Provide ongoing oversight of the third-party supplier management program. Prepare and deliver regular reports on risk management activities, compliance status, and program enhancements to senior management. Qualifications
Juris Doctor (JD) degree from an accredited US law school. Minimum of 10 years of experience in privacy, data protection, cybersecurity, or a related field. Strong knowledge of legal and regulatory requirements related to privacy, data protection, and cybersecurity. Experience in the technology and financial services industries. Proven leadership and management skills, with the ability to lead cross-functional teams and drive organizational change. Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels. Strong analytical and problem-solving skills, with the ability to develop and implement effective solutions. Mastercard is a merit-based, inclusive, equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. In line with Mastercard’s total compensation philosophy, the successful candidate will be offered a competitive base salary and may be eligible for an annual bonus or commissions depending on the role. The base salary offered may vary depending on multiple factors, including but not limited to location, job-related knowledge, skills, and experience. Pay ranges for this role are: Purchase, New York: $187,000 - $300,000 USD, Arlington, Virginia: $187,000 - $300,000 USD, Atlanta, Georgia: $163,000 - $261,000 USD, Boston, Massachusetts: $187,000 - $300,000 USD, O'Fallon, Missouri: $163,000 - $261,000 USD
#J-18808-Ljbffr
Develop and implement a comprehensive strategy for third-party supplier risks in the cyber threat domain within Mastercard's Global Supply Chain, Sourcing, and TPRM programs. Enable business strategy through providing expert guidance on the legal and regulatory environment and risks. Foster a culture of accountability and responsibility regarding privacy, data protection, and cybersecurity among all employees. Policy And Compliance
Ensure compliance with all relevant legal and regulatory requirements related to privacy, data protection, AI and cybersecurity. Develop, update, and maintain policies, procedures, and guidelines for third-party supplier risks and activities from a privacy, data protection and cybersecurity standpoint. Train business stakeholders and TPRM teams on onboarding, risk assessment, and risk management of third-party supplier risks. Stakeholder Engagement
Engage with third-party suppliers for risk assessments and provide guidance on privacy, data, and cyber controls. Consult in the design and operationalization of third-party supplier risk assessment procedures, templates, and documentation. Collaborate with key stakeholders, including legal, compliance, technology, enterprise risk and business teams, to ensure effective risk management practices. Risk Management
Lead and manage the onboarding, risk assessment, and risk management of third-party supplier risks. Manage and document escalations, risk acceptances, and adoption of mitigating controls during third-party supplier risk assessments. Provide advice on escalated third-party supplier contractual negotiations regarding privacy, cyber, and data-related issues, in partnership with dedicated resources. Contractual Negotiations
Lead and support the negotiation of Data Processing Agreements (DPAs) and other data-related contracts with third-party suppliers. Ensure that all contractual agreements comply with relevant privacy, data protection, and cybersecurity regulations. Work closely with internal stakeholders to address and resolve any contractual issues or disputes related to privacy, data protection, AI and cyber laws. Oversight And Reporting
Provide ongoing oversight of the third-party supplier management program. Prepare and deliver regular reports on risk management activities, compliance status, and program enhancements to senior management. Qualifications
Juris Doctor (JD) degree from an accredited US law school. Minimum of 10 years of experience in privacy, data protection, cybersecurity, or a related field. Strong knowledge of legal and regulatory requirements related to privacy, data protection, and cybersecurity. Experience in the technology and financial services industries. Proven leadership and management skills, with the ability to lead cross-functional teams and drive organizational change. Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels. Strong analytical and problem-solving skills, with the ability to develop and implement effective solutions. Mastercard is a merit-based, inclusive, equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. In line with Mastercard’s total compensation philosophy, the successful candidate will be offered a competitive base salary and may be eligible for an annual bonus or commissions depending on the role. The base salary offered may vary depending on multiple factors, including but not limited to location, job-related knowledge, skills, and experience. Pay ranges for this role are: Purchase, New York: $187,000 - $300,000 USD, Arlington, Virginia: $187,000 - $300,000 USD, Atlanta, Georgia: $163,000 - $261,000 USD, Boston, Massachusetts: $187,000 - $300,000 USD, O'Fallon, Missouri: $163,000 - $261,000 USD
#J-18808-Ljbffr