Mastercard
Title and Summary
Director, Senior Counsel - TPRM
About Mastercard Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Job Summary Mastercard is seeking a highly skilled and experienced Director, Senior Counsel to join our Global Privacy, AI and Data Responsibility team. This role is critical to enable our threat intelligence services across cyber, supply chain, physical, and fraud domains. The position will be responsible for advising on third‑party supplier risks in Mastercard's Global Supply Chain, Sourcing, and Third‑Party Risk Management (TPRM) programs. The ideal candidate will have significant experience with privacy, data protection, AI and cybersecurity laws and regulations, including the design and management of legal and regulatory compliance programs.
Key Responsibilities
Leadership and Strategy:
Develop and implement a comprehensive strategy for third‑party supplier risks in the cyber threat domain within Mastercard's Global Supply Chain, Sourcing, and TPRM programs.
Enable business strategy:
Provide expert guidance on the legal and regulatory environment and risks.
Foster a culture of accountability:
Promote privacy, data protection, and cybersecurity responsibilities among all employees.
Policy and Compliance:
Ensure compliance with all relevant legal and regulatory requirements related to privacy, data protection, AI and cybersecurity.
Develop policies, procedures, and guidelines:
Create and maintain documentation for third‑party supplier risks from a privacy, data protection and cybersecurity standpoint.
Train stakeholders:
Educate business units and TPRM teams on onboarding, risk assessment, and risk management of third‑party supplier risks.
Stakeholder Engagement:
Engage with third‑party suppliers for risk assessments and provide guidance on privacy, data, and cyber controls.
Design assessment procedures:
Consult in the design and operationalization of third‑party supplier risk assessment procedures, templates, and documentation.
Collaborate with stakeholders:
Work with legal, compliance, technology, enterprise risk and business teams to ensure effective risk management practices.
Risk Management:
Lead and manage the onboarding, risk assessment, and risk management of third‑party supplier risks.
Escalation and control adoption:
Manage and document escalations, risk acceptances, and adoption of mitigating controls during third‑party supplier risk assessments.
Contractual Negotiations:
Lead and support the negotiation of Data Processing Agreements (DPAs) and other data‑related contracts with third‑party suppliers.
Ensure compliance of contracts:
Verify that all contractual agreements comply with relevant privacy, data protection, and cybersecurity regulations.
Resolve contractual issues:
Work closely with internal stakeholders to address and resolve any contractual issues or disputes related to privacy, data protection, AI and cyber laws.
Provide expert guidance on clauses:
Offer advice on third‑party supplier clauses during contract negotiations to mitigate risks and ensure compliance.
Oversight and Reporting:
Provide ongoing oversight of the third‑party supplier management program.
Reporting to senior management:
Prepare and deliver regular reports on risk management activities, compliance status, and program enhancements.
Qualifications
Juris Doctor (JD) degree from an accredited US law school.
Minimum of 10 years of experience in privacy, data protection, cybersecurity, or a related field.
Strong knowledge of legal and regulatory requirements related to privacy, data protection, and cybersecurity.
Experience in the technology and financial services industries.
Proven leadership and management skills, with the ability to lead cross‑functional teams and drive organizational change.
Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels.
Strong analytical and problem‑solving skills, with the ability to develop and implement effective solutions.
Why Join Mastercard
Be part of a global company that is driving innovation in the payments industry.
Work in a dynamic and collaborative environment with opportunities for professional growth and development.
Contribute to Mastercard’s mission of connecting and powering an inclusive, digital economy.
Mastercard is a merit‑based, inclusive, equal‑opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law.
In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.
Corporate Security Responsibility
Abide by Mastercard’s security policies and practices.
Ensure the confidentiality and integrity of the information being accessed.
Report any suspected information security violation or breach.
Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
Pay Ranges
Purchase, New York: $187,000 - $300,000 USD
Arlington, Virginia: $187,000 - $300,000 USD
Atlanta, Georgia: $163,000 - $261,000 USD
Boston, Massachusetts: $187,000 - $300,000 USD
O'Fallon, Missouri: $163,000 - $261,000 USD
Seniority level
Director
Employment type
Full‑time
Job function
Other
Industries: Financial Services, IT Services and IT Consulting, and Technology, Information and Internet
#J-18808-Ljbffr
About Mastercard Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Job Summary Mastercard is seeking a highly skilled and experienced Director, Senior Counsel to join our Global Privacy, AI and Data Responsibility team. This role is critical to enable our threat intelligence services across cyber, supply chain, physical, and fraud domains. The position will be responsible for advising on third‑party supplier risks in Mastercard's Global Supply Chain, Sourcing, and Third‑Party Risk Management (TPRM) programs. The ideal candidate will have significant experience with privacy, data protection, AI and cybersecurity laws and regulations, including the design and management of legal and regulatory compliance programs.
Key Responsibilities
Leadership and Strategy:
Develop and implement a comprehensive strategy for third‑party supplier risks in the cyber threat domain within Mastercard's Global Supply Chain, Sourcing, and TPRM programs.
Enable business strategy:
Provide expert guidance on the legal and regulatory environment and risks.
Foster a culture of accountability:
Promote privacy, data protection, and cybersecurity responsibilities among all employees.
Policy and Compliance:
Ensure compliance with all relevant legal and regulatory requirements related to privacy, data protection, AI and cybersecurity.
Develop policies, procedures, and guidelines:
Create and maintain documentation for third‑party supplier risks from a privacy, data protection and cybersecurity standpoint.
Train stakeholders:
Educate business units and TPRM teams on onboarding, risk assessment, and risk management of third‑party supplier risks.
Stakeholder Engagement:
Engage with third‑party suppliers for risk assessments and provide guidance on privacy, data, and cyber controls.
Design assessment procedures:
Consult in the design and operationalization of third‑party supplier risk assessment procedures, templates, and documentation.
Collaborate with stakeholders:
Work with legal, compliance, technology, enterprise risk and business teams to ensure effective risk management practices.
Risk Management:
Lead and manage the onboarding, risk assessment, and risk management of third‑party supplier risks.
Escalation and control adoption:
Manage and document escalations, risk acceptances, and adoption of mitigating controls during third‑party supplier risk assessments.
Contractual Negotiations:
Lead and support the negotiation of Data Processing Agreements (DPAs) and other data‑related contracts with third‑party suppliers.
Ensure compliance of contracts:
Verify that all contractual agreements comply with relevant privacy, data protection, and cybersecurity regulations.
Resolve contractual issues:
Work closely with internal stakeholders to address and resolve any contractual issues or disputes related to privacy, data protection, AI and cyber laws.
Provide expert guidance on clauses:
Offer advice on third‑party supplier clauses during contract negotiations to mitigate risks and ensure compliance.
Oversight and Reporting:
Provide ongoing oversight of the third‑party supplier management program.
Reporting to senior management:
Prepare and deliver regular reports on risk management activities, compliance status, and program enhancements.
Qualifications
Juris Doctor (JD) degree from an accredited US law school.
Minimum of 10 years of experience in privacy, data protection, cybersecurity, or a related field.
Strong knowledge of legal and regulatory requirements related to privacy, data protection, and cybersecurity.
Experience in the technology and financial services industries.
Proven leadership and management skills, with the ability to lead cross‑functional teams and drive organizational change.
Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels.
Strong analytical and problem‑solving skills, with the ability to develop and implement effective solutions.
Why Join Mastercard
Be part of a global company that is driving innovation in the payments industry.
Work in a dynamic and collaborative environment with opportunities for professional growth and development.
Contribute to Mastercard’s mission of connecting and powering an inclusive, digital economy.
Mastercard is a merit‑based, inclusive, equal‑opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law.
In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.
Corporate Security Responsibility
Abide by Mastercard’s security policies and practices.
Ensure the confidentiality and integrity of the information being accessed.
Report any suspected information security violation or breach.
Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
Pay Ranges
Purchase, New York: $187,000 - $300,000 USD
Arlington, Virginia: $187,000 - $300,000 USD
Atlanta, Georgia: $163,000 - $261,000 USD
Boston, Massachusetts: $187,000 - $300,000 USD
O'Fallon, Missouri: $163,000 - $261,000 USD
Seniority level
Director
Employment type
Full‑time
Job function
Other
Industries: Financial Services, IT Services and IT Consulting, and Technology, Information and Internet
#J-18808-Ljbffr