Director, Cybersecurity - REF6570Y
- Full-time
- Job Family Group: Engineering and Technology
Company Description
Common Purpose, Uncommon Opportunity. Everyone at Visa works with one goal in mind – making sure that Visa is the best way to pay and be paid, for everyone everywhere. This is our global vision and the common purpose that unites the entire Visa team. As a global payments technology company, tech is at the heart of what we do: Our VisaNet network processes over 13,000 transactions per second for people and businesses around the world, enabling them to use digital currency instead of cash and checks. We are also global advocates for financial inclusion, working with partners around the world to help those who lack access to financial services join the global economy. Visa’s sponsorships, including the Olympics and FIFA™ World Cup, celebrate teamwork, diversity, and excellence throughout the world. If you have a passion to make a difference in the lives of people around the world, Visa offers an uncommon opportunity to build a strong, thriving career. Visa is fueled by our team of talented employees who continuously raise the bar on delivering the convenience and security of digital currency to people all over the world. Join our team and find out how Visa is everywhere you want to be.
Job Description
Key Responsibilities
- Provide support and serve as the key representative for the Cybersecurity Governance, Risk and Compliance (GRC) team to Asia Pacific (AP) based stakeholders.
- Engage with key regional stakeholders from various teams to: 1 - Strengthen relationships and remove barriers for a more effective and efficient execution of the GRC program, 2 - Promote Cybersecurity risk management as a business enabler and act as an advocate for the GRC team, and 3 - Identify opportunities for improvement
- Provide management oversight and support for major engagements and initiatives involving Cybersecurity based out of the region.
- Provide quick, first level responses to ad-hoc Cybersecurity-related queries.
- Support regional cybersecurity awareness activities and provide Cybersecurity training to regional staff if required.
- Ensure that GRC processes are executed in alignment with global processes, while also catering to local context.
- Provide local management oversight over the GRC team members based out of Singapore and China including: 1 - Collaborating with functional/program managers to identify development opportunities and support career growth for local team members, and 2 - Working with Visa University, identify training and development opportunities.
- Conduct recruitment for local team members and operational onboarding activities.
- Fiscal responsibility in managing the AP GRC cost center.
- Represent the GRC function in the AP-based Cybersecurity leadership team and activities.
- Execute on functional program responsibilities.
Qualifications
Required Qualifications:
- 10+ years of IT security experience in security risk and compliance assessments for large, highly-regulated organizations
- 5+ years of direct managerial experience
- Mature understanding of information security “best practices” including principles, security protocols and standards material such as OWASP Top 10 and SANS Critical Security Controls
- Knowledge of industry-relevant regulation including Payment Card Industry (PCI) Data Security Standard (DSS), NIST, and FFEIC
- Articulate communicator, demonstrating mastery of both spoken and written English, with the ability to tailor deliverables appropriately for audiences ranging from technical to senior executive
- Strong critical thinking skills; ability to quickly comprehend problems, develop hypotheses, draw logical conclusions, develop solutions, and respond accordingly
- Strong ability to lead, collaborate, and motivate other people, especially those outside of a direct reporting relationship
- Relevant graduate degree or equivalent professional experience
Preferred Qualifications:
- Preferred undergraduate degrees include computer science, management of information security, etc.
- Professional experience within professional services, financial services, banking, or critical infrastructure organizations
- Advanced Information Security certification(CISSP, CISM, CISA, or similar certifications)