Mastercard Logo

Mastercard

Director, Vulnerability Management

Posted 22 Hours Ago
Be an Early Applicant
Hybrid
London, Greater London, England
Senior level
Hybrid
London, Greater London, England
Senior level
As Director of Vulnerability Management, you will enhance vulnerability detection strategies, manage assessments, and oversee secure coding integration, ensuring cybersecurity and compliance in transactions.
The summary above was generated by AI
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Director, Vulnerability Management
Vulnerability Detection Director
Who is Mastercard?
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Mission First, People Always
As Corporate Security, we are responsible for keeping Mastercard safe and secure from cyber and physical threats, and it is our people on the frontlines who make this happen every day.
By taking care of our people, their wellbeing, and career development, we provide them the necessary tools and environment to ensure the success of our mission.
Role/Responsibilities
• As the Director of Vulnerability Detection at Vocalink Limited, you will be a key leader responsible for driving and enhancing the vulnerability detection strategy within our dynamic payment's organization. Operating at the Director level, you will oversee the following testing methodologies-Penetration Testing, Vulnerability and Compliance Scanning and Static and Dynamic Application Security Testing. Your leadership will play a pivotal role in fortifying our cybersecurity posture, ensuring the protection of sensitive financial data, and maintaining the trust of our clients and stakeholders.
In this role, you will: • Support the development and implementation of a strategic roadmap for effective vulnerability detection, working closely with technology and operations teams. • Manage and support key controls that deliver timely and accurate identification of vulnerabilities across the organization's IT assets and services. • Be accountable for thorough assessments of our systems, networks, and applications. • Provide actionable recommendations based on assessment findings to strengthen our security defenses. • Provide clear, concise and easily consumable communication with key technical and non-technical stakeholders.• Oversee the implementation and execution of comprehensive asset and network scanning programs utilizing industry-leading tools such as Qualys and/or Nessus Tenable. • Lead collaboration with software development teams to implement secure coding practices and drive a focus on integrating security into the development lifecycle. • Establish and enforce secure coding standards, providing guidance on best practices and industry benchmarks. • Create actionable metrics and write reports to track progress.• Manage third-party testing vendor relationships to ensure quality, effective, and timely service is received.
• Define and drive operational efficiency and effective service management.
All About You • Proven experience in a leadership role within vulnerability management in a payments or financial services environment. • Track record of building vulnerability detection programs to keep up with the ever-changing technology and security landscape in a complex organization.• In-depth knowledge of penetration testing methodologies, vulnerability scanning tools and process, and secure coding practices.
• Experience initiating and managing improvement in areas of security by leveraging process metrics.• Strong understanding of the payments industry regulatory landscape and compliance requirements. • An understanding of risk management.• Relevant experience of working in a complex (preferably multi-national) stakeholder environment that includes complex customers and regulators. • Ability to articulate themselves clearly and concisely to a broad range of senior and junior stakeholders, acting as a bridge as well as guide for the implementation of new capabilities. • Excellent communication and leadership skills with the ability to collaborate effectively across departments. • Experience of presenting and communicating at senior level.• Knowledge of industry frameworks such as ISO 27001, NIST, PCI DSS.• Ability to motivate, inspire and lead people effectively. • Line manager and a team player - leads by example.• Strategic thinker - able to develop and communicate direction.
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must: • Abide by Mastercard's security policies and practices; • Ensure the confidentiality and integrity of the information being accessed; • Report any suspected information security violation or breach, and • Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
  • Abide by Mastercard's security policies and practices;
  • Ensure the confidentiality and integrity of the information being accessed;
  • Report any suspected information security violation or breach, and
  • Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.

Top Skills

Dynamic Application Security Testing
Nessus
Penetration Testing
Qualys
Secure Coding Practices
Static Application Security Testing
Vulnerability Scanning

Mastercard New York, New York, USA Office

Mastercard’s NYC Tech Hub unites experts from diverse backgrounds and disciplines, from software development to finance, data architecture to cybersecurity and beyond, to build systems that never fail for a world that never stops.

Similar Jobs at Mastercard

22 Hours Ago
Hybrid
Mid level
Mid level
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
The Finance Business Partner Manager role involves P&L management, financial forecasts, and analyzing financial performance to support and influence business decisions at Mastercard.
Top Skills: AnalyticsFinancial ModelingFp&AP&L Management
22 Hours Ago
Hybrid
Senior level
Senior level
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
The Application Security Lead will enhance application security by integrating secure coding practices and leading security initiatives within development teams, ensuring the protection of financial data.
Top Skills: Application Security PrinciplesCode ReviewProgramming LanguagesSecure Coding PracticesSoftware Development MethodologiesVulnerability Assessment ToolsWeb Technologies
22 Hours Ago
Hybrid
Senior level
Senior level
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Lead the Site Reliability Engineering efforts by managing software sales clients, ensuring operational excellence throughout the delivery process, and improving customer experience.
Top Skills: ErlangIncident ManagementItil MethodologyPerformance ManagementSoftware Development Lifecycle

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account