Essential Responsibilities:
- Independently assess and apply security governance frameworks and risk management practices to strengthen organizational security posture, while beginning to understand and align solutions with business objectives.
- Partner with peers and internal teams to drive security risk and governance initiatives, contribute to cross-functional projects, and at times co-lead efforts to strengthen security posture.
- Evaluate and mitigate security risks by implementing established governance frameworks and exploring alternative risk management strategies to address complex security challenges
- Influence the quality, efficiency, and effectiveness of the team through informed decision-making, with a potential impact on other teams.
- Collaborate with key partners to gather and incorporate feedback, driving continuous improvements in security governance processes and risk management practices
Expected Qualifications:
- 3+ years relevant experience and a Bachelor’s degree OR Any equivalent combination of education and experience.
Your day to day
In your day to day role you will contribute to a culture of effective risk management, accountability, and demonstration of risk awareness across the organization.
- Support issue remediation efforts while collaborating with IT and Business lines. Translate technical risks into business terms to promote effective communication and help identify, manage, and escalate risk.
- Contribute to projects evaluating security and technology topics, issues, and risks in relation to PayPal's products, people, processes, and technology.
- Work with key partners to assess and support implementation of changes to PayPal's technology and cybersecurity practices, including requirements, guidance, and procedures, based on evolving technologies, risks, industry standards, and compliance requirements.
- Document key decision points, cost-benefit analysis, business trade-offs, technical and security risks, and other relevant factors for decision-makers related to technology and cybersecurity.
- Develop working relationships with partners across engineering, architecture, risk management, compliance, legal, communications, government relations, and oversight teams.
- Support alignment with key partners on risk response proposals and implementation plans based on industry best practices, regulatory requirements, and organizational risk tolerance.
- Prepare reports, memos, and presentations to communicate technical concepts, risks, and analysis in a clear and concise manner.
What do you need to bring
- Knowledge of current information technologies (e.g., AI / ML); cybersecurity threats and vulnerabilities; risk management processes and practices; industry standard control frameworks and best practices (e.g., NIST, ISO); and cybersecurity and privacy regulations.
- Strong work ethic with proven ability to learn quickly, prioritize work, and manage deliverables to completion under established deadlines.
- Ability to research and understand complex technical topics and identify key considerations for relevant audiences.
- Strong consultative, analytical, and influencing skills, including business acumen and stakeholder collaboration, as well as comfort working in a dynamic, global, and matrixed working environment.
- Strong verbal and written communication and analysis skills, including experience developing quality written analysis and documentation.
- Experience with analysis and interpretation of legal or regulatory technology policy requirements.
- Ability to deliver written work product and verbal presentations to varied audiences (e.g., management, engineers, business stakeholders, etc.)
- Professional and ethical integrity, ideally demonstrated through experience with projects of a sensitive or confidential nature.
- Ability to approach problems from a statistical or quantitative perspective and draw meaningful conclusions, as well as evaluate models and analysis for accuracy.
- Bachelor's Degree in a relevant discipline, such as cybersecurity, business, public policy, economics, statistics, risk management, or computer science; Master's Degree preferred.
- Certifications preferred: CISM, CISA, CISSP, CGEIT, AAIA
Travel Percent:
The total compensation for this practice may include an annual performance bonus (or other incentive compensation, as applicable), equity, and medical, dental, vision, and other benefits. For more information, visit .
The US national annual pay range for this role is $84,500 to $140,250
Our Benefits:
Any general requests for consideration of your skills, please