Ready to take your career global
Make your mark at one of the biggest names in payments. We're looking for a PCI Compliance & IT Risk Manager to join our Legal team and help shape the future of global commerce.
This is an exciting opportunity for an experienced risk, compliance, information security, or IT governance professional who is ready to take on a leadership role in a large-scale global payments environment.
As the PCI Compliance & IT Risk Manager, you will lead the day-to-day operations of the PCI Compliance and IT Risk Management team while helping strengthen the organization's approach to payment security, technology risk, regulatory compliance, and governance.
You'll work closely with global business and technology stakeholders to manage compliance activities, assess and mitigate risks, support strategic initiatives, and ensure the organization continues to operate within an effective and scalable risk and compliance framework.
What You'll Own
Team Leadership & People Management
- Lead and oversee the day-to-day activities of the PCI Compliance and IT Risk Management team.
- Manage team priorities, workloads, and deliverables to ensure commitments are completed accurately and on time.
- Provide coaching, guidance, training, and development opportunities to team members.
- Delegate responsibilities effectively while maintaining appropriate oversight and quality standards.
- Foster a collaborative, accountable, and high-performing team culture.
- Support employee development, performance management, and continuous improvement across the team.
PCI Compliance & Payment Security
- Serve as a subject matter resource for PCI compliance and payment security requirements.
- Monitor relevant regulatory requirements, industry developments, and emerging risks that may impact the business.
- Support compliance with payment network and card industry requirements, including those of Visa, Mastercard, American Express, and Discover.
- Identify potential compliance gaps, assess associated risks, and escalate significant issues to management and relevant stakeholders.
- Provide guidance to business and technology teams on compliance considerations and practical solutions.
IT Risk Management
- Support and conduct technology and cybersecurity risk assessments across relevant systems, processes, and initiatives.
- Perform control reviews, risk analysis, and assessments to identify potential vulnerabilities and areas for improvement.
- Work with stakeholders to document risks, controls, remediation activities, and action plans.
- Prepare clear risk assessments, reports, and recommendations for management and key stakeholders.
- Monitor risk mitigation activities and support the timely resolution of identified issues.
Stakeholder Partnership & Governance
- Partner with Technology, Information Security, Legal, Compliance, Operations, and other business teams to support risk and compliance initiatives.
- Help ensure technology and business solutions align with applicable compliance, risk, and business requirements.
- Facilitate discussions with stakeholders to identify requirements, address risks, and resolve compliance-related issues.
- Support the development and maintenance of policies, procedures, documentation, and governance processes.
- Communicate complex compliance and risk matters clearly to both technical and non-technical stakeholders.
What You'll Bring
- Bachelor's degree in Information Security, Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent relevant experience.
- 4–6 years of experience in PCI compliance, IT risk management, information security, technology risk, regulatory compliance, audit, governance, or related areas.
- At least 2 years of experience managing, leading, coaching, or developing team members.
- Experience supporting risk assessments, control reviews, compliance activities, audits, or governance processes.
- Strong understanding of risk management principles, information security concepts, and internal controls.
- Strong attention to detail, organizational skills, and the ability to manage multiple priorities in a structured and controlled environment.
- Strong written and verbal communication skills, including the ability to present information and collaborate effectively with diverse stakeholders.
- Ability to follow established processes while exercising sound judgment when identifying, escalating, and resolving issues.
- Demonstrated ownership, execution discipline, and the ability to deliver high-quality work within established timelines.
- Strong stakeholder management and collaboration skills, particularly within cross-functional and global environments.
It's a Bonus If You Have
- Knowledge of PCI DSS and payment card industry standards.
- Understanding of payment security requirements and cardholder data protection.
- Familiarity with information security concepts, including access controls, encryption, identity management, and data protection.
- Experience with risk and compliance frameworks such as ISO 27001, NIST, COBIT, or similar standards.
- Experience supporting internal or external audits, evidence collection, compliance assessments, or remediation activities.
- Experience working with payment networks or within the payments, financial services, fintech, or regulated technology industries.
- Proficiency in Microsoft Office tools, particularly Excel and PowerPoint.
- Relevant certifications such as PCI-P, CRISC, Security+, CISSP, or similar credentials.
What Will Make You Successful
You're a structured and proactive leader who can balance people management with hands-on risk and compliance responsibilities.
You know how to bring order to complex requirements, identify potential risks before they become bigger problems, and work collaboratively with technical and business stakeholders to find practical solutions.
You're comfortable operating in a global environment where priorities can shift, multiple stakeholders are involved, and clear communication is essential. Most importantly, you take ownership, lead with sound judgment, and help your team deliver consistently high-quality outcomes.
About the Team
Our inclusive and global teams win together every day. We're proud to have some of the best minds in the industry, creating an environment where you can learn, grow, and build meaningful connections across the organization.
You'll have the opportunity to work at the intersection of payment security, technology risk, regulatory compliance, and global commerce, while leading a team that helps protect and strengthen a large-scale global acquiring business.
The people, the opportunities, and the global connections make this more than just another role. It's a chance to build your leadership career while contributing to an ever-evolving organization operating at the heart of commerce.