Senior Security Program Manager

Amsterdam·Posted today
crypto
<p><strong>This is Adyen</strong></p> <p><span style="font-weight: 400;">Adyen provides payments, data, and financial products in a single solution for customers like Meta, Uber, H&amp;M, and Microsoft - making us the financial technology platform of choice. At Adyen, everything we do is engineered for ambition.&nbsp;</span></p> <p><span style="font-weight: 400;">For our teams, we create an environment with opportunities for our people to succeed, backed by the culture and support to ensure they are enabled to truly own their careers. We are motivated individuals who tackle unique technical challenges at scale and solve them as a team. Together, we deliver innovative and ethical solutions that help businesses achieve their ambitions faster.</span></p> <p><strong>Senior Security Program Manager</strong></p> <p>Adyen is looking for a Security Program Manager to join the Tech Regulatory team within the first line of defense. The Tech Regulatory team ensures that the platform is secure, reliable and compliant with all global regulatory requirements. As a Security Program Manager, you are responsible for ensuring that our products and services comply with security regulations and laws. You actively engage, bring together, and communicate with people from various teams to be successful in ensuring continued compliance of products and services and you manage multiple security compliance programs such as PCI-DSS and PCI 3DS.&nbsp;</p> <h3><strong>What you'll do</strong></h3> <ul> <li>Program Management: Manage programs across multiple domains - for example responsible for program managing the PCI-DSS and PCI 3DS certifications in addition to supporting security on regulatory requirements surrounding a broad set of security risk domains for example security detection and monitoring, data loss prevention, vulnerability management and three core operational risk domains as your team’s core anchor: Incident Management, Change Management, and Business Continuity Management</li> <li>Defining standards and ensuring frameworks withstand internal and external scrutiny</li> <li>Operational Design: Translate complex regulatory requirements into actionable operational program designs that engineering teams can implement.</li> <li>Documentation: Plan, write, and implement process documents and enablement materials that work for diverse audiences including operational teams, leadership, auditors, and regulators.</li> <li>Cross-functional Coordination: Align and provide input to roadmaps and programs across enterprise risk, security, and the broader technology organization.</li> <li>Regulatory Alignment: Oversee regulatory frameworks such as DORA and other DNB mandates, and maintaining awareness of obligations across our other global regions (e.g., OCC, MAS TRM, RBI, BNM).</li> </ul> <h3><strong>Who you are</strong></h3> <ul> <li>Demonstrated background and 5+ years experience in implementing security compliance, tech operations management, security and technology risk, or a closely adjacent discipline within a fast-growing company, ideally in financial services or payments.</li> <li>Experience in security engineering/GRC roles with prior PCI-DSS and 3DS domain experience.</li> <li>Proven experience as a first-line owner who is embedded in operational reality.</li> <li>Ability to manage complex operational risk domains simultaneously, specifically Incident Management, Change Management, and Business Continuity Management.</li> <li>Strong written communication skills, capable of explaining concepts and producing artifacts that satisfy both technical and non-technical stakeholders.</li> </ul> <p><strong>Preferred requirements</strong></p> <ul> <li>Working knowledge of regulatory and compliance standards (DORA, PCI-DSS, PCI 3DS, ISO 27001, SOC 1 and 2).</li> <li>Ability to write scripts or queries for reporting and data analysis.</li> <li>You are detail-oriented, analytical, and able to work independently.</li> <li>You are a team player who enjoys collaborating with others and contributing to the success of the business.</li> </ul> <p><strong>Our Diversity, Equity and Inclusion commitments&nbsp;</strong></p> <p><span style="font-weight: 400;">Our unique approach is a product of our diverse perspectives. This diversity of backgrounds and cultures is essential in helping us maintain our momentum. Our business and technical challenges are unique, and we need as many different voices as possible to join us in solving them - voices like yours. No matter who you are or where you’re from, we welcome you to be your true self at Adyen.&nbsp;</span></p> <p><span style="font-weight: 400;">Studies show that women and members of underrepresented communities apply for jobs only if they meet 100% of the qualifications. Does this sound like you? If so, Adyen encourages you to reconsider and apply. We look forward to your application!</span></p> <p><strong>What’s next?</strong></p> <p><span style="font-weight: 400;">Ensuring a smooth and enjoyable candidate experience is critical for us. We aim to get back to you regarding your application within 5 business days. Our interview process tends to take about 4 weeks to complete, but may fluctuate depending on the role. </span><a href="https://careers.adyen.com/how-we-hire"><span style="font-weight: 400;">Learn more about our hiring process here</span></a><span style="font-weight: 400;">. Don’t be afraid to let us know if you need more flexibility.</span></p> <p>This role is based out of our Amsterdam office. We are an office-first company and value in-person collaboration; we do not offer remote-only roles.</p>