Program Manager, Security Business Enablement

Stripe Stripe · Fintech · United States · 8614 Office of the CISO & Partnership

Stripe is hiring a Program Manager for their Security Business Enablement team. This role will act as an information security subject matter expert, engaging with customers and partners to build trust and support the go-to-market strategy. Responsibilities include leading cross-functional teams, managing security control gaps, developing policies, and reporting on program health. The ideal candidate has a strong background in information security frameworks, project management, and communication skills, with experience in the go-to-market sales cycle.

What you'd actually do

  1. Function as an information security subject matter expert and lead cross-functional teams to engage with customers and partners to build trust and grow our business
  2. Serve as the main point of contact for all go-to-market related requests
  3. Operate autonomously, leading large-scale efforts to implement and operating tooling and automation across multiple teams and functions, with stakeholders in different disciplines and time zones
  4. Identify and evaluate information security control gaps and oversee remediation efforts, in partnership with control owners
  5. Develop information security policies and standards based on cybersecurity framework guidelines

Skills

Required

  • Subject matter expert in information security frameworks, practices, policies, standards and procedures (e.g. NIST CSF, PCI DSS, ISO 27001, SOC 2 or equivalent)
  • Understanding of balancing business needs with security requirements and focus on business outcomes
  • 5+ years engaging with customer and partner business, engineering, security, compliance, and legal teams as part of the go-to-market sales cycle
  • Experience driving large-scale projects and programs from start to finish within highly complex operating environments
  • Strong written and verbal communication skills, building strong relationships at all levels of the organization from executives to project teams
  • Clear and succinct communication of security compliance controls and requirements with external Stripe stakeholders, including security counter-parties at global financial institutions
  • Strong background in information security operations, risks and controls identification, and assessment
  • Critical thinker, passionate, self-driven, and detail-oriented

Nice to have

  • Developed reports on program performance via dashboards and OKRs, and perform detailed data analysis
  • Experience working with engineers for the automation of security controls and generation of evidence
  • Utilized AI to automate complex information gathering tasks and built interfaces for non-technical users

What the JD emphasized

  • information security frameworks, practices, policies, standards and procedures (e.g. NIST CSF, PCI DSS, ISO 27001, SOC 2 or equivalent)
  • 5+ years engaging with customer and partner business, engineering, security, compliance, and legal teams as part of the go-to-market sales cycle
  • strong background in information security operations, risks and controls identification, and assessment