Data Security Program Manager - Global Payment
Singapore | Regular | Product | Job ID: A237182B
Responsibilities
- Team Introduction: In line with the company's globalization strategy, the Global Payments team develops a platform for cross-border payment solutions supporting ByteDance's rapidly growing products and services worldwide.
- Security Certifications: Lead cross-functional projects to obtain security certificates such as PCI DSS and ISO27001, ensuring compliance with industry standards. Manage re-assessments, renewals, and audits, maintaining relationships with auditors.
- Data Control Framework: Collaborate with teams to strengthen PIPO's data control framework (PCF), supporting TikTok's enhancements and regulatory compliance. This includes data taxonomy, retention, sharing, processing, purpose limitation, rights, privacy policies, and awareness. Assess requests and align PCF requirements between PIPO and TikTok.
- Incident Management: Discover, evaluate, report, and remediate privacy and data security incidents, adhering to SOPs and SLAs aligned with regulators and stakeholders.
- Security Testing: Participate in security penetration testing, coordinate remediation, and manage cross-functional projects with Infra and GSO teams if needed.
- Compliance: Ensure PIPO's compliance with USDS and EU Clover data policies. Support system modifications for new requirements and build partnerships with USDS Risk and Compliance teams.
- Support for New Entities: Assist in establishing new entities, licensing, and security assessments related to acquisitions, ensuring timely milestone completion.
Qualifications
- Minimum Qualifications: Strong background in data privacy and security, understanding of privacy frameworks, vulnerabilities, and remediation. Excellent cross-functional collaboration and project management skills. Fluent in English.
- Preferred Qualifications: Over 5 years of experience in IT infrastructure, architecture, data security, and privacy, especially in multi-national, multi-tenancy, distributed systems. Experience in financial services, IT audit, or consulting is a plus.