Stripe is a financial infrastructure platform dedicated to increasing the GDP of the internet by providing secure payment solutions for businesses worldwide. The Security Governance, Risk, and Compliance (SGRC) team is currently seeking a Program Manager to help maintain our robust security posture and manage complex regulatory landscapes.
Key responsibilities
- Act as a subject matter expert during cross-functional audit engagements, representing the Security team in meetings with auditors and regulators.
- Serve as the primary internal liaison to ensure that audit processes are managed effectively and consistently across the organization.
- Maintain a central repository of audit evidence artifacts required for compliance with standards such as SOC 2, PCI DSS, and SOX.
- Perform security risk and control assessments against common frameworks to ensure alignment with internal policies and global regulations.
- Support control owners with guidance on security control design to ensure continued compliance and operational effectiveness.
Requirements
- At least 6 years of experience in Security Governance, Risk, and Compliance or Technology Compliance roles.
- Deep expertise in information security frameworks, practices, and standards such as NIST CSF, SOC 2, PCI DSS, or ISO 27001.
- Proven experience conducting security audits and managing compliance across complex, overlapping regulatory frameworks.
- Strong program management skills with the ability to coordinate multiple stakeholder engagements across different time zones.
- Excellent communication skills, capable of translating technical security concepts for auditors, regulators, and executive leadership.
What we offer
- The opportunity to work on critical security infrastructure at a global scale.
- A collaborative environment that values strategic security decision-making and continuous improvement.
- The chance to contribute to a mission-driven organization that is shaping the future of the global economy.