> Markdown version of [/jobs/ext/188982-director-information-security-engineering](https://www.wearedevelopers.com/jobs/ext/188982-director-information-security-engineering). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Director, Information Security Engineering - **Company:** Mastercard - **Location:** O'Fallon, MO, United States - **Experience:** Expert - **Salary:** $170,000.0 - $281,000.0 - **Contract:** Permanent contract - **Skills:** Data Analysis, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Continuous Delivery, Continuous Integration, Identity and Access Management, Intelligence Analysis, Mobile Application Software, Key Management, PCI Data Security Standards, Cloud Services, Software Engineering, Web Applications, Web Services, Transport Layer Security - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=5920d86ddb14b41c ## About the Role * Strong understanding of information security, risk and data privacy within the domain of digital commerce including relevant practical experience, integration of different security technologies, and designing secure multi-domain solutions * Demonstrate a broad awareness of security operations concepts and practices across all phases of the delivery lifecycle * Experience providing security architecture advice for web-based network environments and secure communication, including mobile applications, web applications and web services * Knowledge of relevant industry standards and guidelines such as ISO27001, PCI-DSS, NIST SP800-53, COBIT * Knowledge and technical security experience in cryptography, including several of the following: encryption, hashing, key management, digital certificates, TLS * Experience of continuous delivery/continuous integration processes and procedures including critical security considerations in automated workflows Strong knowledge of Security Operations and Integration in an enterprise environment NICE Framework References National Initiative for Cybersecurity Education (NICE) competency proficiency levels of advanced to expert in the following areas (recommended no more than 6): * Data Analysis * Encryption * Identity Management * Intelligence Analysis * Software Development * Threat Analysis ## Description The Business Security Enablement Guild is looking for a Principal Information Security Engineer to join our team in support of Core Payments. The ideal candidate is passionate about cybersecurity policies and governance, highly motivated, analytical, experienced in cybersecurity, and knowledgeable in cloud service deployment. In this role, you will: * Provide technical design and architecture advice to internal teams * Proactively work to find solutions that align with business needs while operating within Mastercard's risk tolerance that are scalable and can be applied across multiple programs and platforms. * Cultivate and maintain working relationships with variety of internal stakeholders, including business owners, end-users, customers, project managers, engineers, and senior leadership * Leverage security experience and knowledge within the security operations and technology * Define security requirements and guidelines to ensure repeatable processes are followed by global teams * Assist in the strategy, standards, and architecture for the security aspects of the Security operation, architecture, and program health, All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must: * Abide by Mastercard's security policies and practices; * Ensure the confidentiality and integrity of the information being accessed; * Report any suspected information security violation or breach, and * Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Developer Time Is Valuable - Use the Right Tools - Kilian Valkhof](https://www.wearedevelopers.com/videos/1792-developer-time-is-valuable-use-the-right-tools-kilian-valkhof) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)