Please note that this site has updated features that do not run on older versions of Internet Explorer.
For an optimal experience, please use another browser or the most recent version of IE.
About PayPal
Through a combination of technological innovation and strategic partnerships, PayPal creates better ways to manage and move money and offers choice and flexibility when sending payments, paying or getting paid.
We build BIG and NEW products to drive worldwide commerce. Be it the next mobile payments solution, or a high availability money movement platform, we solve problems on a scale you can't find elsewhere. PayPal continues to push the boundaries of technology by investing in individuals who passionately believe in the potential of innovative technologies that make up global marketplaces.
About this Role:
The Enterprise Cyber Security (ECS) organization is looking for a passionate, self-driven security engineering manager that will help to enhance and enable PayPal’s ability to expand and protect the brand by maturing a global portfolio of information security services, tools and product capabilities. As a member of the security engineering team you will be responsible both for existing COTS security tools and services as well as helping in innovating and executing new on security initiatives. As a security engineering manager you will be responsible for leading team of engineers, connect with internal and external customers to enable PayPal business, improving security posture to protect the brand.
If you are the kind of person who thinks outside of the box, brings an extra edge to the table to accomplish tasks, and desires to gain real-world experience with a world-class team in the ever-changing field of security, then please apply for this position.
Specific Responsibilities:
Assist in the evolution of a security architecture strategy supporting ECS initiatives to include cloud and security acceleration programs.
Collaborate with key stakeholders, Engineering, Cyber Operations, and global architects to align security architecture investments with commercial best practices, standards and policies.
Provide technical guidance and foster a collective understanding of data flows and security issues encountered in applications and services.
Incorporate business drivers, needs, and strategies to address future business / technology needs.
Assist in the development of recommendation and communications regarding the implications of architectural decisions, issues and plans for business and ECS Leadership.
Staying abreast of changes in vendor landscape and providing guidance regarding cloud service offerings.
Exhibiting a high level of professional flexibility, an ability to work independently, have a strong willingness to learn, and manage multiple tasks.
Collaborate on the development of the technology strategy, technology standards, roadmaps, and practices.
Participate in threat assessment and modeling to identify gaps and overlap in the security portfolio.
CICD DevSecOps, migration to newer security platforms (Agile/Scrum PMO).
Understanding of security infrastructure, COTS products and automation of SSDLC processes into security tools as a Service.
Experience Requirements
5+ years of experience as a Security Architect/Engineer and leading teams - Must
Experience with anti-virus software, intrusion detection systems, next generation firewalls, SIEMs, content filtering and endpoint management software.
Experience with PKI and the utilization of certificates.
Experience with developing and managing a vulnerability management program.
Experience designing secure networks, systems and application architecture.
Experience securing cloud environments, GCP, Azure and AWS.
Prior experience with large remote site security management
Ability to demonstrate understanding of how to implement into a secure infrastructure, as an early adopter of new technology, using proven technology to accomplish security objectives
Awareness of integrating network protocols as to how they relate to ensuring a secure environment. (DNS, AD, DHCP, Radius)
Solid understanding of network protocols, ports and methods. (mainly TCP/IP).
Understanding of current attack vectors and mitigation approaches.
Demonstrated experience and knowledge involving the development of multi-tier and cross-platform architecture plans to include enterprise workflows, and distributed intranet/internet architecture.
A background in general security practices, experience in deploying COTS security products, encryption, and multi-factor authentication, and other supporting technologies.
Experience designing and delivering internet-scale, enterprise-wide cyber security tools and capabilities
Superior communication, problem solving, collaboration, presentation, and people skills.
Innovative, entrepreneurial, ability to multitask
Ability to push ideas and influence decision making in a collaborative manner
Highly motivated, goal driven, Can-do approach, curious and open minded