PPEU ICT Risk & Resilience Manager

Posted 12 Days Ago
Be an Early Applicant
Luxembourg, LUX
In-Office
Senior level
Fintech • Payments
The Role
The role involves managing complex security risks, driving security initiatives, mentoring team members, and ensuring compliance with DORA and other regulations.
Summary Generated by Built In

The Company

PayPal has been revolutionizing commerce globally for more than 25 years. Creating innovative experiences that make moving money, selling, and shopping simple, personalized, and secure, PayPal empowers consumers and businesses in approximately 200 markets to join and thrive in the global economy. 

We operate a global, two-sided network at scale that connects hundreds of millions of merchants and consumers. We help merchants and consumers connect, transact, and complete payments, whether they are online or in person. PayPal is more than a connection to third-party payment networks. We provide proprietary payment solutions accepted by merchants that enable the completion of payments on our platform on behalf of our customers.

We offer our customers the flexibility to use their accounts to purchase and receive payments for goods and services, as well as the ability to transfer and withdraw funds. We enable consumers to exchange funds more safely with merchants using a variety of funding sources, which may include a bank account, a PayPal or Venmo account balance, PayPal and Venmo branded credit products, a credit card, a debit card, certain cryptocurrencies, or other stored value products such as gift cards, and eligible credit card rewards.  Our PayPal, Venmo, and Xoom products also make it safer and simpler for friends and family to transfer funds to each other. We offer merchants an end-to-end payments solution that provides authorization and settlement capabilities, as well as instant access to funds and payouts. We also help merchants connect with their customers, process exchanges and returns, and manage risk. We enable consumers to engage in cross-border shopping and merchants to extend their global reach while reducing the complexity and friction involved in enabling cross-border trade. 

Our beliefs are the foundation for how we conduct business every day.  We live each day guided by our core values of Inclusion, Innovation, Collaboration, and Wellness. Together, our values ensure that we work together as one global team with our customers at the center of everything we do – and they push us to ensure we take care of ourselves, each other, and our communities.

Job Summary:

This job leverages security governance expertise to address complex security risks, partners with teams to drive security initiatives, applies analytical skills to assess risks, contributes to risk mitigation strategies, influences initiatives, and mentors team members.

Job Description:

Essential Responsibilities:

  • Leverage specialized security governance and risk expertise to identify and address complex security risks, recommending best practices and determining new approaches that have an impact on broader security operations, while aligning strategies with business priorities
  • Partner across teams and key stakeholders to drive security risk and governance initiatives, leading and solutioning complex projects and programs to strengthen overall security posture.
  • Apply advanced analytical skills and sound judgment to assess and mitigate security risks, considering diverse perspectives and innovative solutions. Stay informed on industry trends and regulatory landscape while evaluating their security implications within the context of the PayPal’s governance framework.
  • Directly contribute to improvements within the security domain and occasionally beyond, ensuring decisions lead to meaningful enhancements in risk mitigation strategies and overall security practices.
  • Leverage relationships across teams, both within and outside of security, to influence initiatives and integrate feedback into security governance processes and risk management practices.
  • Develop and articulate clear plans and priorities for the team, guiding them to achieve security risk and governance objectives while fostering a collaborative and high-performance environment.
  • Lead by example, providing mentorship and support to ensure the team successfully executes on initiatives and goals.

Minimum Qualifications:

  • 5+ years relevant experience and a Bachelor’s degree OR Any equivalent combination of education and experience.

Additional Responsibilities & Preferred Qualifications:

About the Role

PPEU ICT Risk & Resilience Manager is a governance, risk, and control leader within the First Line of Defense, responsible for supporting PayPal Europe’s adherence to the EU Digital Operational Resilience Act (DORA) and other applicable European regulatory frameworks.
Based in PayPal Europe’s European headquarters in Luxembourg, this role acts as a strategic bridge between local regulated entity obligations and enterprise-wide technology and security operations.
The role ensures that digital operational resilience, cyber risk management, and regulatory compliance are embedded into business strategy, change initiatives, and day-to-day operations.
The role carries responsibility for monitoring, assessing, and reporting material ICT and cyber-related changes, supporting the effectiveness of cyber resilience controls, and contributing to cyber incident management and regulatory reporting. The role supports senior management reporting and assurance activities over the effectiveness of the technology and cyber security control environment in line with supervisory expectations.

Key ResponsibilitiesDigital Operational Resilience & DORA Accountability

• Ensure the design, effectiveness, and ongoing testing of BCM, DR, and cyber resilience controls, including resilience scenario testing and remediation tracking.
• Contribute to PayPal Europe’s First Line execution and oversight of DORA requirements, including technology risk management, business continuity, disaster recovery, cyber resilience, and operational resilience testing.
• Support the monitoring and reporting of ICT resilience metrics and control effectiveness to senior management and governance forums.

Change Management & Material Change Oversight

• Support oversight and documentation of the PPEU material change management framework from a technology, cyber, and resilience perspective.
• Ensure new product launches, major technology changes, outsourcing arrangements, and strategic initiatives undergo appropriate due care, including information security risk assessment and regulatory impact analysis.
• Monitor and challenge change initiatives to confirm compliance with applicable obligations including DORA, PSD2 (& PSD3/PSR), GDPR, EBA Guidelines, and ECB supervisory expectations.
• Collaborate with business and technology stakeholders throughout the lifecycle of technology initiatives, ensuring risks are transparently identified, assessed, and mitigated.

ICT Control Oversight & Assurance

• Coordinate the planning, execution, and evaluation of ICT control testing and assurance activities, ensuring alignment between Enterprise outcomes and PayPal Europe’s local regulatory obligations.
• Review, challenge, and validate control evidence across business lines and functional owners to maintain robust entity-level assurance.
• Support timely closure of control deficiencies, effective remediation tracking, and escalation of material risks where necessary.
• Identify recurring control weaknesses and advise on systemic improvements to strengthen the control environment.

Incident Management & Regulatory Reporting

• Serve as a First Line subject matter expert for ICT and cyber incident management, including severity assessment, escalation, and post-incident review.
• Ensure incidents are assessed and reported in line with DORA, GDPR and other ECB/SEPA/EPC supervisory notification requirements.
• Coordinate closely with enterprise security, legal, compliance, and communications teams during incident response and regulatory engagement.
• Maintain high-quality documentation to support audits, supervisory reviews, and regulatory examinations.

Regulatory Engagement & Senior Stakeholder Management

• Prepare high-quality management information, assurance reporting, and regulatory responses for senior management.
• Foster a culture of proactive risk ownership by providing guidance, challenge, and oversight to operational and technology leaders.

Education

• Bachelor’s or Master’s degree in Information Technology, Information Security, Cybersecurity, Risk Management, or a related discipline.
• Professional certifications strongly preferred, such as:
    • CISA
    • CISM
    • ISO 22301 / ISO 27001 Lead Implementer or Auditor (advantageous)
• Equivalent industry certifications may also be considered.

Experience

• 5+ years of experience within financial services, payments, fintech, or regulated environments, with demonstrated responsibility.
• Proven experience in ICT risk management, operational resilience, cyber risk, or regulatory oversight within a First Line or equivalent function.
• Strong working knowledge of DORA, PSD2 (& PSD3/PSR), GDPR, EBA Guidelines, and ECB supervisory expectations.
• Hands-on experience with business continuity, disaster recovery, cyber resilience testing, and control effectiveness assessments.
• Demonstrated expertise in incident management, regulatory notifications, and supervisory interactions.
• Experience overseeing or challenging material change programs, new product launches, and complex technology transformations.
• Proficiency with GRC tooling, risk data aggregation, and executive-level reporting.

Core Competencies

• Strong analytical mindset with the ability to assess complex ICT and cyber risk scenarios and translate them into clear management insights.
• Excellent stakeholder management skills, with the confidence to challenge senior leaders constructively.
• Ability to operate independently, prioritize effectively, and escalate material risks in a timely and proportionate manner.
• High standards of documentation, reporting, accuracy, and regulatory discipline.
• Resilience and composure in high-pressure environments, including incident response and regulatory scrutiny.

Subsidiary:

PayPal

Travel Percent:

0

PayPal does not charge candidates any fees for courses, applications, resume reviews, interviews, background checks, or onboarding. When making an application directly, we will never ask you to share passwords, one-time passcodes (OTP), or verification codes.  Any such request is a red flag and likely part of a scam. All communication regarding your application will come from official PayPal email domains. If you suspect fraudulent activity, please report it immediately.  To learn more about how to identify and avoid recruitment fraud please visit https://careers.pypl.com/contact-us

For the majority of employees, PayPal's balanced hybrid work model offers 3 days in the office for effective in-person collaboration and 2 days at your choice of either the PayPal office or your home workspace, ensuring that you equally have the benefits and conveniences of both locations.

Our Benefits:

At PayPal, we’re committed to building an equitable and inclusive global economy. And we can’t do this without our most important asset-you. That’s why we offer comprehensive, choice-based programs, to support all aspects of personal wellbeing—physical, emotional, and financial—delivering meaningful value where it matters most. We strive to create a flexible, balanced work culture with a holistic approach to benefits, including generous paid time off, healthcare coverage for you and your family, and resources to create financial security and support your mental health.

Who We Are:

Click Here to learn more about our culture and community.

Commitment to Diversity and Inclusion 

PayPal provides equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, pregnancy, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state, or local law.  In addition, PayPal will provide reasonable accommodations for qualified individuals with disabilities.  If you are unable to submit an application because of incompatible assistive technology or a disability, please contact us at [email protected].  

Belonging at PayPal: 

Our employees are central to advancing our mission, and we strive to create an environment where everyone can do their best work with a sense of purpose and belonging. Belonging at PayPal means creating a workplace with a sense of acceptance and security where all employees feel included and valued. We are proud to have a diverse workforce reflective of the merchants, consumers, and communities that we serve, and we continue to take tangible actions to cultivate inclusivity and belonging at PayPal.

Any general requests for consideration of your skills, please Join our Talent Community.

We know the confidence gap and imposter syndrome can get in the way of meeting spectacular candidates. Please don’t hesitate to apply.

Skills Required

  • 5+ years relevant experience
  • Bachelor's or Master's degree in related field
  • Professional certifications such as CISA, CISM, ISO 22301

PayPal Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about PayPal and has not been reviewed or approved by PayPal.

  • Healthcare Strength Benefits include comprehensive medical, dental, and vision coverage with mental-health resources, an on-site clinic, and wellness supports. Feedback suggests these offerings emphasize whole-person well-being and are viewed favorably across locations where available.
  • Leave & Time Off Breadth Programs feature unlimited PTO, dedicated sick time, sabbaticals, and multiple paid leaves including parental and family-building support. Feedback suggests flexibility in time away is a standout element of the package.
  • Wellbeing & Lifestyle Benefits Perks span gym access and reimbursement, fitness classes, snacks and meals, marathon training, and on-site services that ease daily life. Feedback suggests these amenities bolster work–life balance and overall wellness.

PayPal Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Jose, CA
34,450 Employees
Year Founded: 1998

What We Do

HELP US REIMAGINE MONEY. At PayPal, we believe that now is the time to democratize financial services so that moving and managing money is a right for all citizens, not just the affluent. We are driven by this purpose, and we uphold our cultural values of collaboration, innovation, wellness and inclusion as our guide for making decisions and conducting business every day. It is our duty and privilege to be customer champions and put those we serve at the center of everything we do. We are one team that respects and values diversity of thought for everyone, everywhere, and we actively seek to create an energizing workplace that brings out the best in all of us. If you’re ready to shape the future of money, join the team at PayPal. We're proud to work here. You will be too. PayPal is headquartered in San Jose, California and its international headquarters is located in Singapore.

Similar Jobs

LogicMonitor Logo LogicMonitor

Account Executive

Artificial Intelligence • Cloud • Information Technology • Machine Learning • Software
Easy Apply
Hybrid
28 Locations
1100 Employees
Remote or Hybrid
2 Locations
1100 Employees

CSC Logo CSC

Senior Client Legal Administrator

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
Luxembourg
8500 Employees
Remote or Hybrid
Luxembourg
1100 Employees

Similar Companies Hiring

Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account