About the Role
Global Support Operations (GSO) is responsible for managing Uber's external vendor network, ensuring seamless customer support worldwide. As a Senior Program Leader for Security & Compliance Strategy and Governance, you will collaborate with internal security teams, stakeholders, and external partners to uphold and enforce Uber's security and compliance measures.
This role requires expertise in security frameworks, regulatory compliance, and risk management to protect Uber's proprietary and sensitive data. You will work cross-functionally with teams across the globe, ensuring that security policies remain current, effective, and properly implemented within Uber's vendor ecosystem.
Want more jobs like this?
Get jobs delivered to your inbox every week.
A successful candidate is a strategic thinker and proactive leader who thrives in a matrixed environment, builds strong internal partnerships, and drives security initiatives forward. You must possess exceptional communication and analytical skills, with the ability to translate complex security challenges into clear, actionable strategies. Most importantly, you should be comfortable challenging the status quo and leading continuous improvement efforts.
What You'll Do
Security & Compliance Oversight
- Access & Asset Management: Oversee Yubikey asset management, job title and permission group setup, and access control reviews to prevent excessive access.
- Technical Site Transitions: Lead security initiatives during technical site launches and ramp-downs to ensure compliance.
- Policy Development & Enforcement: Maintain and communicate internal security policies, ensuring alignment with evolving regulatory and business requirements.
- Real-Time Monitoring: Oversee refund and appeasement monitoring and GDPR CRM search compliance.
- Incident & Escalation Management: Handle security escalations, tracking resolution and reporting closure outcomes.
Audit & Risk Management
- Operational Audits: Conduct virtual and physical site audits, vendor self-audits, and compliance reviews (e.g., IP allowlisting, OneLogin, MFA/VDI access, active site rosters, and insurance compliance).
- BPO & Vendor Compliance: Ensure BPO partners meet Uber's security requirements through vendor manager checklists, network risk assessments, and policy alignment.
- Regulatory & Internal Compliance: Oversee FTC consent audits, TPRM compliance, and alignment with Uber's internal audit teams.
- Remediation & Change Management: Lead post-audit remediation efforts, tracking necessary changes and ensuring corrective actions.
Strategic Security Governance
- Risk Assessment & Management: Develop and maintain a network risk matrix to assess vendor and site-specific risks.
- Stakeholder Collaboration: Partner with internal security, compliance, and legal teams to drive alignment on security governance and evolving regulatory requirements.
- Continuous Improvement: Evaluate Uber's security framework, identify gaps, and propose data-driven improvements to enhance security resilience across global operations
Basic Qualifications
- 7+ years of experience in security, compliance, or risk management in a large multinational company or outsourced contact center environment
- Minimum 2+ years experience managing a team
- Expertise in security compliance, risk frameworks, and regulatory requirements affecting global operations
- Proven ability to translate security risks into actionable insights that enhance customer trust and operational resilience
- Bachelor's degree from an accredited institution (Security, Risk Management, Business, or related field preferred)
Preferred Qualifications
- Strong written and verbal communication skills across diverse teams and leadership levels
- Ability to be an Uber brand and security compliance advocate, ensuring vendors meet Uber's standards.
- Team-oriented leader who fosters collaboration and aligns different perspectives into a unified security strategy
- Strong multi-tasking, prioritization, and project management skills
- Experience working in a complex matrixed environment, balancing multiple priorities and stakeholders
- Self-motivated problem-solver with a data-driven approach to security risk management
About the Team
The Security & Compliance Team ensures that Uber's global BPO network adheres to security and regulatory standards, protecting Uber's customer data, proprietary information, and operational integrity. We establish policy expectations, compliance processes, and risk governance frameworks to safeguard Uber's information security landscape
As a strategic security partner, we work closely with internal teams, external partners, and regulatory stakeholders to assess risks, implement controls, and drive security excellence across Uber's support operations
For Chicago, IL-based roles: The base salary range for this role is USD$167,000 per year - USD$186,000 per year.
For New York, NY-based roles: The base salary range for this role is USD$186,000 per year - USD$207,000 per year.
For Phoenix, AZ-based roles: The base salary range for this role is USD$149,000 per year - USD$165,500 per year.
For San Francisco, CA-based roles: The base salary range for this role is USD$186,000 per year - USD$207,000 per year.
For all US locations, you will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. You will also be eligible for various benefits. More details can be found at the following link https://www.uber.com/careers/benefits.
Uber is proud to be an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation, please let us know by completing this form.
Offices continue to be central to collaboration and Uber's cultural identity. Unless formally approved to work fully remotely, Uber expects employees to spend at least half of their work time in their assigned office. For certain roles, such as those based at green-light hubs, employees are expected to be in-office for 100% of their time. Please speak with your recruiter to better understand in-office expectations for this role.