Company Description
Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive while driven by a common purpose – to uplift everyone, everywhere by being the best way to pay and be paid.
Make an impact with a purpose-driven industry leader. Join us today and experience Life at Visa.
Job Description
The role will work as a member of the Global Cybersecurity organisation - Security Architecture team, which is focused on improving technology and architecture decision-making through collaboration with management, staff and customers on technology strategy, enterprise architecture, and investments in strategic security technology.
The individual, with a broad cybersecurity plus systems and network architecture knowledge and experience, will deliver security assessments while supporting our direction, lifecycle management and leadership for security architecture and technology. The individual will perform a key role in Security assessments while supporting various critical initiatives through the identification, analysis, evaluation, lifecycle management and adoption of security architectures and technologies. The Security Architect will work closely with other security functions and will provide guidance to ensure that there is coordination with their activities in technology choices. In addition, the Security Architect will be involved with education and mentorship, supporting the delivery framework, development of technical architecture and associated documentation, as well as advanced topics of research.
Essential Functions:
Be a product security champion by driving Security Architecture and Design, implementation and optimization for Web, API and Mobile backend applications across Visa.
Applying security design principles to develop security solutions architectures
Engage in the initial requirements definition including analysis of threats and risks and alignment with Visa security, Engineering, IT and Architecture standards.
Conduct and facilitate security reviews, threat modelling including deep design reviews throughout the development lifecycle.
Facilitate 'table-top'/red-team/scenario analysis exercises in conjunction with other SMEs. Plan the resolution of any identified vulnerabilities/issues.
You’ll be working on enabling/building security controls which protect the applications from attacks on various platforms and technologies, like:
Linux, Windows, VMWare, Openstack, SDN, Public cloud like AWS, Google
Cybersecurity tools like IDS, SIEM, Tripwire, Tanium, Netwitness, Netflow, WAF
HSMs, Tokenization systems, data encryption solutions from Safenet, Vormetric etc
Web technologies like HTTP, SOAP, REST services, AJAX
Databases like Oracle, MS SQL, Redis, Cassandra
Programming languages like Java, C, C++, .Net, Javascript, GoLang, ErLang, etc
Caching services like Hazelcast, Coherence, and messaging systems like Kafka, MQ
Web Access Management solutions like Forgerock, Siteminder, Custom/in-house Security Frameworks
Help business and product team to achieve various compliance certifications like PCI, FFIEC etc.
Identify and analyse system and application level vulnerabilities to provide recommended counter measures or mitigating controls that reduce risk to an acceptable and manageable level.
Driving security technologies evaluations, proof-of-concepts, and production pilots
Building strong cross-organisational relationship through integration with the teams, in order to effectively influencing staff across the IT organisation and product groups
Managing the lifecycle of security technologies
Staying current with security technologies, as well as development techniques and methodologies in order to make recommendations for use based on business value
Maintaining oversight of the design and implementation of IT systems to ensure appropriate and effective security controls are included.
Contribute to the definition of overall IT architecture from a cybersecurity lens.
This is a hybrid position. Hybrid employees can alternate time between both remote and office. Employees in hybrid roles are expected to work from the office 2-3 set days a week (determined by leadership/site), with a general guidepost of being in the office 50% or more of the time based on business needs.
Qualifications
Basic Qualifications:
• 2+ years of relevant work experience and a Bachelor’s degree, OR 5+ years of relevant work experience
Preferred Qualifications:
• 3 or more years of work experience with a Bachelor’s Degree or more than 2 years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD)
• Significant Cybersecurity, Architecture and Design experience in Networks, Data Centre Systems, and Cloud Infrastructure and Platforms (IaaS security, PaaS security)
• Strong experience in threat-modelling of complex systems
• Comprehensive Cybersecurity consulting and security assessment experience in a relevant industry
• Experience in delivering comprehensive architecture specifications for complex security solutions
• Experience with creating or contributing to technical documentation: product documentation, technology and systems/network architecture, and or technical whitepapers.
• Strong working experience with the following security technologies: Firewalls, Intrusion Detection/Prevention Systems, Vulnerability Scanning, WAF, Wireless LAN, NAC, DLP, DDoS Mitigation, WAN security, SIEM, Content Filtering, Cloud Security gateways, Secure Proxies, SSL crypto solutions
• Experience with open source based security technologies
• Strong knowledge and working experience with SDN (Software-Defined Networking), NFV (Network Function Virtualization), and network virtualization/overlays
• Strong hands on cloud architecture, with knowledge and working experience in: OpenStack, Cloud Foundry, Server Virtualization hypervisors (KVM, Xen, Hyper-V, VSphere), Linux Containers technologies (Docker, Mesos, Kubernetes), and distributed computing
• Programming/coding and DevOps experience is a plus (Python, Ansible, Chef)
• Solid understanding of and ability to speak authoritatively to security principles in areas such as network, systems, virtualization, cloud technologies, access control.
• Proven ability to troubleshoot and resolve complex technical issues at Expert level
• Experience integrating multiple vendor products
• Preferred certifications include: CISSP, OpenStack Certification, TOGAF, SABSA
• Hands-on experience and strong understanding of technology and enterprise security
• Strong understanding of relevant Industry Principles, Best Practices, and Standards, such as PCI, NIST, ISO, IEEE, and TCG
• Experience working in a global organisation with the need to deliver regional requirements
• Strong cross-domain and cross-functional knowledge that will enable design of the best possible security technology solutions.
• Has solid understanding of the SSDLC process and follows the process to effectively develop and design solutions.
• Skilled to liaise with and influence multiple stakeholders in a matrix environment
• Ability to function as an individual contributor and mentor/leader detached from the corporate environment
Additional Information
Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.
0 applies
4 views
Other Jobs from Visa
Staff SW Engineer - Connex/Base24
Sr. SW Engineer
Global Clients LATAM Region Lead, Sr. Manager
Senior Data Scientist - Risk Management -10 months Contractor
Data Engineer
Similar Jobs
Staff Data Engineer
Senior Data Engineer
Senior Software Engineer, Payments Platform (Relocate to Amsterdam)
Engineering Lead, Payments Platform
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 401 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say