Company Description
Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive while driven by a common purpose – to uplift everyone, everywhere by being the best way to pay and be paid.
Make an impact with a purpose-driven industry leader. Join us today and experience Life at Visa.
Job Description
Candidate will develop, support, tune and deploy security solutions across Visa.
Essential Functions:
Web Application Security: Engineering, deployment, and operations of security solutions, including Web Application Firewalls, as well as integration of those platforms with other solutions as required.
Security Software Development: Scripting and Development in Python, Shell scripting and development in other languages.
Engineers, configures, deploys, and maintains Web Application Firewall solutions
Develops scripts for manipulation of multiple data repositories to support analysts
Develops alerts/reports to meet the requirements of key stakeholders
Develops automation for security tools management and workflow integration
Collaboration with key stakeholders within Cybersecurity Engineering teams to develop specific use cases to address web and application security requirements
Creates WAF rules to mitigate threats and implement security best practices
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments, dashboards, reports, and alerts that appropriately illustrate and characterize web application attacks and mitigation mechanisms
Application Security:
Knowledge of SSDLC processes, procedures, and tools
Knowledge of open source and commercial application security tools and frameworks, including but not limited to Kali Web application testing tools
Experience in exploiting web apps and web services security vulnerabilities including cross-site scripting, cross-site request forgery, SQL injection, DoS attacks, XML/SOAP, and API attacks
Excellent understanding of OWASP Risks, Vulnerabilities and Mitigation Mechanisms
Strong experience with Web Application Firewall management and rules
Excellent understanding of common network and web protocols
Excellent understanding of DDoS, Bot, and ATO techniques and mitigation mechanisms
Cyber Defense and Incident Response:
Solid understanding of events, related fields in log records and alerts reported by various data sources such as Windows/Unix systems, IDS/IPS, AV, HIDS/HIPS, WAFs, firewalls, and web proxies
Prior experience or support of Security Operations and Incident Response
Excellent understanding of Cyber Security Operations and Incident Response processes
Infrastructure management and support:
System administration experience with Windows and Unix servers
Experience working in a large enterprise environment
Experience integrating solutions in a multi-vendor environment
Familiarity with Atlassian JIRA
This is a hybrid position. Hybrid employees can alternate time between both remote and office. Employees in hybrid roles are expected to work from the office 2-3 set days a week (determined by leadership/site), with a general guidepost of being in the office 50% or more of the time based on business needs.
Qualifications
Basic Qualifications:
•5+ years of relevant work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8+ years of relevant work experience.
Preferred Qualifications:
• 6 or more years of work experience with a Bachelor’s Degree or 4 or more years of relevant experience with an Advanced Degree (e.g. Masters, MBA, JD, MD) or up to 3 years of relevant experience with a PhD
• Experience with one or more: Akamai, AWS Cloudfront, Cloudflare, or other CDN solutions
• Experience with one or more of the following: Imperva WAF, F5 WAF, and CDN Firewall
• Experience with API Security solutions such as Imperva API Anywhere, Cloudflare API Shield, or other similar solutions.
• Web Application Firewall Experience (Must have), Experience with one or more of the following:
- SecDevOps Experience:
• Expertise in one or more of the following: Python, Perl, shell scripting, C++, Java, Java Script
• Excellent experience in creating Regular Expressions for security polices and rules
• Experience in maintaining and enhancing infrastructure as code with one or more of the following: CloudFormation, Terraform, Chef, Puppet, Jenkins, CodeDeploy
• Experience with using knowledge management and code repositories with Github, Gitlab, Jira, and Confluence
• Experience with Lambda, API Gateway
• Experience with API Security solutions such as Imperva API Anywhere, Cloudflare API
Shield, or other similar solutions.
Additional Information
Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.
0 applies
0 views
Other Jobs from Visa
Staff SW Engineer - Fullstack (Java + React), 7.5 Yrs
Staff SW Engineer (8+ years, Java, REST)
Senior Software Engineer - Full Stack (Java, Angular)
Java Software Engineer
Software Engineer (Java) - Sr. Consultant level
Staff Software Engineer (Java)
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 401 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say