高级网络安全工程师
Senior Cybersecurity Engineer
我们是Visa,支付技术领域的全球领导者,我们在200多个国家和地区促进消费者、商户、金融机构和政府实体之间的交易,致力于通过最佳的支付和收款方式,让每个人、每个地方都受益。在Visa,你将有机会大规模地创造影响力——解决有意义的挑战,提升技能,并看到你的贡献对全球人们的生活产生影响。加入Visa,做对你、你的社区和世界都有意义的工作。进步从你开始。
职位描述
高级云安全分析师负责通过设计、实施、监控和持续改进云安全能力,来保护Pismo的云原生基础设施、平台和服务。该职位与工程、站点可靠性工程(SRE)、基础设施、身份与访问管理(IAM)、安全架构、产品安全以及治理、风险与合规团队紧密合作,确保云环境的安全性、弹性和符合内部安全标准、Visa要求及监管义务。
成功候选人将在云安全、安全监控、威胁检测、身份与访问管理、基础设施安全和安全自动化方面成为专家。该职位支持战略性安全项目,同时帮助保持对行业标准和客户承诺的合规性。
主要职责:
· 监控并提升云环境和支持基础设施的安全态势。
· 调查并响应安全警报、可疑活动和云安全事件。
· 支持检测工程工作,持续改进安全监控能力。
· 进行威胁分析,并在调查期间与事件响应团队协作。
· 开发和维护运营安全指标、仪表盘和报告。
云安全架构
· 审查云架构,在设计和实施阶段提供安全指导。
· 与工程团队合作,将安全设计原则嵌入云服务和基础设施中。
· 评估新技术和云服务的安全风险和合规要求。
· 支持在云原生和容器化环境中实施安全控制。
身份与访问管理
· 审查并监控云环境中的特权访问。
查看英文原文
About Us
Visa is a world leader in payments technology, facilitating transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and territories, dedicated to uplifting everyone, everywhere by being the best way to pay and be paid.
At Visa, you'll have the opportunity to create impact at scale — tackling meaningful challenges, growing your skills and seeing your contributions impact lives around the world.
Join Visa and do work that matters – to you, to your community, and to the world. Progress starts with you.
Job Description
The Senior Cloud Security Analyst is responsible for securing Pismo's cloud-native infrastructure, platforms, and services through the design, implementation, monitoring, and continuous improvement of cloud security capabilities. This role works closely with Engineering, Site Reliability Engineering (SRE), Infrastructure, IAM, Security Architecture, Product Security, and Governance, Risk & Compliance teams to ensure cloud environments remain secure, resilient, and aligned with internal security standards, Visa requirements, and regulatory obligations.
The successful candidate will serve as a subject matter expert in cloud security, security monitoring, threat detection, identity and access management, infrastructure security, and security automation. The role supports strategic security initiatives while helping maintain compliance with industry standards and client commitments
Key Responsibilities:
- Monitor and improve the security posture of cloud environments and supporting infrastructure.
- Investigate and respond to security alerts, suspicious activities, and cloud security incidents.
- Support detection engineering efforts and continuously improve security monitoring capabilities.
- Conduct threat analysis and collaborate with incident response teams during investigations.
- Develop and maintain operational security metrics, dashboards, and reporting.
Cloud Security Architecture
- Review cloud architectures and provide security guidance during design and implementation phases.
- Partner with engineering teams to embed secure-by-design principles into cloud services and infrastructure.
- Assess new technologies and cloud services for security risks and compliance requirements.
- Support implementation of security controls across cloud-native and containerized environments.
Identity & Access Management
- Review and monitor privileged access within cloud environments.
- Support implementation of least-privilege and role-based access control models.
- Identify excessive permissions and work with stakeholders to remediate access risks.
- Collaborate with IAM teams to strengthen authentication, authorization, and credential management processes.
Vulnerability & Configuration Management
- Identify, prioritize, and track remediation of cloud infrastructure vulnerabilities.
- Perform security assessments of cloud resources and configurations.
- Validate compliance with secure configuration baselines and security standards.
- Work with engineering teams to remediate security findings within agreed timelines.
Security Automation & DevSecOps
- Support implementation of automated security controls within CI/CD pipelines.
- Enhance infrastructure-as-code security practices and automated compliance monitoring.
- Develop security use cases and automation playbooks to improve operational efficiency.
- Participate in initiatives leveraging AI and automation to improve security operations and risk management activities.
Compliance & Risk Management
- Support audits, certification programs, and client security assessments.
- Provide technical evidence and documentation for compliance initiatives, including ISO 27001, SOC 1, SOC 2, PCI DSS, and other applicable frameworks.
- Conduct cloud security risk assessments and support remediation planning.
- Assist with implementation and validation of security controls required by internal policies and regulatory requirements.
Cross-Functional Collaboration
- Partner with Security Architecture, Infrastructure, Engineering, Product, and Compliance teams to drive security improvements.
- Participate in cloud security projects and strategic security initiatives.
- Contribute to security awareness and knowledge-sharing activities.
- Mentor junior analysts and support development of cloud security capabilities across the organization.
This is a remoteposition. A remote position does not require job dutiesbeperformed within proximity of a Visa office location. Remotepositions maybe requiredto be present at a Visa office with scheduled notice.
Qualifications
Basic Qualifications:
· 5+ years of relevant work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8+ years of relevant work experience.
Preferred Qualifications:
- 5+ years of relevant work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8+ years of relevant work experience.
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field.
- Minimum 5 years of experience in Cloud Security, Cybersecurity, Security Engineering, Infrastructure Security, or Security Operations.
- Hands-on experience securing AWS cloud environments, including network security, IAM, encryption, logging, monitoring, and security services.
- Experience implementing and operating cloud security controls across at least one major cloud platform:
- Amazon Web Services (AWS)
- Microsoft Azure
- Google Cloud Platform (GCP)
- Strong understanding of cloud-native security principles, including:
- Identity and Access Management (IAM)
- Key Management and Encryption
- Network Segmentation and Security
- Container and Kubernetes Security
- Infrastructure as Code (IaC)
- DevSecOps practices
- Experience with cloud security monitoring, threat detection, incident response, and vulnerability management.
- Experience conducting cloud security assessments, risk assessments, and security control reviews.
- Experience supporting Information Assurance (IA), audit readiness, compliance assessments, and control validation activities.
- Knowledge of security frameworks and standards including ISO 27001, PCI DSS, SOC 1, SOC 2, CIS Controls, and NIST Cybersecurity Framework.
- Strong communication, stakeholder management, and technical documentation skills.
- Experience with multiple cloud providers (AWS, Azure, and/or GCP).
- AWS Certified Security – Specialty.
- AWS Solutions Architect Associate/Professional.
- Microsoft Certified: Azure Security Engineer Associate.
- CISSP, CCSP, CISM, CRISC, or GIAC certifications.
- Experience within banking, payments, fintech, or other highly regulated industries.
- Experience supporting PCI DSS, PCI PIN Security, SOC, ISO 27001, and regulatory examinations.
Visa is an EEO Employer
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.
Originally posted on Himalayas