Job Description
The successful candidate will join Global Information Security and will be responsible for development, leadership, and implementation of the Cyber Security Engineering program. This person will lead a team of high performers which have responsibility for the planning & building of Visa’s Perimeter Security technologies and environments. In addition to staff development and talent management, he/she will provide technical guidance to individual contributors.
This role must instill a culture that works toward the highest standards in security engineering while ensuring that business requirements are understood and adhered to and security risks in new and existing infrastructure are properly understood and mitigated.
Responsibilities
Provide leadership in the innovation of bleeding-edge security technologies and utilizing a risk-based approach to properly test and introduce them into the overall environment.
Build and develop a talented team of technology professionals for this core security engineering function to include selection, goal setting, annual reviews, and career development.
Lead global projects, develop timelines, manage project teams, and driver deliverables on time and on budget.
Provide engineering support from the proof of concept phase to deployment and sustained engineering for multiple security detection and alerting tools, including:
Firewalls
Intrusion Protection/Detection Systems
Web Proxies
Web Application Firewalls
DDoS mitigation
Work closely with other network and security teams within Visa, maintaining up to the minute information about the underlying network and security requirements to make sure the security tool deployments are operating effectively.
Build systems to automate deployment, configuration, and reduce human error for repeatable and well understood tasks.
Develop self-service portals for common security functions and empowering users to get work done quickly while still ensuring strong security practices.
Work with cyber security and risk management teams to achieve Global Information Security program objectives.
Implement simplified security metrics approach that enables executive leaders, line managers, and operational staff to quickly take action on security related risks.
Collaborate with all internal and 3rd party security and audit teams to implement security controls that will protect the Visa brand from real or perceived security breaches.
Work alongside a world-class credible and high performance security team comprised of engineering, operations and consultative internal advisory professionals globally.
Effectively manage reported system, application and device vulnerabilities and through remediation and maintenance in adherence with incident response policies.
Develop and optimize processes to improve security threat identification and remediation
Maintain active understanding of industry practices for threat analytics and incident response.
Qualifications
10 years plus in technology, information security, and/or network administration
Minimum of 5 years working on information security with a large, mission-critical enterprise environment
Strong understanding of networks, endpoint security, and application layer gateway technologies
Strong understanding of web application design, function and Secure Software Development Lifecycle
Operational knowledge of systems, databases and network security engineering best practices
In depth understanding and working knowledge of OWASP top 10
Solid problem solving and analytical skills; able to quickly digest issues encountered and recommend an appropriate solution
Experience in using scripting languages automate tasks and manipulate data. Programming experience is a plus
CISSP certification is a plus
Undergraduate degree in Computer Science, Electrical Engineering or a related technical discipline; advanced degree highly preferred