Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Assoc. Cybersecurity Engineer image - Rise Careers
Job details

Assoc. Cybersecurity Engineer - job 3 of 4

Company Description

Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive while driven by a common purpose – to uplift everyone, everywhere by being the best way to pay and be paid.

Make an impact with a purpose-driven industry leader. Join us today and experience Life at Visa.

Job Description

As an Associate Software Security Engineer, you will be part of our Cybersecurity team to help design, enhance and build our Application Security Tools and Services in addition to supporting Visa Product Development teams in writing secure code free of Application Security Vulnerabilities in an agile development environment. You will work with colleagues, who will support and challenge you daily. You will work on designing secure web applications, unit testing, code reviews and regular check-ins to continuous integration that will become part of your DNA.

Our engineers do more than just write code:

Essential Functions

  • Help define consistent Secure Software Development Lifecycle practices for all Visa technology projects throughout the planning and delivery cycles that assure that application security risks are mitigate
  • Ensure end-to-end security of Visa products by hands on testing, hypothesizing threats, helping development teams remediating risks upfront and championing secure implementation efforts
  • Improve secure coding practices, application security requirements, automation, training, and metrics
  • Integrate threat modeling practices into the Software Development Lifecycle
  • Help build secure products and standards around emerging technologies and using existing standards and security practices
  • Perform Security Architecture and Low Level Application Security Design review involving: Data Protection, Authentication and Authorizations, Web Application Security and Network Security
  • Collaborate with product development and solution teams proactively to manage software security risk aligned with business goals
  • Collaborate with product and solution teams to achieve Cybersecurity software security program objectives
  • Manage cross-functional internal and external team collaboration, evangelization, and communications
  • Develop and optimize processes to improve software development efficiency in the consumption of security development practices

Maintain active understanding of industry practices for secure software development and incident response

This is a hybrid position. Expectation of days in office will be confirmed by your Hiring Manager.

Qualifications

Basic Qualifications:
•Bachelor's degree, OR 3+ years of relevant work experience

Preferred Qualifications:
•Bachelor's degree, OR 3+ years of relevant work experience
•You have a Bachelor degree in Computer Science or related field and 2 -3 years of Software Development Experience
•1-2 Years of Experience in Web Application Security, SSDLC and Threat Modelling with MS/BS degree in Information System management / Computer Science / Information Security or a related technical discipline
•Hands on experience with Software Development Java, C, JavaScript and HTML,
•MUST have deep understanding of OWASP Top 10 and CWE 25, with proven track record and experience in implementing and integrating remediation strategies
•Excellent understanding of web applications, web servers, layer 7 application technologies, frameworks and protocols with respect to application development and deployment
•Well versed in web application design, penetration testing, application risk assessment and risk categorization
•Operational knowledge of secure software development life cycle principles from training and requirements gathering to post-implementation operations support
•Well versed (experience preferred) with driving and implementing secure development practices into SDLC (SSDLC), ability to successfully integrate security into a developers world
•Success in implementing effective Secure SDLC frameworks across a large corporation.
•Ability to effectively present and communicate security threats and risks to ANY audience and impress upon them the mitigation techniques and strategies
•Candidates should be familiar with waterfall and agile development processes and have experience integrating secure development practices into both models.
•Deep knowledge and experience in using SAST, DAST and fuzz testing tools
•Highly effective communicator, well-honed influencing and negotiating skills
•Solid problem solving and analytical skill, able to quickly digest any issue/problem encountered and recommend an appropriate solution.
•Self-motivated, able to work independently, able to negotiate and bring consensus to diverse priorities of product development and solution teams

Additional Information

Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.

Average salary estimate

$75000 / YEARLY (est.)
min
max
$60000K
$90000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Assoc. Cybersecurity Engineer, Visa

At Visa, we're looking to add a passionate Assoc. Cybersecurity Engineer to our dynamic Cybersecurity team in Bangalore, India. If you're eager to dive into the world of cybersecurity and make a genuine impact, then this could be the perfect fit for you! In this role, you'll collaborate closely with colleagues to design and enhance Application Security Tools and Services, ensuring that our products are built with security in mind from the ground up. You'll take the lead in defining consistent Secure Software Development Lifecycle practices, making sure that application security risks are identified and mitigated effectively. The work here is particularly rewarding as you directly contribute to improving secure coding practices and help various development teams secure their code against vulnerabilities. From web application design to regular check-ins on code quality, your expertise will significantly shape our security landscape. You'll also engage in hands-on testing and threat modeling, championing a culture of security across products. With a firm grasp of the OWASP Top 10, you will not only evaluate risks but actively help implement solutions. Your skills in Java, C, JavaScript, and HTML will be highly valuable as you navigate through our software development processes. Join us at Visa, where innovation meets security, and let's create a safer digital payment network together!

Frequently Asked Questions (FAQs) for Assoc. Cybersecurity Engineer Role at Visa
What are the responsibilities of an Assoc. Cybersecurity Engineer at Visa?

As an Assoc. Cybersecurity Engineer at Visa, you will work closely with various development teams to implement secure coding practices, conduct security testing, and enhance our Secure Software Development Lifecycle (SSDLC) processes. Your responsibilities will also include threat modeling, participating in security architecture reviews, and collaborating on security-related communication across cross-functional teams.

Join Rise to see the full answer
What qualifications are necessary for the Assoc. Cybersecurity Engineer position at Visa?

To qualify for the Assoc. Cybersecurity Engineer position at Visa, candidates should possess a Bachelor's degree in Computer Science or a related field, alongside 2-3 years of software development experience. Familiarity with web application security and threat modeling is essential, along with hands-on experience in languages such as Java, C, and JavaScript. Knowledge of OWASP standards is also highly valued.

Join Rise to see the full answer
What technical skills are important for an Assoc. Cybersecurity Engineer at Visa?

An Assoc. Cybersecurity Engineer at Visa should be well-versed in software development processes and possess strong expertise in securing web applications. Familiarity with penetration testing, risk assessment, and the application's secure development lifecycle is crucial. Proficiency with SAST, DAST, and fuzz testing tools will also be a significant asset.

Join Rise to see the full answer
How does the Assoc. Cybersecurity Engineer contribute to Visa's product security?

In the role of an Assoc. Cybersecurity Engineer, you play a vital part in ensuring the end-to-end security of Visa's products. By collaborating with product development teams and integrating security protocols into every stage of the lifecycle, you will help mitigate security risks and enhance the overall integrity of our applications.

Join Rise to see the full answer
What is the work culture like for an Assoc. Cybersecurity Engineer at Visa in Bangalore?

Visa fosters a collaborative and innovative work culture where the Assoc. Cybersecurity Engineer will receive support and encouragement from their teammates. The company promotes knowledge sharing and continuous improvement, making it an ideal environment for developing new skills and advancing in your cybersecurity career.

Join Rise to see the full answer
Common Interview Questions for Assoc. Cybersecurity Engineer
Can you explain the Secure Software Development Lifecycle (SSDLC)?

In your response, begin by outlining the key phases of the SSDLC, such as planning, implementation, testing, deployment, and maintenance. Highlight how each phase integrates security practices to mitigate risks, and provide examples of tools or methodologies you might use during the lifecycle.

Join Rise to see the full answer
How do you approach threat modeling?

Discuss the importance of identifying potential threats in applications and explain a structured methodology you follow, such as STRIDE or PASTA. Illustrate with an example of a system you've modeled before and the key threats you identified.

Join Rise to see the full answer
What is the OWASP Top 10 and why is it important?

The OWASP Top 10 is a list of the most critical web application security risks. Explain each item briefly and emphasize how they guide developers in improving security practices and recognizing vulnerabilities early in the development process.

Join Rise to see the full answer
Describe your experience with code reviews.

Outline your approach to code reviews, discussing best practices such as checking for adherence to coding standards, identifying security vulnerabilities, and providing constructive feedback. Perhaps include a scenario where your review significantly improved the final code.

Join Rise to see the full answer
What tools do you prefer for static and dynamic application security testing?

Mention specific tools you have used for SAST and DAST, such as Fortify, Checkmarx, or OWASP ZAP. Explain how you utilized these tools and the insights you gained that helped mitigate vulnerabilities.

Join Rise to see the full answer
How do you handle conflicts with development teams regarding security best practices?

Discuss strategies for effectively communicating the importance of security without alienating developers. Mention the importance of collaboration and finding common ground to integrate security into the development process smoothly.

Join Rise to see the full answer
Can you provide an example of a vulnerability you discovered and how you mitigated it?

Share a specific incident where you identified a security vulnerability. Detail the steps you took to address it, such as implementing fixes, communicating the risk to stakeholders, and ensuring the issue would not recur in future developments.

Join Rise to see the full answer
What does secure coding mean to you?

Express your understanding of secure coding as practices that help prevent vulnerabilities, such as input validation, error handling, and proper authentication. You can also mention specific coding practices and how they apply to real-world examples.

Join Rise to see the full answer
How do you stay updated on the latest security trends and vulnerabilities?

Discuss the resources you check regularly such as security blogs, forums, and websites like the SANS Institute or the OWASP site. You can mention the importance of continuous learning and staying current with emerging threats and security technologies.

Join Rise to see the full answer
Why do you want to work as an Assoc. Cybersecurity Engineer at Visa?

Articulate your reasons for wanting to join Visa, such as admiration for their innovation in payment technologies, the opportunity to contribute to a secure digital ecosystem, and your enthusiasm for working within a collaborative and forward-thinking team that values cybersecurity.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Visa Remote Stockholm, Sweden
Posted 9 days ago

Step into a pivotal role at Visa as a Payments Programme Lead, driving impactful payment solutions for clients across the Nordics.

Photo of the Rise User
Posted 9 days ago

Join Visa as a Staff Data Engineer to innovate within their AI and payments technology ecosystem.

Photo of the Rise User
Posted yesterday

Join Orlando Health as a Clinical Informaticist, enhancing healthcare technologies to deliver better patient care.

Photo of the Rise User
Posted 24 hours ago

Seeking a skilled MS Dynamics CRM Architect to design robust solutions using Microsoft Dynamics 365 Customer Engagement.

Photo of the Rise User
Posted 2 days ago

An experienced Senior ERP Developer is needed to enhance Oracle ERP solutions while working remotely.

Photo of the Rise User

Join St. Jude Children's Research Hospital as a Security Awareness Analyst, where you'll empower teams to recognize and respond to security threats.

Photo of the Rise User
Highmark Health Remote PA, Working at Home - Pennsylvania
Posted 8 days ago

Join enGen as a Mainframe Systems Programmer to optimize and maintain critical mainframe systems for high availability.

Photo of the Rise User
NBCUniversal Remote St. Giles High Street,1 Central St. Giles, London, United Kingdom
Posted 10 days ago

NBCUniversal is on the lookout for a seasoned Principal Cyber Security Engineer to ensure robust security measures while designing and deploying technology across various platforms.

Photo of the Rise User
ManTech Hybrid US, Fairfax, VA; Virginia, McLean, VA
Posted 3 days ago

Seeking a Cyber Security Engineer to strengthen our incident response capabilities in a dynamic team environment.

Photo of the Rise User
Posted 5 days ago

Join CyberArk as a GRC Compliance Expert to drive compliance initiatives and support customer security assessments in a hybrid work environment.

Visa Inc. operates as a payments technology company worldwide. The company facilitates commerce through the transfer of value and information among consumers, merchants, financial institutions, businesses, strategic partners, and government entiti...

11788 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 22, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
N
8 people applied to SAP BO Admin at NXTGIG
G
Someone from OH, Cincinnati just viewed Operations Lead - AML Refresh Ops (Global Banking) at GHR
Photo of the Rise User
Someone from OH, Akron just viewed Data Scientist II at Kaiser Permanente
Photo of the Rise User
Someone from OH, Eastlake just viewed Summer Intern at Gooch & Housego
I
Someone from OH, Perrysburg just viewed CNC Manufacturing Technician at Innovance
Photo of the Rise User
82 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
78 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Lifecycle Marketing Manager at SoFi
Photo of the Rise User
Someone from OH, Cincinnati just viewed Lifecycle Marketing Manager at Caribou
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Marketing Manager at Ocorian
Photo of the Rise User
Someone from OH, Cincinnati just viewed Growth Marketing Manager at Credit Genie
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director of Product Marketing - AAA Campaigns at PrizePicks
Photo of the Rise User
Someone from OH, Cincinnati just viewed Digital Marketing Analyst, Digital Properties at Darden
Photo of the Rise User
Someone from OH, Cincinnati just viewed Growth Lead at io.net
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director of Demand Generation & Marketing at GreenPlaces
Photo of the Rise User
Someone from OH, Cincinnati just viewed Sr. Manager / Director of Demand Generation at Seesaw
Photo of the Rise User
Someone from OH, Euclid just viewed Work From Home Union Benefits Rep at Global Elite
Photo of the Rise User
19 people applied to IT Support Intern at SoundCloud