Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cybersecurity Analyst – Audit & Compliance (GRC) image - Rise Careers
Job details

Cybersecurity Analyst – Audit & Compliance (GRC)

Company Description

Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive while driven by a common purpose – to uplift everyone, everywhere by being the best way to pay and be paid.

Make an impact with a purpose-driven industry leader. Join us today and experience Life at Visa.

Job Description

This Cybersecurity Analyst position will serve as part of Visa's Cybersecurity Audit and Compliance (A&C) function within the Cybersecurity Governance Risk and Compliance and M&A Integration (GRC) team, reporting to Director/Sr. Director. This position will provide oversight, coordination, and delivering the activities that support successful internal audits, external audits and compliance, regulatory activities, and external customer/client requests while effectively balancing the individual elements of these activities.

 

Essential Functions:

  • Provide oversight, coordination, and delivering the activities that support successful internal audits, external audits and compliance, regulatory activities, and external customer/client requests.

  • Assist with validating the ongoing effectiveness of Cybersecurity controls across Visa (both automated and manual), working with a variety of control owners within the Cybersecurity organization, and evaluating control design and standards in a variety of program areas. You will be assessing the security on various platforms and technologies from attacks like:

    • Payment processing platforms, Payment Wallet solutions, Consumer facing applications, COTS products deployed in house,

    • SaaS, PaaS, and IaaS public cloud offerings

    • Mainframe, Linux, Windows, and virtual machines

    • IDS, SIEM, WAF, Firewalls

    • HSMs, Tokenization systems, data encryption solutions

    • APIs, Web technologies,

    • Relational and noSQL databases

    • Access Management solutions

  • Stay up to date on new security tools & techniques in the information security space

  • Good understanding of regulatory standards that will help Cyber teams to achieve various compliance certifications like PCI, FFIEC, RBI, etc.

  • Influence beyond immediate team and with those of more experience/seniority

  • Develop data points into Information Security risk management reporting activities, including dashboards, metrics, and executive reporting content

  • Update Cybersecurity leadership on the status of technology risk and compliance issues based on assessment results and information from various monitoring and control systems.

  • Develop dashboards and automate tasks to increase efficiency and reduce redundancy.

This is a hybrid position. Hybrid employees can alternate time between both remote and office. Employees in hybrid roles are expected to work from the office 2-3 set days a week (determined by leadership/site), with a general guidepost of being in the office 50% or more of the time based on business needs.

Qualifications

Basic Qualifications:
•2+ years of relevant work experience and a Bachelors degree, OR 5+ years of relevant work experience. Masters graduates must have 2+ years of relevant work experience to qualify.

Preferred Qualifications:
•3 or more years of work experience with a Bachelor’s Degree or more than 2 years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD)
•3-5 years of work experience in Information Security, Audit, Risk, and/or Compliance
oOpen to experience in other relevant fields (e.g., finance, business administration, information technology, etc.) if candidate can demonstrate relevancy to this Information security-based role
•2+ years direct participation and experience across common industry security policy areas, including, but not limited to ISO, NIST, COSO, COBIT, PCI, FFIEC, SOX, SSAE16/ISAE3402, SOC 2 and others
•Experience working with multiple individuals on internal and external delivery
•Ability to synthesize a variety of data points, problem solve and formulate comprehensive and effective execution and risk mitigation plans
•Exceptional communication skills - both written and verbal to support compliance and certification audits
•Must be extremely flexible and able to manage multiple tasks and priorities on very tight deadlines.
•Experience in Audit/Compliance/Regulatory discussions and proactive readiness activities in a large global financial institution or a matrix organization.
•Providing ongoing gap analysis of current policies, practices, and procedures as they relate to established guidelines outlined by Industry standards
•Conducting in-depth technical reviews of enterprise systems to identify the appropriate mitigation strategies required to bring these systems into compliance with established policy and industry guidelines.
•Understanding of creating, testing, and deploying automated workflows using Microsoft Power Automate, including integrating Power Automate with other Microsoft 365 applications and third-party services.
•Working knowledge of scripting and programming languages, such as Java, Python, PowerShell
•Proficiency in SQL for querying and managing relational databases
•Demonstrated ability to create, manage, and share interactive dashboards and reports using Microsoft PowerBI or other data analysis tool.
•Working knowledge in extracting, cleaning, and processing data from various sources including databases, APIs, and flat files.
•Understanding of database structures, principles, and optimization techniques.
•Understanding of data warehousing concepts and cloud platforms (e.g., Azure, AWS).
•Experience in Risk and Control Self-Assessment activities related to Cybersecurity function.
•CISSP, CISA, CISM, PCI QSA/ISA Certifications preferred

Additional Information

Work Hours: Varies upon the needs of the department.

Travel Requirements: This position requires travel 5-10% of the time.

Mental/Physical Requirements: This position will be performed in an office setting.  The position will require the incumbent to sit and stand at a desk, communicate in person and by telephone, frequently operate standard office equipment, such as telephones and computers.

Visa is an EEO Employer.  Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.  Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.

Visa will consider for employment qualified applicants with criminal histories in a manner consistent with applicable local law, including the requirements of Article 49 of the San Francisco Police Code.

U.S. APPLICANTS ONLY: The estimated salary range for a new hire into this position is 105,800.00 to 149,550.00 USD per year, which may include potential sales incentive payments (if applicable). Salary may vary depending on job-related factors which may include knowledge, skills, experience, and location. In addition, this position may be eligible for bonus and equity. Visa has a comprehensive benefits package for which this position may be eligible that includes Medical, Dental, Vision, 401 (k), FSA/HSA, Life Insurance, Paid Time Off, and Wellness Program.

Average salary estimate

$127675 / YEARLY (est.)
min
max
$105800K
$149550K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cybersecurity Analyst – Audit & Compliance (GRC), Visa

Are you ready to make a significant impact in the world of cybersecurity? Join Visa as a Cybersecurity Analyst – Audit & Compliance in vibrant Austin, TX! At Visa, we are committed to empowering individuals and businesses globally through our innovative payment solutions. In this dynamic role, you'll be an integral part of our Cybersecurity Audit and Compliance (A&C) team, focused on governance, risk, and compliance (GRC). Your responsibilities will include overseeing and coordinating activities to ensure successful internal and external audits, compliance checks, and more. You’ll work closely with various teams, validating the effectiveness of cybersecurity controls across diverse platforms, from payment processing systems to cloud offerings. Keeping up to date with the latest security tools and regulatory standards will be key, as you help Visa navigate compliance certifications. You're not just a cog in the wheel; your insights will drive our risk management reporting activities. This hybrid role allows you to work flexibly between home and the office, fostering a balanced work environment. If you have a passion for cybersecurity and are excited about staying at the forefront of technology risks, this is the perfect opportunity to elevate your career within a reputable global institution like Visa. Why wait? Join us and experience Life at Visa today!

Frequently Asked Questions (FAQs) for Cybersecurity Analyst – Audit & Compliance (GRC) Role at Visa
What are the key responsibilities of a Cybersecurity Analyst – Audit & Compliance at Visa?

As a Cybersecurity Analyst – Audit & Compliance at Visa, your primary responsibilities include overseeing internal and external audits, ensuring compliance with regulatory standards, and providing detailed reporting on technology risks. You will collaborate with various cybersecurity teams, evaluate the effectiveness of controls, and work on aligning Visa's processes with established cybersecurity frameworks. Your role also involves developing data management strategies and automating tasks to enhance efficiency in compliance activities.

Join Rise to see the full answer
What qualifications do I need to become a Cybersecurity Analyst – Audit & Compliance at Visa?

To qualify for the Cybersecurity Analyst – Audit & Compliance position at Visa, you'll need a Bachelor’s degree and at least 2 years of relevant experience, or 5 years of equivalent experience. Preferred candidates will have a Master’s degree and 3 years of experience in information security or compliance roles. Knowledge of regulatory standards, excellent communication skills, and experience with security policies, such as PCI and ISO, will be highly valuable.

Join Rise to see the full answer
What skills are essential for a successful Cybersecurity Analyst – Audit & Compliance at Visa?

Essential skills for succeeding as a Cybersecurity Analyst – Audit & Compliance at Visa include strong analytical abilities to assess cybersecurity controls, exceptional communication skills to support audit activities, and hands-on experience with data management tools. Proficiency in programming or scripting languages like Python or PowerShell is also beneficial, as is knowledge of frameworks like NIST or COBIT. You should be adaptable and capable of working under tight deadlines, managing multiple priorities effectively.

Join Rise to see the full answer
Does the role of Cybersecurity Analyst – Audit & Compliance at Visa involve collaboration with other teams?

Absolutely! Collaboration is a crucial part of the Cybersecurity Analyst – Audit & Compliance role at Visa. You will work closely with various cybersecurity teams, control owners, and stakeholders across the organization to validate control effectiveness, assess compliance readiness, and contribute to risk management reporting. This interdisciplinary approach enhances Visa's overall cybersecurity posture and enables effective problem-solving and execution.

Join Rise to see the full answer
What are the growth opportunities for a Cybersecurity Analyst – Audit & Compliance at Visa?

As a Cybersecurity Analyst – Audit & Compliance at Visa, you will have numerous opportunities for career growth. The role provides exposure to diverse cybersecurity frameworks and compliance standards, allowing you to develop specialized expertise. Visa supports professional development through training, certifications, and advancement opportunities within the organization, making it an excellent career path for aspiring cybersecurity leaders.

Join Rise to see the full answer
Common Interview Questions for Cybersecurity Analyst – Audit & Compliance (GRC)
How do you evaluate the effectiveness of cybersecurity controls?

In evaluating the effectiveness of cybersecurity controls, I typically assess the design and implementation of these controls against established benchmarks and regulatory requirements. I would conduct thorough reviews and use various testing methodologies to ensure they function as intended. Gathering data from internal audits, SIEM tools, and stakeholder feedback can also provide insights into the operational performance of these controls.

Join Rise to see the full answer
Can you explain your experience with regulatory standards such as PCI or NIST?

Certainly! In my previous roles, I've worked extensively with regulatory standards like PCI and NIST. I've actively participated in compliance assessments and audits, ensuring that our processes aligned with the requirements. My experience includes conducting gap analyses, developing remediation plans, and educating team members about the importance of maintaining compliance within the organization.

Join Rise to see the full answer
How would you approach an internal audit as a Cybersecurity Analyst?

As a Cybersecurity Analyst, I would approach an internal audit with a structured plan. First, I would review the scope and objectives of the audit to ensure clarity on what needs to be assessed. Then, I would collaborate with key stakeholders to gather necessary documentation and data, perform risk assessments, and analyze controls. Throughout the audit process, maintaining open communication with the audit team and presenting findings clearly will also be essential to facilitate effective discussions.

Join Rise to see the full answer
Describe a time you had to influence a decision or change within a team.

In a previous role, I identified a gap in our compliance reporting process that required immediate attention. I gathered data and presented a solid business case to my team and management, illustrating how a streamlined approach would reduce redundancy and improve efficiency. By conducting a demo of the proposed solution, I gained buy-in from my peers, which led to a successful implementation of the changes and significantly enhanced our reporting accuracy.

Join Rise to see the full answer
How do you stay updated on the latest cybersecurity trends and threats?

To stay updated on the latest cybersecurity trends and threats, I actively follow reputable industry blogs, subscribe to cybersecurity newsletters, and participate in online forums. Additionally, I engage in webinars and industry conferences to network with other professionals. Continuous education is vital in this field, and I strive to acquire certifications that keep my skills current and relevant.

Join Rise to see the full answer
What tools do you use for data analysis in cybersecurity?

In cybersecurity, I often use a combination of tools such as Microsoft Power BI for data visualization, SQL for querying relational databases, and Excel for data manipulation. For security analysis, tools like SIEM for logging and monitoring, and vulnerability assessment tools, help me understand the threat landscape and identify potential risks efficiently.

Join Rise to see the full answer
Explain how you prioritize tasks in a fast-paced environment.

In a fast-paced environment, I prioritize tasks based on urgency and impact. I regularly assess deadlines and the potential consequences of each task. Using ticketing systems or project management tools helps me organize my workflow effectively. If priorities shift, I remain adaptable and communicate with my team to ensure alignment based on the team's goals.

Join Rise to see the full answer
What do you believe is the biggest challenge facing cybersecurity today?

The biggest challenge facing cybersecurity today is the constantly evolving threat landscape. As technologies advance, so do the tactics employed by cybercriminals. Organizations must balance innovation and security, which requires proactive risk management, continuous training, and a culture of security awareness. Understanding emerging technologies and their vulnerabilities is essential to staying one step ahead of potential threats.

Join Rise to see the full answer
How do you handle conflicts during audits or compliance discussions?

Handling conflicts during audits or compliance discussions requires a balanced approach. I focus on understanding differing perspectives and addressing concerns perceptively. Open communication is key; I ensure all parties feel heard and respected. If needed, I facilitate constructive discussions and work collaboratively towards a resolution that aligns with our compliance objectives while keeping the organization's best interests in mind.

Join Rise to see the full answer
What motivates you to work in cybersecurity audit and compliance?

I'm motivated by the critical role cybersecurity plays in protecting organizations and consumers. Working in audit and compliance allows me to contribute to safeguarding vital information and ensuring compliance with regulations. The continuous learning, challenges, and the opportunity to collaborate with skilled professionals in the field inspire me to stay passionate about my work and drive improvements in cybersecurity practices.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Visa Remote New York, NY
Posted 7 days ago
Photo of the Rise User
Posted 7 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Continental Remote Strada Avram Imbroane, Timișoara, Romania
Posted 6 days ago
Photo of the Rise User
Twilio Remote Remote - British Columbia, Canada
Posted 4 days ago
Inclusive & Diverse
Social Impact Driven
Collaboration over Competition
Growth & Learning
Maternity Leave
Paternity Leave
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Posted 7 days ago
Photo of the Rise User
Posted yesterday

Visa Inc. operates as a payments technology company worldwide. The company facilitates commerce through the transfer of value and information among consumers, merchants, financial institutions, businesses, strategic partners, and government entiti...

2083 jobs
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
March 22, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Cincinnati just viewed Data Scientist at Apex Systems
Photo of the Rise User
Someone from OH, Mansfield just viewed POS Install Tech at TEKsystems
Photo of the Rise User
10 people applied to ITSM Specialist at Datacom
Photo of the Rise User
Someone from OH, Dublin just viewed Sr. Manager UX Design Research at Visa
Photo of the Rise User
Someone from OH, Columbus just viewed Case Manager at Release Recovery
Photo of the Rise User
54 people applied to Jr SOC Analyst at IBM
Photo of the Rise User
Someone from OH, Cincinnati just viewed Recruiting Coordinator (Contractor) at Anduril Industries
Photo of the Rise User
Someone from OH, Dublin just viewed Field Support Technicians - (Phoenix) at Nordstrom
Photo of the Rise User
Someone from OH, Stow just viewed IT Asset administrator at Ergomed
Photo of the Rise User
Someone from OH, Loveland just viewed Senior Buyer (wholesale) (m/f/d) at ABOUT YOU SE & Co. KG
Photo of the Rise User
Someone from OH, Cincinnati just viewed Summer 2025 Internship: Talent at Hylant
C
Someone from OH, Cincinnati just viewed Senior Instructional Designer at CXG
Photo of the Rise User
Someone from OH, Youngstown just viewed Compliance Specialist, Anti-Corruption Program at ServiceNow
Photo of the Rise User
Someone from OH, Cleveland just viewed Finance Intern - Summer 2025 at Spectrum
Photo of the Rise User
Someone from OH, Cleveland just viewed QC Engineer at QODE
Photo of the Rise User
Someone from OH, Cleveland just viewed Getinge is hiring: UI/UX Developer in Streetsboro at Getinge
Photo of the Rise User
Someone from OH, Westerville just viewed Data analyst | Mid at Nord Security
Photo of the Rise User
Someone from OH, North Canton just viewed Researcher-NBC Sports at NBCUniversal