Cloud Security Architect - Currencycloud

  • Full-time
  • Job Family Group: Technology and Operations

Company Description

Visa is a world leader in digital payments, facilitating more than 215 billion payments transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable and secure payments network, enabling individuals, businesses and economies to thrive.

When you join Visa, you join a culture of purpose and belonging – where your growth is priority, your identity is embraced, and the work you do matters. We believe that economies that include everyone everywhere, uplift everyone everywhere. Your work will have a direct impact on billions of people around the world – helping unlock financial access to enable the future of money movement.

Join Visa: A Network Working for Everyone.

Currencycloud was acquired by Visa in December 2021. At Currencycloud, you can work from home, or visit our lush offices in London, Cardiff or Amsterdam. You'll need to be based in either the UK or Netherlands for this role, and have the necessary work permissions.

Job Description

  • Lead security initiatives, security architecture reviews , threat modelling for Currencycloud and Visa.
  • Perform threat modelling and security reviews on applications/infrastructure and provide guidance on effective countermeasures.  

  • Be a subject matter expert and provide security guidance and recommendations to technology and business teams. 

  • Contribute to Visa’s security policies, standards, and guidelines related to information security. 

  • Perform dynamic and manual security assessments on web applications, mobile applications, thick clients to identify security gaps and provide recommended counter measures.

  • Improve on existing framework, processes, methodologies related to due diligence and integration of entities. 

  • Enhance the security posture of the entity hosted in public cloud or on-prem environment

  • Understand the broad regulatory landscape affecting Visa business areas, remain current with emerging regulatory sentiments as well as solution trends in the marketplace

Qualifications


• 9 or more years of relevant work experience with a Bachelor’s Degree or 7 or more years of relevant work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD , PhD)
• Hands on experience performing penetration testing is a great plus.
• Experience in designing security controls for complex web applications with backend services, API Gateways, Identity and Access Management Services, Data Protection technologies, Security Information Event Management etc.
• Strong knowledge of deep design review and Secure Development Lifecycle methodologies, Agile based methodologies, middleware platforms, development platforms.
• Extensive knowledge in OWASP Web Top 10 and CWE Top 25
• An individual with experience of working on large scale cloud-based services (including SaaS, PaaS, IaaS) and understanding of security challenges in deploying Cloud Applications
• Technical experience with security technologies including, but not limited to, intrusion detection/prevention, event correlation, firewall, antivirus, anti-spam, policy enforcement, patch/configuration management, usage monitoring, audit, secure application development, etc.
• Nice to have or willing to obtain industry standard certifications like CISSP, GIAC- GWAPT, GPEN, OSCP.
• Strong written and oral communication skills to document reports on assessments and communicate potential weaknesses to the IT team or management
• Experience in cybersecurity in the financial sector is a plus.

Additional Information

Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.

Privacy Policy