Role at a glance
- Job function
-
Software Engineering & IT Cybersecurity
- Salary
- Not Disclosed
- Location
- India, Indiana, United States
- Work arrangement
- Hybrid
- Employment
- Full-time
- Experience
- 2+ years of relevant work experience and a Bachelor’s degree OR 5+ years of relevant work experience.
- Education
- a Bachelor’s degree
Spotted an issue?
We’ll check it against the original posting.
Role Summary
The Cybersecurity Analyst will join Visa’s Cyber Engineering & Operations security team and focus on identifying, prioritizing, and remediating vulnerabilities across cloud-native infrastructure, containerized workloads, and application environments. The role combines security engineering and development to automate vulnerability management, improve scanning coverage, and help engineering teams reduce risk.
What You'll Do
- Drive discovery, assessment, prioritization, and remediation of vulnerabilities across cloud, container, and host infrastructure.
- Manage the lifecycle of security scanning, including deployment, configuration, coverage expansion, policy tuning, upgrades, and...
- Conduct vulnerability assessments, analyze scan results, validate findings, eliminate false positives, and provide remediation guidance.
- Integrate vulnerability scanning into CI/CD pipelines by establishing security gates, image policies, and automated checks.
- Automate vulnerability triage, enrichment, ticketing, remediation orchestration, and metrics reporting.
- Track and report vulnerability metrics, SLAs, and remediation trends for engineering, security, and compliance stakeholders.
Generated from the employer's posting. Verify important details before applying.
View full postingQualifications
Basic qualifications include 2+ years of relevant work experience with a Bachelor’s degree or 5+ years of relevant work experience. Required capabilities include vulnerability management, security engineering, Python automation, container and Kubernetes security, cloud security, vulnerability scanning, risk prioritization, CI/CD security integration, AI/ML or LLM-based security workflows, and stakeholder communication.
Required
- 2+ years of relevant work experience and a Bachelor’s degree OR 5+ years of relevant work experience
- Hands-on experience in vulnerability management, application security, or a related security engineering role
- Proficiency in Python for scripting, automation, and API integrations
- Experience with containers, including image scanning, hardening, and registry security
- Working knowledge of Kubernetes architecture, workloads, security configurations, and common misconfigurations
- Experience securing and assessing AWS, Azure, or GCP environments, including Identity and Access Management concepts
- Experience with vulnerability scanning and management tools such as Prisma Cloud, Qualys, Tenable, Rapid7, Wiz, Trivy, or Grype
- Understanding of CVE/CVSS scoring, exploitability analysis, and risk-based prioritization
Preferred
- 3 or more years of work experience with a bachelor’s degree or 2 or more years of work experience with an Advanced Degree
- Relevant certifications such as CKS, CKA, AWS/Azure/GCP security certifications, OSCP, GCSA, or CISSP
- Experience working in the payments industry or other regulated environments such as financial services, healthcare, or government
- Familiarity with securing AI/ML systems, such as OWASP Top 10 for LLMs
Original job description
Content provided by the employer
Original job description
Content provided by the employer
About Us
Visa is a world leader in payments technology, facilitating transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and territories, dedicated to uplifting everyone, everywhere by being the best way to pay and be paid.
At Visa, you'll have the opportunity to create impact at scale — tackling meaningful challenges, growing your skills and seeing your contributions impact lives around the world.
Join Visa and do work that matters – to you, to your community, and to the world. Progress starts with you.
Job Description
Cybersecurity is at the beating heart of our culture. Our diligence and expertise are what make us the undisputed leader in electronic payments. We've made it our priority to create a top-tier Cyber Engineering & Operations team, poised to defend us against any potential cyber threats. We're looking for those of you who are inherently driven and fascinated by the art and science of Cybersecurity. We'll arm you with the very best tools and tech so that you can deliver top notch results.
We are seeking a Cybersecurity Analyst with a strong development background to join our security team. In this role, you will drive the identification, prioritization, and remediation of vulnerabilities across our cloud-native infrastructure, containerized workloads, and application environments. You will combine hands-on engineering skills with security expertise to build automation, improve scanning coverage, and partner with engineering teams to reduce risk at scale.
Essential Functions:
- Be a vulnerability management champion by driving the discovery, assessment, prioritization, and remediation of vulnerabilities across cloud, container, and host infrastructure at Visa.
- Own the lifecycle management of security scanning including deployment, configuration, coverage expansion, policy tuning, upgrades, and ongoing optimization to ensure accurate and complete scanning across all environments.
- Conduct and facilitate vulnerability assessments, scan result analysis, and finding validation throughout the development and deployment lifecycle; eliminate false positives and provide clear, actionable remediation guidance to development and platform teams.
- Integrate vulnerability scanning into CI/CD pipelines in conjunction with engineering teams to enable shift-left security, establishing security gates, image policies, and automated checks that prevent vulnerable images from reaching production.
- You'll be working on securing and assessing various platforms and technologies which protect Visa's environments from vulnerabilities and attacks like:
- Cloud platforms like AWS, Azure, GCP, including cloud-native services, IAM, and CSPM practices
- Container and orchestration technologies like Docker, Kubernetes, container registries, admission controllers, and runtime security
- Vulnerability management tools like Qualys, Prisma Cloud, Tenable, Rapid7, Wiz, Trivy, Grype
- CI/CD and DevOps tooling like Jenkins, GitHub Actions, GitLab CI, Artifactory
- Programming and automation languages like Python, Bash, Go, and REST API integrations
- AI/ML and LLM-based tools like AI coding assistants, automated triage engines, and security copilots
- Threat and exploitability intelligence sources like EPSS, CISA KEV, CVE/CVSS, vendor advisories
- Automate security tools and processes ensuring innovation and advancement strategies that keep pace in the areas of vulnerability triage, enrichment, ticketing, remediation orchestration, and metrics/reporting.
- Apply risk-based prioritization leveraging threat intelligence, exploitability data, and asset criticality to provide recommended countermeasures or mitigating controls that reduce risk to an acceptable and manageable level.
- Track and report on vulnerability metrics, SLAs, and remediation trends for engineering leadership, security management, and compliance stakeholders.
- Help business and product teams achieve and maintain various compliance certifications like PCI DSS, SOC 2, ISO 27001, etc.
Visa requires at least 3 days in office, expectations of these days will be confirmed by your Hiring Manager.
Qualifications
Basic Qualifications:
- 2+ years of relevant work experience and a Bachelor’s degree OR 5+ years of relevant work experience. Masters graduates must have 2+ years of relevant work experience to qualify.
Preferred Qualifications:
- 3 or more years of work experience with a bachelor’s degree or 2 or more years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD).
- Have hands-on experience in vulnerability management, application security, or a related security engineering role, with a strong development background.
- Have proficiency in Python for scripting, automation, and API integrations to streamline security workflows.
- Have solid experience with containers (Docker or similar), including image scanning, hardening, and registry security.
- Working knowledge of Kubernetes, including architecture, workloads, security configurations, and common misconfigurations.
- Experience securing and assessing cloud environments (AWS, Azure, or GCP), including cloud-native services and Identity and Access Management concepts.
- A proven record of accomplishment working with vulnerability scanning and management tools such as Prisma Cloud, Qualys, Tenable, Rapid7, Wiz, Trivy, Grype, etc.
- Strong understanding of CVE/CVSS scoring, exploitability analysis, and risk-based prioritization.
- Familiarity with CI/CD tooling (e.g. Jenkins, GitHub Actions, GitLab CI) and integrating security scanning into pipelines to support shift-left practices.
- Have experience applying AI/ML or LLM-based tools to security workflows, such as automated vulnerability triage, false-positive reduction, or remediation recommendations, and familiarity with securing AI/ML systems (e.g. OWASP Top 10 for LLMs).
- Relevant certifications such as CKS, CKA, AWS/Azure/GCP security certifications, OSCP, GCSA, or CISSP.
- Experience working in the payments industry or other regulated environments such as financial services, healthcare, or government.
- Strong communication and stakeholder management skills, with the ability to explain technical risk to both engineers and non-technical audiences.
Visa is an EEO Employer
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.
About the company
Visa
Large Enterprise
Visa is a global leader in digital payments, facilitating transactions between consumers, merchants, and financial institutions across more than 200 countries. Through its extensive network, Visa provides secure and reliable payment solutions that empower businesses and individuals to transact seamlessly anywhere in the world. With a strong focus on innovation, Visa continues to develop cutting-edge technologies that enhance the user experience and promote financial inclusion. As a trusted partner in the payments ecosystem, Visa plays a crucial role in driving economic growth and enabling commerce on a global scale.