Cybersecurity Engineer

1 month ago


Singapur, Singapore Visa Full time
Job Description

The role will work as a member of the Global Cybersecurity organisation - Security Architecture team, which is focused on improving technology and architecture decision-making through collaboration with management, staff and customers on technology strategy, enterprise architecture, and investments in strategic security technology.

 

The individual, with a broad cybersecurity plus systems and network architecture knowledge and experience, will deliver security assessments while supporting our direction, lifecycle management and leadership for security architecture and technology. The individual will perform a key role in Security assessments while supporting various critical initiatives through the identification, analysis, evaluation, lifecycle management and adoption of security architectures and technologies. The Security Architect will work closely with other security functions and will provide guidance to ensure that there is coordination with their activities in technology choices. In addition, the Security Architect will be involved with education and mentorship, supporting the delivery framework, development of technical architecture and associated documentation, as well as advanced topics of research.

 

Essential Functions:

  • Be a product security champion by driving Security Architecture and Design, implementation and optimization for Web, API and Mobile backend applications across Visa.

  • Applying security design principles to develop security solutions architectures

  • Engage in the initial requirements definition including analysis of threats and risks and alignment with Visa security, Engineering, IT and Architecture standards.

  • Conduct and facilitate security reviews, threat modelling including deep design reviews throughout the development lifecycle.

  • Facilitate 'table-top'/red-team/scenario analysis exercises in conjunction with other SMEs. Plan the resolution of any identified vulnerabilities/issues.

  • You’ll be working on enabling/building security controls which protect the applications from attacks on various platforms and technologies, like:

    • Linux, Windows, VMWare, Openstack, SDN, Public cloud like AWS, Google

    • Cybersecurity tools like IDS, SIEM, Tripwire, Tanium, Netwitness, Netflow, WAF

    • HSMs, Tokenization systems, data encryption solutions from Safenet, Vormetric etc

    • Web technologies like HTTP, SOAP, REST services, AJAX

    • Databases like Oracle, MS SQL, Redis, Cassandra

    • Programming languages like Java, C, C++, .Net, Javascript, GoLang, ErLang, etc

    • Caching services like Hazelcast, Coherence, and messaging systems like Kafka, MQ

    • Web Access Management solutions like Forgerock, Siteminder, Custom/in-house Security Frameworks

  • Help business and product team to achieve various compliance certifications like PCI, FFIEC  etc.

  • Identify and analyse system and application level vulnerabilities to provide recommended counter measures or mitigating controls that reduce risk to an acceptable and manageable level.

  • Driving security technologies evaluations, proof-of-concepts, and production pilots

  • Building strong cross-organisational relationship through integration with the teams, in order to effectively influencing staff across the IT organisation and product groups

  • Managing the lifecycle of security technologies

  • Staying current with security technologies, as well as development techniques and methodologies in order to make recommendations for use based on business value

  • Maintaining oversight of the design and implementation of IT systems to ensure appropriate and effective security controls are included.

  • Contribute to the definition of overall IT architecture from a cybersecurity lens.

This is a hybrid position. Hybrid employees can alternate time between both remote and office. Employees in hybrid roles are expected to work from the office 2-3 set days a week (determined by leadership/site), with a general guidepost of being in the office 50% or more of the time based on business needs.


Qualifications

Basic Qualifications:
• 2+ years of relevant work experience and a Bachelor’s degree, OR 5+ years of relevant work experience

Preferred Qualifications:
• 3 or more years of work experience with a Bachelor’s Degree or more than 2 years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD)
• Significant Cybersecurity, Architecture and Design experience in Networks, Data Centre Systems, and Cloud Infrastructure and Platforms (IaaS security, PaaS security)
• Strong experience in threat-modelling of complex systems
• Comprehensive Cybersecurity consulting and security assessment experience in a relevant industry
• Experience in delivering comprehensive architecture specifications for complex security solutions
• Experience with creating or contributing to technical documentation: product documentation, technology and systems/network architecture, and or technical whitepapers.
• Strong working experience with the following security technologies: Firewalls, Intrusion Detection/Prevention Systems, Vulnerability Scanning, WAF, Wireless LAN, NAC, DLP, DDoS Mitigation, WAN security, SIEM, Content Filtering, Cloud Security gateways, Secure Proxies, SSL crypto solutions
• Experience with open source based security technologies
• Strong knowledge and working experience with SDN (Software-Defined Networking), NFV (Network Function Virtualization), and network virtualization/overlays
• Strong hands on cloud architecture, with knowledge and working experience in: OpenStack, Cloud Foundry, Server Virtualization hypervisors (KVM, Xen, Hyper-V, VSphere), Linux Containers technologies (Docker, Mesos, Kubernetes), and distributed computing
• Programming/coding and DevOps experience is a plus (Python, Ansible, Chef)
• Solid understanding of and ability to speak authoritatively to security principles in areas such as network, systems, virtualization, cloud technologies, access control.
• Proven ability to troubleshoot and resolve complex technical issues at Expert level
• Experience integrating multiple vendor products
• Preferred certifications include: CISSP, OpenStack Certification, TOGAF, SABSA
• Hands-on experience and strong understanding of technology and enterprise security
• Strong understanding of relevant Industry Principles, Best Practices, and Standards, such as PCI, NIST, ISO, IEEE, and TCG
• Experience working in a global organisation with the need to deliver regional requirements
• Strong cross-domain and cross-functional knowledge that will enable design of the best possible security technology solutions.
• Has solid understanding of the SSDLC process and follows the process to effectively develop and design solutions.
• Skilled to liaise with and influence multiple stakeholders in a matrix environment
• Ability to function as an individual contributor and mentor/leader detached from the corporate environment



Additional Information

Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.



  • Singapur, Singapore ST Engineering Full time

    ST Engineering is a global technology, defence and engineering group with offices across Asia, Europe, the Middle East and the U.S., serving customers in over 100 countries.Our Cyber TeamWe are an industry leader in cybersecurity with over two decades of experience, delivering a holistic suite of trusted cybersecurity solutions to empower cyber resilience...


  • Singapur, Singapore Xcellink Pte Ltd Full time

    We are currently seeking a talented Cybersecurity Consultant to join our Enterprise Operations team.The Role:As a Cybersecurity Consultant, you will be responsible for providing expert advice and guidance on cybersecurity matters to clients. Your key responsibilities will include: Evaluating clients' current cybersecurity posture and identifying...

  • Senior QA Engineer

    2 months ago


    Singapur, Singapore Acronis Full time

    Acronis is revolutionizing cyber protection—providing natively integrated, all-in-one solutions that monitor, control, and protect the data that businesses and lives depend on. We are looking for a Senior QA Engineer to join our mission to create a #CyberFit future and protect all data, applications and systems across any environment. ...


  • Singapur, Singapore ST Engineering Full time

    Title: Cybersecurity Project Manager Job ID: Location: ST Engineering Jurong East Bui, SG Description: Responsibilities Must be able to apply effective project management methodologies and ensure appropriate action applies in corrective needs Responsible for the development of project plans, activities and schedule Responsible for...


  • Singapur, Singapore Careers@Gov Full time

    [What the role is] Assistant/Deputy Manager (Cybersecurity Engineer)/ IT Services [What you will be workinng on] Manage and drive the Security and Compliance programme to ensure compliance with security standards across enterprise IT infrastructure and applications. Plan, create, implement and promote cybersecurity processes, policies, frameworks...


  • Singapur, Singapore Wildlife Reserves Singapore Full time

    Mandai Wildlife Group is dedicated to caring for the planet and protecting animals and nature. Conservation education is intrinsic in all interactions with the Group, to inspire action for a healthier world. Mandai Wildlife Group is the steward of Mandai Wildlife Reserve, a unique wildlife and nature destination in Singapore that is home to world-renown...

  • Junior QA Engineer

    2 months ago


    Singapur, Singapore Acronis Full time

    Acronis is revolutionizing cyber protection—providing natively integrated, all-in-one solutions that monitor, control, and protect the data that businesses and lives depend on. We are looking for a Junior QA Engineer to join our mission to create a #CyberFit future and protect all data, applications and systems across any environment. ...


  • Singapur, Singapore PSA International Full time

    As a key member of PSA International's global team, you will play a crucial role in shaping the company's cybersecurity strategy and protecting its digital assets. With a strong background in cybersecurity technology and incident response, you will be responsible for managing the company's cybersecurity technology, engineering, and advisories, as well as...


  • Singapur, Singapore ST Engineering Full time

    Title: Vice President/ Head, Cybersecurity, DPS Job ID: Location: ST Engineering Hub, SG Description: The Job: Establish and implement cybersecurity policies, standards and procedures on project networks to ensure compliance Ensure timely conduct of audit framework, monitoring and examining audit findings to propose action plans to address...


  • Singapur, Singapore Careers@Gov Full time

    [What the role is] Cybersecurity is a critical pillar of CAAS’ work. To ensure that the Singapore air hub remains safe and secure for air travel, every mission-critical system that supports air hub operations must be well-protected and resilient against rapidly evolving, and increasingly complex, cybersecurity threats. [What you will be working on] We...


  • Singapur, Singapore Acronis Full time

    Acronis is revolutionizing cyber protection—providing natively integrated, all-in-one solutions that monitor, control, and protect the data that businesses and lives depend on. We are looking for a Director Product Management to join our mission to create a #CyberFit future and protect all data, applications, and...


  • Singapur, Singapore PSA International Full time

    As a member of #TeamPSA, you will be part of a diverse and global team at the forefront of creating cargo solutions to enable more agile, resilient and sustainable supply chains. Experience first-hand and drive supply chain transformation from Singapore and through PSA’s global network of ports, logistics and supply chain solutions. Alongside, we can...

  • Senior Product Manager

    4 months ago


    Singapur, Singapore Acronis Full time

    Acronis is revolutionizing cyber protection—providing natively integrated, all-in-one solutions that monitor, control, and protect the data that businesses and lives depend on. We are looking for a Senior Product Manager to join our mission to create a #CyberFit future and protect all data, applications and systems across any environment. The ideal...

  • VP/AVP, Cybersecurity

    7 months ago


    Singapur, Singapore TEMASEK Full time

    Overview of the Team You'll be working in the Cybersecurity Department under the Governance, Risk, and Compliance unit, which reports directly to the CISO. The increasing reliance of businesses on technology means that cybersecurity and IT risk management is a strategically important function within Temasek. The continuous enhancement and...


  • Singapur, Singapore Infosys Singapore & Australia Full time

    Key Responsibilities : Candidate should have Bachelor's degree in Computer Engineering with 10 -15+ years of relevant experience in Cyber Security. Supports defining, enhancing, evolving, and demonstrating company’s point of view and delivery approach of cybersecurity-focused services. Should have experience handling Issue and Exception handling process...


  • Singapur, Singapore ST Engineering Full time

    Title: Assistant Principal Engineer Job ID: Location: ST Engineering Jurong East Bui, SG Description: ST Engineering  is a global technology, defence and engineering group with offices across Asia, Europe, the Middle East and the U.S., serving customers in more than countries. The Group uses technology and innovation to solve real-world...

  • Application Engineer

    1 month ago


    Singapur, Singapore InsiderSecurity Full time

    Be the technical expert of InsiderSecurity solutions for our users Achieve customer success by understanding user requirements and supporting users to achieve strong cybersecurity with our solutions Advise customers on the deployment architecture and best practices for our products Deploy and configure our solutions in customer data centers or cloud...

  • Product Manager

    3 months ago


    Singapur, Singapore Flexxon Full time

    At FLEXXON, we foster a culture of innovation, creativity, and inclusivity. You'll have the opportunity to work alongside talented individuals who are passionate about making a difference. We offer a dynamic and supportive work environment that encourages professional growth and recognizes your achievements.If you are excited about the prospect of taking on...


  • Singapur, Singapore Careers@Gov Full time

    [What the role is] Cybersecurity is a critical pillar of CAAS’ work. To ensure that the Singapore air hub remains safe and secure for air travel, every mission-critical system that supports air hub operations must be well-protected and resilient against rapidly evolving, and increasingly complex, cybersecurity threats. CAAS is looking for a strong and...


  • Singapur, Singapore TEMASEK Full time

    Overview of the team You'll be working in the Cybersecurity Department under the Defence and Resilience unit. You will play a critical role in developing and executing a comprehensive cyber resilience programme and establishing dynamic platforms for the firm as the cyber centre of excellence, driving cyber awareness and education, and vulnerability...