Senior Cybersecurity Analyst
Tech Stack / Keywords
Firma i stanowisko
Visa is a world leader in payments technology, facilitating transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and territories. The role is within Cybersecurity's Global Business-to-Business Identity & Access Management (B2B IAM) team, which secures access to Visa's business portals and associated services worldwide.
Wymagania
Basic Qualifications:
- 5+ years relevant work experience with a Bachelor's Degree, or 2+ years with an advanced degree, or 8+ years relevant experience.
- Familiarity with web/application servers: Apache HTTP Server, Microsoft IIS, Apache Tomcat; exposure to NGINX or JWS a plus.
- Knowledge of LDAP concepts and basic directory administration.
- Fundamentals of Linux and basic Windows Server administration.
- Experience with monitoring/logging tools like Splunk, Elastic/Kibana, Grafana/Prometheus.
- Understanding of SSO/federation standards (SAML 2.0, OpenID Connect, OAuth 2.0) and MFA concepts.
- Working knowledge of software development practices including Git, pull requests, scripting (Shell/Python), and issue tracking in Jira.
- Strong collaboration and communication skills with globally distributed teams.
- Awareness of release/change management and deployment patterns.
Preferred Qualifications:
- Experience integrating SSO or configuring IAM platforms (preferably ForgeRock AM/DS).
- Exposure to API authentication concepts (OAuth 2.0 flows, JWT) and mTLS basics.
- Familiarity with web/security architecture fundamentals (TLS, reverse proxies, load balancers, WAF).
- Basic CI/CD and infrastructure as code exposure (Jenkins, GitHub Actions, GitLab CI, Terraform).
- Experience writing small automations in Shell, Python, or Groovy.
- Interest in using analytics/ML to automate repetitive IAM tasks.
- Awareness of incident/change/problem management processes.
- Understanding of GDPR, PCI DSS, and ISO/IEC 27001 compliance requirements.
Obowiązki
Essential Functions:
- Support SSO integrations on ForgeRock Access Management (AM) applying standard configurations, running integration tests, and triaging issues.
- Assist in setting up and maintaining federation using SAML 2.0, OpenID Connect, and OAuth 2.0 including managing metadata, certificates/keys, and troubleshooting.
- Contribute to authorization policy updates and build adaptive authentication trees in ForgeRock AM.
- Participate in AM environment operations including applying configuration changes, hardening, tuning, and executing supervised production changes.
- Validate and tune session management configurations and promptly raise risks and anomalies.
- Assist with ForgeRock Directory Services (DS) routine health checks, replication verification, user sync jobs, and backups.
- Maintain LDAP settings, write simple automation scripts in Shell/Python.
- Execute performance and load test plans, collect results, and highlight bottlenecks.
- Deploy and manage ForgeRock web/app server agents across IIS, Apache HTTP Server, NGINX, Apache Tomcat, Node.js, and JBoss Web Server (JWS).
- Implement and support Multi-Factor Authentication (MFA) rollouts and assist troubleshooting.
- Provide L2 operational support on rotation, document knowledge base articles, and escalate appropriately.
- Produce and maintain clear documentation including change records, runbooks, and build/ops notes.
- Collaborate with globally distributed teams, participate in change/release cadences, and escalate urgent issues.
This is a hybrid position with at least 3 days in office per week as confirmed by the Hiring Manager.
Inne informacje
Visa is an Equal Employment Opportunity Employer. Qualified applicants will receive consideration without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, or protected veteran status. Visa also considers applicants with criminal histories consistent with EEOC guidelines and local laws.
Visa
62 aktywne oferty