Lead Information Security Engineer

MastercardO'fallon, MO
1d

About The Position

The Lead Security Architect candidate will have a high degree of responsibility and will work closely with Network and Security Engineering, Cloud Security, and Enterprise Application teams to design, build and deliver technology solutions and drive alignment to Mastercard policies and standards. This person will research areas of risk and influence changes to policies and technical standards as well as technology requirements for future security services. The role requires the ability to influence and collaborate across a diverse group of internal stakeholders, effectively managing multiple priorities, demands, and possess a deep understanding of networks and systems in both on-premises and cloud environments. In this role, the Lead Security Architect will: - Manage diverse security consulting engagements that include the development and analysis of solution designs, software business cases, implementation plans, and network changes. - Analyze new and existing technologies and provide recommendations for areas of security risk and alignment to Mastercard’s policies and technical standards. - Solid understanding and working knowledge of system design processes with experience developing designs, defining technical requirements, developing analyses of alternatives, and system architectures. - Provide guidance for technical teams in defining secure network and system designs and configurations. - Perform security and threat assessments by identifying inherent risks, exposures, and mitigating controls. - Lead the development of technical security requirements ensuring appropriate stakeholders are engaged, requirements are updated, prepared for Governance reviews, and published. - Analyze the security posture of commercial and open source applications to ensure the use cases align with Mastercard’s security policies standards. - Collaborate with other corporate security teams to evaluate new technologies, defining security requirements, performing proof of concept testing, and engaging with vendors. - Hands-on experience developing concepts of operations and formal procedures for managing systems, developing security use cases, standardizing engineering processes, and developing processes for security operations. Must be able to develop process flow diagrams and narratives with experience in implementing processes in a workflow management solution.

Requirements

  • Experience performing security risk assessments and system configuration audits in an enterprise environment to identify weaknesses and policy non-compliance
  • Experience operating an enterprise network including building servers in an on-premises or cloud environment
  • A high desire to develop technical and security expertise and have a passion to learn about new technologies, and progressively takes initiative to develop that expertise
  • Working knowledge and application of NIST Security Publications, PCI-DSS, and industry standards for hardening systems and software
  • Solution design and engineering experience in one or more security domains including Identity & Access Management, Network Security, Application Security, Cryptography, Security Assessment and Testing, Security Operations, and Secure Software Development
  • Working experience with firewalls and access control lists
  • Experience developing assessment reports, analyses of alternatives, or comprehensive IT solution designs

Nice To Haves

  • Experience with software defined networking concepts and continuous integration and delivery solutions
  • A degree in Computer Science or Engineering.
  • Security industry certifications such as CISSP, GCIH, or OSCP
  • Previous experience as a PCI QSA

Responsibilities

  • Manage diverse security consulting engagements that include the development and analysis of solution designs, software business cases, implementation plans, and network changes.
  • Analyze new and existing technologies and provide recommendations for areas of security risk and alignment to Mastercard’s policies and technical standards.
  • Solid understanding and working knowledge of system design processes with experience developing designs, defining technical requirements, developing analyses of alternatives, and system architectures.
  • Provide guidance for technical teams in defining secure network and system designs and configurations.
  • Perform security and threat assessments by identifying inherent risks, exposures, and mitigating controls.
  • Lead the development of technical security requirements ensuring appropriate stakeholders are engaged, requirements are updated, prepared for Governance reviews, and published.
  • Analyze the security posture of commercial and open source applications to ensure the use cases align with Mastercard’s security policies standards.
  • Collaborate with other corporate security teams to evaluate new technologies, defining security requirements, performing proof of concept testing, and engaging with vendors.
  • Hands-on experience developing concepts of operations and formal procedures for managing systems, developing security use cases, standardizing engineering processes, and developing processes for security operations. Must be able to develop process flow diagrams and narratives with experience in implementing processes in a workflow management solution.

Benefits

  • Mastercard benefits for full time (and certain part time) employees generally include: insurance (including medical, prescription drug, dental, vision, disability, life insurance); flexible spending account and health savings account; paid leaves (including 16 weeks of new parent leave and up to 20 days of bereavement leave); 80 hours of Paid Sick and Safe Time, 25 days of vacation time and 5 personal days, pro-rated based on date of hire; 10 annual paid U.S. observed holidays; 401k with a best-in-class company match; deferred compensation for eligible roles; fitness reimbursement or on-site fitness facilities; eligibility for tuition reimbursement; and many more.
  • Mastercard benefits for interns generally include: 56 hours of Paid Sick and Safe Time; jury duty leave; and on-site fitness facilities in some locations.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service