Job Description
Join to apply for the Cybersecurity Engineer role at Visa. Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive. Make an impact with a purpose‑driven industry leader. Join us today and experience Life at Visa.
The Identity and Access Management (IAM) team is responsible for securing employee access to our core applications in the most efficient, compliant, and user‑friendly manner. Our goal is to become the gold standard for IAM worldwide. Visa’s IAM ecosystem includes a highly customized identity management platform. The team has successfully implemented many core components and is continually improving security coverage and user experience.
With additional features comes greater complexity and criticality. Join a fast‑paced, high‑performance Access Controls team. The ideal candidate will be proactive, self‑motivated, and work with teammates to manage access controls across multiple platforms—Active Directory, EntraID, Windows Servers, and automate processes. The successful candidate will aid in continuous improvement by identifying automation opportunities.
This is a hybrid position. Expected days in the office will be confirmed by your Hiring Manager.
Essential Functions
- Provide SME over IAM practices, policies, and procedures for Active Directory, Windows Systems, and Cloud Platforms.
- Implement and enforce Identity and Access Management policies in Active Directory, including access approvals, rogue access monitoring, credential strengthening, and the full lifecycle of identities and access.
- Govern access controls for cloud platforms, particularly Microsoft EntraID, including PIM, federated SSO groups, Managed IDs, and Service Principal Names across the hierarchy.
- Complete access request processing per pre‑defined procedures and Service Level Agreements. Resolve problem tickets and assist other security analysts as needed.
- Demonstrate proficiency in scripting languages such as PowerShell or Python for automating IAM processes.
- Identify opportunities to automate existing manual processes using Generative AI and scripting.
- Document access management procedures for assigned platforms, databases, and applications, keeping them up to date.
- Provide incident response and remediation for identity‑related security incidents.
- Assist with developing robust monitoring and alerting mechanisms for identity and access management activities.
- Develop new management metrics and concise reporting to support IAM activities.
- Flexibility to work after hours and weekends to accommodate maintenance windows when required.
Qualifications
Basic Qualifications:
- 2+ years of relevant work experience and a Bachelor's degree, OR 5+ years of relevant work experience.
Preferred Qualifications:
- 3+ years of work experience with a Bachelor's degree or more than 2 years with an advanced degree (e.g., Master's, MBA, JD, MD).
- Bachelor’s degree in computer science, information security, or equivalent job experience.
- 5–7 years of hands‑on experience in Cybersecurity, focusing on Identity and Access Management (IAM).
- CISSP, CCSP, and/or certifications in Azure or other Cloud Platforms highly desirable.
- Experience with Active Directory management: Security Groups, User Objects, GMSAs, Service Account Management, Keytabs.
- Hands‑on experience managing and securing Cloud environments, particularly with IAM solutions like Microsoft EntraID (formerly Azure AD).
- Good analytical and troubleshooting skills across all supported platforms and tools.
- Understanding of information security principles and IT infrastructure, including OS, applications, communications, and network protocols.
- Ability to work effectively with other functional areas and manage multiple tasks and priorities under tight deadlines.
- Strong interpersonal and collaboration skills, with the ability to develop, maintain, and foster constructive relationships.
- Dynamic, hard‑working, ambitious individual with excellent oral and written communication skills.
- Knowledge of security principles such as separation of duties (SoD) and least privilege (LP).
- Experience implementing and managing Credential Security using Azure Key Vault and AWS Secrets Manager.
- Proficiency in automating repetitive IAM processes using Generative AI and scripting languages (PowerShell or Python).
- Knowledge of automation tools and frameworks to streamline access management practices.
- Experience with SIEM, CIEM tools for security monitoring, incident response, and identity management.
Additional Information
Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, or protected veteran status. Visa will also consider qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.
Seniority Level
Mid‑Senior level
Employment Type
Full‑time
Job Function
IT Services and IT Consulting