 
      Description
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Lead Information Security Engineer Who is Mastercard?Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Mission First, People Always
As Corporate Security, we are responsible for keeping Mastercard safe and secure from cyber and physical threats, and it is our people on the frontlines who make this happen every day.
By taking care of our people, their wellbeing, and career development, we provide them the necessary tools and environment to ensure the success of our mission.
Overview
The Business Security Enablement (BSE) team is looking for a Lead Security Engineer to join our team in support of the Transfer Solutions program and working out of our Pune office in India. The ideal candidate needs a high level of expertise in information security and secure engineering disciplines to advise product and operational teams on how to securely design applications and services following industry best practices.
The Role
• As the Program Security Engineer, you will report to the Business Security Officer, you will be relied upon to serve as a technical security expert supporting the development and sustainability of secure programs, products, and practices.
•You will be the subject matter expert in application security delivering tactical mentorship and strategic consulting in terms of building a security-focused culture, secure development best practices, and application security awareness as well as contextualizing the threat landscape and associated risks for the Program.
• Apply knowledge of security principles, theories and concepts to business and development life cycle.
• Take a Lead Security Position in larger, more complex initiatives for DevOps, IaaS/PaaS, Cloud and CI/CD strategic importance (e.g., global initiatives, cross functional/cross geographies).
Work closely with developers to evaluate business requests to determine feasibility.
• Provide and recommend optimal solutions to meet security and regulatory requirements in the design of new/enhanced systems.
• Ensure established security policies and standards are observed on projects.
• Active and critical participant in the design and implementation of the various program initiatives including the integration and migrations.
•Advise stakeholders on the implementation of MA Standards & Security Engineering principles.
• Proactively work to find solutions that align with business needs while operating within Mastercard's risk tolerance that is scalable and can be applied across multiple programs and platforms. This requires the ability to collaborate with cross-functional teams and regularly articulate and communicate to diverse audiences and properly translate security and risk management terminology into business terms and recommend alternative solutions to these stakeholders.
• Responsible for all project documentation, including maintaining technical documents and business requirements
• Maintaining an understanding of security policies and regulatory compliance (i.e. ISO,PCI, GDPR etc.)
• Strong communication skills and technical skills with the ability to communicate between business and technical teams
• Responsible for understanding security policies and industry best practices & compliance
• Responsible for reviewing and providing feedback to management for improvements to front line metrics to ensure controls are being met as defined
All About You
• Degree in computer science/information security or work experience equivalent of 8+ years in information security disciplines
• CISSP or Industry recognized security certification desired.
• Advanced knowledge of security protocols and standards, experience with software, security architectures and security designs.
• Technical experience with Programming Languages
• Security design and implementation of web-based security architecture for secure on-line transactions
• Knowledge or technical security experience in Cryptography
• Working knowledge of symmetric and asymmetric encryption, Digital Certificates, SSL, VPN, IPSec, development of DMZ's and other security tools and processes such as privileged identity management, file integrity, audit, logging and IDS/IPS.
• Experience with automation of content federation and life-cycle management including OS images, binary packages and configuration management.
• Intermediate to advanced hands-on scripting experience.
• Moderate to extensive hands-on administrative and security experience with Linux systems
NICE Framework References
This Mastercard role shares knowledge, skills, and abilities with related NICE work roles.
• SP-DEV-002, OPM622, Secure Software Assessor
• SP-ARC-002, OPM652, Security Architect
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:
• Abide by Mastercard's security policies and practices.
• Ensure the confidentiality and integrity of the information being accessed.
• Report any suspected information security violation or breach.
• Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard's security policies and practices; 
- Ensure the confidentiality and integrity of the information being accessed; 
- Report any suspected information security violation or breach, and 
- Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines. 
Apply on company website
 
       Find Connections via Linkedin
  Find Connections via Linkedin 
             
       
       
      