Visa is looking to proactively identify weaknesses in its security posture, perform architectural assessments, and recommend necessary controls to protect Visa from adversarial threats.
Requirements
- Experience in one or more programming languages (Java, JavaScript, etc.).
- Experience in one or more scripting languages (Python, Bash, etc.).
- Knowledge or understanding of security architecture and coding best practices.
- Familiarity with OWASP Top 10, SANS Top 25, and threat modeling frameworks.
- Knowledge of cryptographic concepts and secure communication protocols.
- Experience with one or more application security tools including: SAST, SCA, and DAST
- Understanding of networking fundamentals, OSI model, and TCP/IP stack.
Responsibilities
- Develop AI based agents and automation to preform threat model, secret management and application security
- Be a product security champion by driving Security Architecture and design/implementation/optimization for Web, API, and Mobile backend applications.
- Conduct and facilitate security reviews, threat modeling, and deep design reviews throughout the development lifecycle.
- Develop security mechanisms to protect applications from attacks across various platforms and technologies, including: Databases including MySQL, MS SQL, Couchbase, Cassandra.
- Develop security mechanisms to protect applications from attacks across various platforms and technologies, including: Programming languages like Java, JavaScript, GoLang.
- Identify and analyze system and application vulnerabilities, recommending countermeasures and mitigating controls to reduce risks.
Other
- Students pursuing a Bachelor's or Master's Degree with a graduation date in December 2026-August 2027
- Strong communications skills, specifically, the absence of repeated grammatical or typographical errors, clear and concise written and spoken communications that demonstrate professional judgment.
- The ability to take on challenges and address problems head-on
- Strong ability to collaborate
- Highly driven, resourceful and results oriented