Cybersecurity Engineer

Visa Visa · Fintech · Austin, TX

Cybersecurity Engineer focused on cloud security (AWS, Azure, GCP) and AI/LLM security integration within Visa's platform. Responsibilities include designing, implementing, and operating security controls, ensuring secure by design principles, and providing security oversight for AI-enabled capabilities, aligning LLM adoption with security controls and regulatory expectations.

What you'd actually do

  1. designing, implementing, and operating security controls that protect cloud‑native platforms and workloads across public cloud environments (AWS, Azure, GCP)
  2. partners closely with engineering, DevOps, and architecture teams to ensure cloud services are secure by design, compliant with regulatory requirements, and resilient at scale
  3. provides security oversight and engineering support for AI‑enabled capabilities used across the Pismo platform
  4. ensures that adoption of Artificial Intelligence and Large Language Models (LLMs) is aligned with Visa security controls, Pismo data‑protection principles, and global regulatory expectations

Skills

Required

  • 2+ years of relevant work experience and a Bachelors degree, OR 5+ years of relevant work experience
  • 5+ years of experience in cybersecurity, with hands‑on responsibility for cloud or platform security
  • Demonstrated experience securing production workloads across multiple cloud providers (AWS, Azure, and/or GCP)
  • Cloud Identity and Access Management (IAM), least‑privilege access, and workload identity
  • Network segmentation, service‑to‑service authentication, and mTLS
  • Cloud encryption models and key management (KMS, HSM, certificate authorities)
  • Experience with Cloud Security Posture Management (CSPM) and misconfiguration detection
  • Understanding of cloud‑native logging, monitoring, and detection capabilities
  • Kubernetes and container platforms
  • Container image scanning and runtime security
  • Infrastructure‑as‑Code (Terraform, CloudFormation, ARM)
  • Ability to embed security controls into CI/CD pipelines and platform guardrails
  • Familiarity with configuration‑drift detection and continuous compliance
  • API security (OAuth/OIDC, token‑based auth)
  • Application‑level encryption, tokenization, and hashing
  • Data protection across storage, database, and file‑system layers
  • Ability to support secure software development lifecycle (SSDLC) practices, including SAST, SCA, and SBOM
  • Working knowledge of security and compliance frameworks such as PCI DSS, ISO 27001, SOC 2, GDPR, or NIST
  • Ability to translate security findings into risk‑based recommendations for engineering and leadership
  • Experience partnering with architecture, risk, and compliance teams
  • Demonstrated hands‑on and architectural knowledge of enterprise‑grade AI and LLM platforms, including Anthropic Claude, OpenAI (ChatGPT, GPT APIs, enterprise offerings), Comparable LLM providers and managed AI services
  • Understanding of Platform security models and shared‑responsibility boundaries
  • Understanding of API‑based consumption vs managed SaaS usage
  • Understanding of Enterprise controls for data handling, logging, and access enforcement

Nice to have

  • 3 or more years of work experience with a Bachelor’s Degree or more than 2 years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD)
  • Experience operating in regulated or high‑availability environments is strongly preferred
  • Experience with cloud‑security tooling (e.g., CSPM, container security, IAM platforms)
  • Cloud or security certifications are preferred but not mandatory, including CCSK / CCSP, AWS, Azure, or GCP Security certifications, CISSP or equivalent
  • Continuous learning mindset aligned with evolving multicloud security practices

What the JD emphasized

  • Multicloud Security Expertise (Core Requirement)
  • Deep Knowledge of LLM Platforms (Mandatory)