Lead Cybersecurity Engineer

Visa Visa · Fintech · Bellevue, WA

Lead Cybersecurity Engineer at Visa focused on designing, building, and operating AI-driven security platforms. The role involves applying GenAI and autonomous agents to security challenges like misconfiguration analysis, threat triage, and remediation, with a strong emphasis on automation and cloud security in a multi-cloud environment.

What you'd actually do

  1. Design, develop, and operate large‑scale cyber security platforms that deliver detection, prevention, and response capabilities across cloud and hybrid environments.
  2. Build cloud‑native, API‑first security services using Python and modern web service frameworks.
  3. Develop and expand security integration frameworks to interconnect SIEM, CSPM, CNAPP, IAM, network security, and threat intelligence platforms.
  4. Drive security automation to minimize manual intervention and accelerate incident response workflows.
  5. Design and implement GenAI‑powered security workflows, including: Autonomous agents for cloud misconfiguration analysis, policy validation, and remediation recommendations

Skills

Required

  • Cloud security engineering
  • Python
  • API-driven architectures
  • Automation
  • GenAI solutions
  • Autonomous agents for cloud security
  • Cloud security controls (Azure/AWS)
  • Infrastructure-as-Code (Terraform)
  • Policy-as-Code
  • Guardrails
  • Threat detection and response
  • Cloud Security Posture Management (CSPM/CNAPP)
  • Technical leadership

Nice to have

  • Go
  • LLM
  • agent orchestration
  • AI governance frameworks
  • Wiz
  • Prisma Cloud
  • Microsoft Defender for Cloud
  • ADX
  • Sumo Logic

What the JD emphasized

  • AI-driven security platforms
  • GenAI and autonomous agent technologies
  • intelligent automation
  • autonomous agents
  • AI-assisted threat triage
  • agent orchestration
  • AI governance frameworks
  • secure, compliant, and auditable use of GenAI
  • automation-first mindset
  • Python-based services
  • API-driven architectures
  • automation
  • cloud security engineering
  • threat intelligence enrichment
  • policy-as-code
  • multi-cloud ecosystem
  • security automation
  • incident response workflows
  • remediation recommendations
  • root-cause analysis
  • applied threat intelligence
  • agentic systems
  • remediation actions
  • LLM
  • agent orchestration
  • AI governance frameworks
  • data handling
  • prompt safety
  • access controls
  • model risk considerations
  • Infrastructure-as-Code (IaC)
  • automation frameworks
  • Terraform
  • Policy-as-Code
  • Guardrails
  • GitOps-based promotion pipelines
  • secure remote state management
  • drift detection
  • time-to-detect
  • time-to-remediate
  • threat intelligence ingestion
  • correlation
  • sensor enrichment
  • contextual risk scoring
  • cloud security posture management (CSPM/CNAPP)
  • Wiz
  • Prisma Cloud
  • Microsoft Defender for Cloud
  • Cloud firewalls
  • security groups
  • DDoS protection
  • Network proxies
  • Cloud-native SIEM platforms
  • ADX
  • Sumo Logic
  • technical leadership
  • proof-of-concepts (POCs)
  • new technologies
  • tools
  • architectures
  • feasibility
  • production adoption
  • emerging cloud, security, and AI technologies
  • applicability
  • technical leader
  • mentor
  • engineering and security maturity
  • project planning
  • cost estimation
  • timelines
  • risk assessment
  • security initiatives
  • Python (preferred)
  • Go

Other signals

  • GenAI
  • autonomous agents
  • cloud security
  • automation