Sr. Cybersecurity Analyst

Visa Visa · Fintech · Warsaw, Poland, Poland

This role focuses on supporting, implementing, and operating Identity and Access Management (IAM) solutions, primarily on ForgeRock, within Visa's Cybersecurity B2B IAM team. Responsibilities include managing SSO integrations, federation, authorization policies, environment operations, directory services, and MFA rollouts. The role requires collaboration with various engineering teams and adherence to regulatory obligations like GDPR, PCI DSS, and ISO/IEC 27001.

What you'd actually do

  1. Support SSO integrations on ForgeRock Access Management (AM): apply standard configs, run integration tests, and triage issues under guidance.
  2. Assist in setting up and maintaining federation using SAML 2.0, OpenID Connect, and OAuth 2.0 (manage metadata, certificates/keys, and basic troubleshooting with logs).
  3. Contribute to authorization policy updates and help build adaptive authentication trees/journeys in ForgeRock AM using approved patterns and templates.
  4. Participate in AM environment operations: follow runbooks to apply configuration changes, perform basic hardening/tuning in non‑production, execute supervised changes in production.
  5. Implement and support Multi‑Factor Authentication (MFA) rollouts, monitor success/error rates and assist with troubleshooting.

Skills

Required

  • ForgeRock Access Management (AM)
  • SAML 2.0
  • OpenID Connect
  • OAuth 2.0
  • Multi-Factor Authentication (MFA)
  • LDAP concepts
  • Linux fundamentals
  • Windows Server administration
  • Splunk or Elastic/Kibana, Grafana/Prometheus
  • Git
  • Shell scripting
  • Python scripting
  • Jira
  • GDPR
  • PCI DSS
  • ISO/IEC 27001

Nice to have

  • NGINX
  • JWS
  • API auth concepts
  • mTLS basics
  • web/security architecture fundamentals
  • CI/CD
  • infrastructure as code
  • Jenkins
  • GitHub Actions
  • GitLab CI
  • Terraform
  • incident/change/problem management processes

What the JD emphasized

  • ForgeRock
  • GDPR
  • PCI DSS
  • ISO/IEC 27001