The Business Security Enablement (BSE) team is looking for a Lead Security Engineer to join our team in support of the Transfer Solutions program and working out of our Pune office in India. The Business Security Enablement guild is a worldwide team of information security experts focused on helping Mastercard achieve its goals by ensuring security is at the heart of everything we do. The ideal candidate needs a high level of expertise in information security and secure engineering disciplines to advise product and operational teams on how to securely design applications and services following industry best practices.
The Role As the Program Security Engineer, you will report to the Business Security Officer, you will be relied upon to serve as a technical security expert supporting the development and sustainability of secure programs, products, and practices. You will be the subject matter expert in application security delivering tactical mentorship and strategic consulting in terms of building a security-focused culture, secure development best practices, and application security awareness as well as contextualizing the threat landscape and associated risks for the Program. Active and critical participant in the design and implementation of the various program initiatives including the integration and migrations. Advise team on the implementation of MA Standards & Security Engineering principles. Proactively work to find solutions that align with business needs while operating within Mastercard s risk tolerance that is scalable and can be applied across multiple programs and platforms. This requires the ability to collaborate with cross-functional teams and regularly articulate and communicate to diverse audiences and properly translate security and risk management terminology into business terms and recommend alternative solutions to these stakeholders. Responsible for all project documentation, including maintaining technical documents and business requirements Maintaining an understanding of security policies and regulatory compliance (ie ISO,PCI, GDPR etc) Strong communication skills and technical skills with the ability to communicate between business and technical teams Responsible for understanding security policies and industry best practices & compliance Responsible for reviewing and providing feedback to management for improvements to front line metrics to ensure controls are being met as defined
All About You Degree in computer science/information security or work experience equivalent of 7-10 years in information security disciplines CISSP or Industry recognized security certification desired. Advanced knowledge of security protocols and standards, experience with software, security architectures and security designs. Technical experience with Programming Languages Security design and implementation of web-based security architecture for secure on-line transactions Knowledge or technical security experience in Cryptography Working knowledge of symmetric and asymmetric encryption, Digital Certificates, SSL, VPN, IPSec, development of DMZs and other security tools and processes such as privileged identity management, file integrity, audit, logging and IDS/IPS. Experience with automation of content federation and life-cycle management including OS images, binary packages and configuration management. Intermediate to advanced hands-on scripting experience. Moderate to extensive hands-on administrative and security experience with Linux systems
NICE Framework References This Mastercard role shares knowledge, skills, and abilities with related NICE work roles. SP-DEV-002, OPM622, Secure Software Assessor SP-ARC-002, OPM652, Security Architect
MasterCard, Wing 1, Tower A, 9th & 10th Floors, Business Bay, Survey No 103, Opposite Poona Golfs Course, Airport Road, Yerwada
Pune
Maharashtra 411006