Jobs
>
Arlington

    Senior Information Security Engineer - Arlington, United States - MasterCard

    Default job background
    Description
    Our Purpose

    We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. We cultivate a culture of inclusion for all employees that respects their individual strengths, views, and experiences. We believe that our differences enable us to be a better team - one that makes better decisions, drives innovation and delivers better business results.

    Title and Summary

    Senior Information Security Engineer

    Mastercard is seeking candidates to join our Security Engineering team in Arlington, VA
    Mastercard is developing the next generation of applications and services to enable consumers and businesses to securely, efficiently, and intelligently conduct payment transactions.

    Whether through traditional retail, mobile, or e-commerce, Mastercard innovation is leading the digital convergence of traditional and emerging payments technologies across a wide variety of new devices and services.

    Can you demonstrate a high level of expertise in information security and secure development disciplines?
    Can you provide detailed guidance on securely implementing systems in public cloud environments?
    Can you advise development teams on how to securely design applications and services following industry best practices and enhance existing approaches to security engineering?
    Have you performed security analysis of mobile applications, web applications and web services and understand the threats, attacks and risks to payment applications?
    Can you analyze an application architecture to reduce the security risk to an acceptable level, while still providing beneficial functionality for the end user?

    The Role
    Provide design and architecture advice to internal teams on how to securely develop and build applications and supporting systems
    Define secure mechanisms for critical business functions in cloud environments
    Work closely with developers and evaluate business requests and proposed designs to determine feasibility; work with software development teams to define alternatives and recommend optimal solutions to meet security and regulatory requirements in the design of new enhanced systems
    Leverage security experience and knowledge within the mobile and digital commerce arena to cultivate and maintain effective working relationships with a variety of internal MasterCard stakeholders, including business owners, end-users, customers, project managers, engineers, and senior management
    Define security requirements and guidelines to ensure repeatable processes are followed by worldwide teams
    Assist in the strategy, standards, and architecture for the security aspects of the SDLC including application, mobile, web service, DevOps, cloud, and CICD efforts.

    All about You
    Strong understanding of information security, risk and data privacy within the domain of digital commerce including relevant practical experience.
    Demonstrate a broad awareness of security engineering concepts and practices across all phases of the software development lifecycle.
    Experience providing security architecture advice for web based network environments and secure communication, including mobile applications, web applications and web services.
    Knowledge and technical security experience in cryptography, including several of the following encryption: hashing, key management, digital certificates, TLS.
    Experience of continuous delivery / continuous integration processes and procedures including critical security considerations in automated workflows.
    Technical experience with Java or similar enterprise programming language, especially related to secure coding best practices.
    Demonstrated experience designing secure multi-domain Internet-facing applications.
    Demonstrate technical competency in security engineering based on hands-on experience or relevant qualifications.
    Demonstrated ability to articulate and communicate effectively to diverse audiences and properly translate security and risk management terminology into business terms, and recommend alternative solutions to these stakeholders.
    Strong verbal and written communication skills.

    NICE Framework References

    National Initiative for Cybersecurity Education (NICE) competency proficiency levels of advanced in leadership, operational, and professional, to advanced and expert in technical.

    This Mastercard role shares KSAs with related NICE work roles:

    SP-DEV-002, OPM, 622, Secure Software Assessor
    SP-ARC-002, OPM652, Security Architect
    SP-TRD-001, OPM661, Research & Development Specialist
    SP-SRP-001, OPM641, Systems Requirements Planner
    SP-SYS-001, OPM631, Information Systems Security Developer
    OV-SPP-002, OPM751, Cyber Policy and Strategy Planner

    Corporate Security Responsibility

    Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:

    Abide by Mastercard's security policies and practices;
    Ensure the confidentiality and integrity of the information being accessed;
    Report any suspected information security violation or breach, and
    Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.

    In the US, Mastercard is an inclusive Equal Employment Opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. If you require accommodations or assistance to complete the online application process, please contact and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.

    Corporate Security Responsibility

    All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
    • Abide by Mastercard's security policies and practices;
    • Ensure the confidentiality and integrity of the information being accessed;
    • Report any suspected information security violation or breach, and
    • Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
    In line with Mastercard's total compensation philosophy and assuming that the job will be performed in the US, the successful candidate will be offered a competitive base salary based on location, experience and other qualifications for the role and may be eligible for an annual bonus or commissions depending on the role. Mastercard benefits for full time (and certain part time) employees generally include: insurance (including medical, prescription drug, dental, vision, disability, life insurance), flexible spending account and health savings account, paid leaves (including 16 weeks new parent leave, up to 20 paid days bereavement leave), 10 annual paid sick days, 10 or more annual paid vacation days based on level, 5 personal days, 10 annual paid U.S. observed holidays, 401k with a best-in-class company match, deferred compensation for eligible roles, fitness reimbursement or on-site fitness facilities, eligibility for tuition reimbursement, gender-inclusive benefits and many more.

    Pay Ranges
    Arlington, Virginia: $132,000 - $212,000 USD


  • Fisher Investments Arlington, United States Full time

    It's an exciting time to be a member of the Fisher Investments Technology Department. We're investing in the future of our firm's technology and are building our team to achieve global growth. We are looking for a Senior PKI Security Engineer to support our Corporate Systems team ...


  • 3M Consultancy washington, United States

    This is a remote position. · Job Title: Senior Security Engineer. · Location: Washington, DC (Remote) · Duration: Full-Time. · Role Specific Duties: · Provide network IDS monitoring, cyber threat intelligence, security log analysis and forensics, and web application security ...


  • Meta Washington, United States

    Are you interested in solving complex problems that lead to safer experiences for people using Meta's family of apps? Do you have an adversarial mindset and are excited about investigating and analyzing potential threats? Come join us at Meta Meta is seeking a security engineerin ...


  • Calloway & Associates, Inc. Washington, United States

    CONGRESSIONAL BUDGET OFFICE · Security Operations Engineering Pre-solicitation: · Scope of work: · - _Ensure compliance with security policies, develop and update IT security documentation, provide related status_ _reports, briefings, schedules, and project plans in written form. ...


  • Federal Staffing Solutions Inc. Alexandria, United States

    We connect our employees with some of the best opportunities around. · Time and again, our employees tell us that the most important thing we offer is respect. Federal Staffing Solutions puts people to work in all types of jobs. When you work with us, you build a relationship wit ...

  • gTANGIBLE

    Security Engineer

    2 weeks ago


    gTANGIBLE Arlington, United States

    gTANGIBLE Corporation (gTC), , is a C corporation and a registered Government contractor that provides services and solutions in: · National Security Programs · Professional, Administrative, and Management Support · Mission and Warfighter Support · We are a Service-Disabled V ...


  • Gridiron IT Solutions Arlington, United States

    GridironIT is seeking a Security Engineer local to the Arlington, VA area. · 100% onsite. · TS/SCI is required. The Challenge: · Everyone knows security needs to be "baked in" to a system architecture, but you actually know how to bake it in. You can identify and implement ways t ...


  • Compass Pointe Consulting Vienna, United States

    Cloud Security Engineer · Vienna, VA – Hybrid 2/3 days in office · Responsibilities encompass collaborating with other DevOps and SysOps teams to transition public facing, on-premises applications to the cloud; securing the configuration management of the cloud infrastructure; m ...


  • Gridiron IT Solutions Arlington, United States

    GridironIT is seeking a Security Engineer local to the Arlington, VA area. · 100% onsite. · TS/SCI is required. The Challenge: · Everyone knows security needs to be "baked in" to a system architecture, but you actually know how to bake it in. You can identify and implement ways t ...

  • Crimson Enterprises

    IT Security Engineer

    3 weeks ago


    Crimson Enterprises Arden on the Severn, United States

    With more than 1,500 stores in 19 European countries, C&A is one of the leading fashion companies in Europe. C&A welcomes over two million visitors daily to its stores and offers high-quality fashion at affordable prices for the whole family. We embrace the digital transformation ...

  • NovaWorks Solutions

    Security Engineer

    3 weeks ago


    NovaWorks Solutions Germantown, United States

    We want to make a difference - are you with us? We ensure that over 80 million people in Germany can benefit from digital healthcare. Join us in shaping the healthcare system of tomorrow. · Your work area · DEMIS is the digital platform for Germany and the healthcare sector, prov ...


  • Base One Technologies Arlington, United States

    Primary Responsibilities: · • Manage multiple assignments, changing priorities, and work independently with little oversight · • Tackles large security projects, both of a technical and compliance nature. The senior engineer is expected to tackle difficult technical issues and ch ...

  • Marathon TS Inc

    Security Engineer

    3 weeks ago


    Marathon TS Inc Washington, DC, United States

    Marathon TS is looking for an Security Engineer to join our team on an effort supporting our Federal Government Client in Washington, D.C.The ISSE will be part of a team that supports mission critical applications with both obtaining and maintaining Authorization to Operate (ATO) ...


  • Cayuse Technologies Rosslyn, United States

    JOB TITLE: Senior Security Engineer (Firewall, Mobile, OGA/NGO ISA's) SALARY: $160,000 EMPLOYEE TYPE: Full-Time Salary Exempt TRAVEL REQUIRED: Yes RELOCATION: No About The Company: Cayuse Native Hawaiian Veterans (CNHV) provides innovative and flexible solutions to federal govern ...


  • Metronome LLC Arlington, United States

    Job Description Metronome LLC has an immediate need for a Senior Security Engineer for a new customer on a highly visible and strategic Cybersecurity Task Order. The Senior Security Engineer will need to be a self–starter with excellent analytical and problem–solving skills, flex ...


  • Cayuse Technologies Rosslyn, United States

    Overview Cayuse Native Hawaiian Veterans (CNHV) provides innovative and flexible solutions to federal government clients, emphasizing excellence in the Asia-Pacific region. CNHV's capabilities, market-relevant service offerings, past performance credentials, and diverse status al ...


  • Base One Technologies Arlington, United States

    Senior Security Engineer · Required Education/Experience · BS degree in Science, Technology, Engineering, Math or related field and 10–12 years of prior relevant experience with a focus on cybersecurity OR Masters with 8–10 years of prior relevant experience. Primary Responsibili ...


  • Boeing Company Arlington, VA, United States

    Job Description At Boeing, we innovate and collaborate to make the world a better place · From the seabed to outer space, you can contribute to work that matters with a company where diversity, equity and inclusion are shared values · We're committed to fostering an environment f ...


  • Amazon Arlington, United States

    The Ads Security organization at Amazon is dedicated to creating innovative technical solutions that detect, assess, and mitigate security risks within Amazons Advertising businesses. Our vision is to accelerate the development velocity of the Advertising business by ensuring tha ...


  • Metronome LLC Arlington, United States

    Job Description Metronome LLC has an immediate need for a Senior Security Engineer for a new customer on a highly visible and strategic Cybersecurity Task Order. The Senior Security Engineer will need to be a self-starter with excellent analytical and problem-solving skills, flex ...