Cybersecurity Analyst-Third Party Technology risk management

  • Full-time
  • Job Family Group: Technology and Operations

Company Description

 

Common Purpose, Uncommon Opportunity. Everyone at Visa works with one goal in mind – making sure that Visa is the best way to pay and be paid, for everyone everywhere. This is our global vision and the common purpose that unites the entire Visa team. As a global payments technology company, tech is at the heart of what we do: Our VisaNet network processes over 13,000 transactions per second for people and businesses around the world, enabling them to use digital currency instead of cash and checks. We are also global advocates for financial inclusion, working with partners around the world to help those who lack access to financial services join the global economy.

Visa’s sponsorships, including the Olympics and FIFA™ World Cup, celebrate teamwork, diversity, and excellence throughout the world. If you have a passion to make a difference in the lives of people around the world, Visa offers an uncommon opportunity to build a strong, thriving career. Visa is fueled by our team of talented employees who continuously raise the bar on delivering the
convenience and security of digital currency to people all over the world. Join ur team and find out how Visa is everywhere you want to be.

“Visa will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of Article 49 of the San Francisco Police Code.”

 

Job Description

Third Party Technology Risk Management leads risk management activities around third parties and suppliers for Visa.  Members of this team work across a number of stakeholders who work with third parties to ensure appropriate processes, procedures and controls are adequately designed, implemented or remediated to meet Visa Key Control requirements, and mitigate any risks that are associated with third parties. The success of this unit requires dedicated professionals who possess the analytical, relationship and communications skills needed to form highly reliable risk management strategies to meet Visa and regulatory requirements. As an Associate Analyst, the team member will be responsible for providing risk management advice for third party relationships.

 Key responsibilities:

• Perform risk/security assessments of Suppliers and Third Party relationships to identify, validate and remediate risks.  This may include performing   interviews, document design assessments and walkthroughs of Key Controls.
• Perform ongoing monitoring of Suppliers and Third Party to review compliance against compliance and regulatory requirements.
• Perform onsite assessments of Third Parties against Key Controls and industry security standards.
• Perform risk/security assessments for special projects involving Third Parties.
• Perform PCI-related readiness activities to ensure compliance with PCI requirements
• Exhibit pragmatism in formulating process remediation and implementation strategies, defining work tracks, and submitting assessment findings and   recommendations.
• Develop trusted relationships with Business Partners, Visa IT Executives, Security & Compliance Officers and other team members to gain consensus   approvals on strategies, recommendations, findings and project plans etc.
• Have an understanding of the broad regulatory landscape affecting Visa business areas; remain current with emerging regulatory sentiments as well as   solution trends in the marketplace.
• Have an understanding of emerging technologies including but not limited to mobile and cloud technology.
• Contribute towards process improvement of team processes, templates and tools.
 

Qualifications

1.    Bachelor’s degree in Computer Science, Information Systems, Management Information Systems or other related field

2.    Four to five years of experience in IS Audit/GRC domains

3.    Basic knowledge of regulatory requirements e.g. PCI-DSS, GLBA, FFIEC

4.    Basic understanding of information security best practices such as ISO 27001 and risk management terminology

5.    Excellent communicator (verbal and written) with strong client relationship focus

6.    CISA/CISSP

7.    Have a passion to learn and the willingness to be a controls specialist and gain exposure to a wide range of information security areas

8.    Flexibility to respond to different needs

9.    Experience in Project Management

Additional Information

       

1.    Specialization in information security, cyber security or risk management as part of the Bachelor’s degree

2.    Professional experience in audit, information security or information technology consulting or risk management

3.    Basic information security certification

4.    Basic understanding of information security related tools such as SIEM, IPS, Firewalls and DLP tools

Privacy Policy