Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Cybersecurity Engineer - Firewall Lockdown image - Rise Careers
Job details

Cybersecurity Engineer - Firewall Lockdown

Company Description

Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive while driven by a common purpose – to uplift everyone, everywhere by being the best way to pay and be paid.

Make an impact with a purpose-driven industry leader. Join us today and experience Life at Visa.

Job Description

The Firewall Lockdown team's core function is to ensure firewall rule compliance with current VISA policies, specifically Key Controls and Technical Security Requirements. We validate firewall rules to address high-risk network communications for Visa applications and processes, ensuring the firewall rules in our network environment remains non-risky / compliant with evolving network and zoning requirements.

 

A primary focus is the remediate & cleaning up and hardening of the existing firewall rules through the removal of expired rules. The team proactively identifies rules violating Visa Technical Security Requirements and inconsistent with Visa's least privilege access model. We conduct thorough traffic reviews for each violating rule and engage affected ATCs via multiple email communications. ATCs are then expected to either extend the rule's expiration, reject it, or disable it.

 

The firewall lockdown project has successfully transitioned into a BAU process, continuously addressing non-compliant rules. By comparing firewall rules against TSR, we actively manage legacy communications that may no longer meet current policy standards, ultimately fortifying Visa's network security posture.

 

Essential Functions:

  • Drive core responsibilities including, but not limited to, in-depth rule auditing, zero-hit rule cleanup, management of expiring rules, identification and mitigation of high-risk rules, resolution of non-compliant rules, and the precise remediation and modification of firewall rules, strictly adhering to established change management protocols.

  • Execute systematic and ad-hoc reviews of firewall rulesets, with a primary focus on Checkpoint and Palo Alto platforms, to ensure stringent adherence to established security policies, industry best practices, and regulatory compliance mandates.

  • Lead comprehensive firewall rule audits, proactively identifying and addressing redundant, obsolete, or overly permissive rules, and formulating actionable remediation strategies.

  • Develop and meticulously maintain comprehensive documentation for all firewall rules, encompassing their stated purpose, designated owner, and defined expiration dates. This includes fostering effective communication and collaboration with application owners to ensure alignment and accuracy.

  • Collaborate strategically with internal security and assurance teams to thoroughly comprehend compliance requirements, translating these into secure, optimized, and efficient firewall rule configurations.

  • Monitor and analyze firewall logs and security alerts to detect suspicious activities, policy violations, and potential security incidents, leveraging a strong understanding of security monitoring principles.

  • Provide expert guidance and support on firewall security best practices, robust vulnerability management strategies, and effective threat mitigation techniques.

  • Possession of demonstrable experience in troubleshooting network connectivity issues directly related to firewall rules, including those involving load balancers and other critical network infrastructure components, is a distinct advantage.

This is a hybrid position. Expectation of days in office will be confirmed by your Hiring Manager.

Qualifications

Basic Qualifications:
• 2+ years of relevant work experience and a Bachelors degree, OR 5+ years of relevant work experience. Masters graduates must have 2+ years of relevant work experience to qualify

Preferred Qualifications:
• 3 or more years of work experience with a Bachelor’s Degree or more than 2 years of work experience with an Advanced Degree (e.g. Masters, MBA, JD, MD)
• Advanced proficiency with two of Checkpoint Firewall-1, Palo Alto firewall technologies
• Ability to manage Provider-1 and/or Panorama management and logging systems
• Strong understanding of networks, security technologies, and systems technologies
• Proven ability to troubleshoot problems systematically in complex systems and network environments
• Customer focused mindset, excellent communication, interpersonal, and collaboration skills
• Experience with on and off premise DDOS solutions
• Experience with monitoring, tuning, and alerting
• Experience with server platforms, virtualization, containers, and cloud technologies
• Operational knowledge of systems, databases and network security engineering best practices
• ITIL certification preferred. Familiar with ITIL concepts such as Incident, Change, and Problem Management
• Experience with policy orchestration, compliance and automation tools (e.g. Tufin, Skybox)
• Preferred certifications include: Check Point Administrator (CCSA), Check Point Engineer (CCSE), Cisco Certified Network Associate (CCNA), Palo Alto Networks Certified Network Security Engineer (PCNSE)

Additional Information

Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.

Average salary estimate

$85000 / YEARLY (est.)
min
max
$70000K
$100000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Visa Hybrid Lehi, UT
Posted 7 days ago

Take your event management skills to the next level with Visa, a leader in payments technology, as an Event Marketing Manager.

Photo of the Rise User

As a Senior Sales/Business Development Representative at Visa, you'll play a key role in shaping demand generation strategies and enhancing client relationships in a cutting-edge payments company.

Photo of the Rise User
Posted 10 days ago

Shape the future of health at AbbVie as a Senior DevSecOps Engineer, driving innovation in application security practices.

Photo of the Rise User
Ford Office Technologies Hybrid Greensburg, Pennsylvania, United States
Posted 17 hours ago

Ford Office Technologies is looking for a skilled Tier II Infrastructure Engineer to support and maintain their network and system infrastructure, delivering top-tier technical solutions.

Photo of the Rise User
Posted yesterday
Inclusive & Diverse
Collaboration over Competition
Growth & Learning
Empathetic
Mission Driven

Contribute to Scholastic’s educational technology by developing and enhancing software applications in a hybrid Associate Software Engineer role based in New York.

Photo of the Rise User
Tradition Capital Bank Hybrid Edina, Minnesota, United States
Posted 8 days ago

Join Tradition Capital Bank as an IT Support Analyst I, where you'll provide essential technology support within a dynamic team-oriented environment.

Photo of the Rise User
American Express Hybrid Phoenix, Arizona, United States
Posted 6 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Join American Express as a Director of Incident Response Tooling to spearhead the development of a comprehensive incident response infrastructure.

Photo of the Rise User

Join Peraton as a Unified Communications Administrator and play a critical role in supporting USSOCOM's IT operations.

Photo of the Rise User
Posted 14 days ago

Join our team as a Remote Sr. Microsoft Security Consultant and leverage your expertise in cloud security to enhance our enterprise security program.

Photo of the Rise User

Take a lead role at HackerOne enhancing Salesforce automation across GTM teams to accelerate business operations and strategic growth.

Photo of the Rise User

Become a key player at Boeing as an Information Technology Product Specialist, guiding the development of cutting-edge fleet management solutions.

Photo of the Rise User
Posted 7 days ago
Rise from Within
Growth & Learning
Transparent & Candid
Diversity of Opinions

Join Justworks as a Senior Manager of Cyber Defense Operations to lead our Digital Security team and enhance our cyber resilience strategies.

Photo of the Rise User
Posted 3 days ago

Become a vital part of Sourcebooks as a Systems Administrator I, supporting IT infrastructure and cloud services in a fully remote role.

Photo of the Rise User
Posted 10 days ago

Become a pivotal Cybersecurity Analyst at Redhorse Corporation, protecting critical government data within a secure environment.

Photo of the Rise User
Posted 3 days ago

Experienced Solutions Architect needed to lead design and implementation of advanced, scalable architectures for Enterprise Mobility’s call center technologies in St. Louis.

Visa Inc. operates as a payments technology company worldwide. The company facilitates commerce through the transfer of value and information among consumers, merchants, financial institutions, businesses, strategic partners, and government entiti...

12603 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
June 6, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!