The role involves developing security requirements, consulting on secure application design, performing security reviews, and mitigating threats for payment applications.
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Senior Information Security Engineer
Who is Mastercard?
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Mission First, People Always
As Corporate Security, we are responsible for keeping Mastercard safe and secure from cyber and physical threats, and it is our people on the frontlines who make this happen every day.
By taking care of our people, their well-being, and career development, we provide them the necessary tools and environment to ensure the success of our mission.
Overview
The Business Security Engineering Guild is looking for a Senior Information Security Engineer to contribute and maintain reusable security requirements that software engineering teams will leverage. The ideal candidate is passionate about cybersecurity, has broad knowledge & experience in various security domains and has a creative mindset. In this role, you will:
• Develop, deliver and maintain the reusable security requirements.• Create and maintain documentation, procedures and analytics with respect to the security requirements.• Work with cross-functional teams to help them understand security requirements and gather feedback to make the process more efficient.• Consult with development and operational teams to securely design applications and services following industry best practices.• Demonstrate a working knowledge of information security principles, theories and concepts.• Perform security reviews and threat modelling for Mastercard applications.• Identify methods to mitigate threats, attacks, and risks to payment applications.
All About You
The ideal candidate for this position should have:
• Knowledge of information security, risk management, and data privacy within the domain of digital commerce, including relevant practical experience.• Good understanding of identity management, user authentication and authorization principles.• Experience working and implementing S-SLDC at scale. Demonstrate a broad awareness of security engineering concepts and practices across all phases of the software development lifecycle.• Demonstrated experience designing secure multi-domain Internet-facing applications.• Experience providing security architecture advice for web-based network environments and secure communication between environments, including web services, web applications, and mobile applications.• Experience in mobile security architecture concepts, design, and implementation along with Android and iOS is a plus.• Basic knowledge and experience in cryptography, including several of the following: encryption, hashing, key management, digital certificates, and TLS.• Technical experience with Java or similar enterprise programming language, especially related to secure coding best practices, is a plus.• Working knowledge and technical security experience with Linux is a plus.• Demonstrated the ability to articulate and communicate effectively to diverse audiences and properly translate security and risk management terminology into business terms, and recommend alternative solutions to these stakeholders.
NICE Framework References
National Initiative for Cybersecurity Education (NICE) competency proficiency levels of proficient to advanced in the following areas:
• Information Assurance• Information Management• Information Technology Assessment• Requirement Analysis• Technology Awareness• Threat Analysis• Data Privacy and Protection• Communication• Critical Thinking• Problem Solving
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:
• Abide by Mastercard's security policies and practices;• Ensure the confidentiality and integrity of the information being accessed;• Report any suspected information security violation or breach, and• Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Senior Information Security Engineer
Who is Mastercard?
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Mission First, People Always
As Corporate Security, we are responsible for keeping Mastercard safe and secure from cyber and physical threats, and it is our people on the frontlines who make this happen every day.
By taking care of our people, their well-being, and career development, we provide them the necessary tools and environment to ensure the success of our mission.
Overview
The Business Security Engineering Guild is looking for a Senior Information Security Engineer to contribute and maintain reusable security requirements that software engineering teams will leverage. The ideal candidate is passionate about cybersecurity, has broad knowledge & experience in various security domains and has a creative mindset. In this role, you will:
• Develop, deliver and maintain the reusable security requirements.• Create and maintain documentation, procedures and analytics with respect to the security requirements.• Work with cross-functional teams to help them understand security requirements and gather feedback to make the process more efficient.• Consult with development and operational teams to securely design applications and services following industry best practices.• Demonstrate a working knowledge of information security principles, theories and concepts.• Perform security reviews and threat modelling for Mastercard applications.• Identify methods to mitigate threats, attacks, and risks to payment applications.
All About You
The ideal candidate for this position should have:
• Knowledge of information security, risk management, and data privacy within the domain of digital commerce, including relevant practical experience.• Good understanding of identity management, user authentication and authorization principles.• Experience working and implementing S-SLDC at scale. Demonstrate a broad awareness of security engineering concepts and practices across all phases of the software development lifecycle.• Demonstrated experience designing secure multi-domain Internet-facing applications.• Experience providing security architecture advice for web-based network environments and secure communication between environments, including web services, web applications, and mobile applications.• Experience in mobile security architecture concepts, design, and implementation along with Android and iOS is a plus.• Basic knowledge and experience in cryptography, including several of the following: encryption, hashing, key management, digital certificates, and TLS.• Technical experience with Java or similar enterprise programming language, especially related to secure coding best practices, is a plus.• Working knowledge and technical security experience with Linux is a plus.• Demonstrated the ability to articulate and communicate effectively to diverse audiences and properly translate security and risk management terminology into business terms, and recommend alternative solutions to these stakeholders.
NICE Framework References
National Initiative for Cybersecurity Education (NICE) competency proficiency levels of proficient to advanced in the following areas:
• Information Assurance• Information Management• Information Technology Assessment• Requirement Analysis• Technology Awareness• Threat Analysis• Data Privacy and Protection• Communication• Critical Thinking• Problem Solving
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:
• Abide by Mastercard's security policies and practices;• Ensure the confidentiality and integrity of the information being accessed;• Report any suspected information security violation or breach, and• Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard's security policies and practices;
- Ensure the confidentiality and integrity of the information being accessed;
- Report any suspected information security violation or breach, and
- Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Top Skills
Cryptography
Java
Linux
Mobile Security
Ssldc
Mastercard Pune, Mahārāshtra, IND Office



Poona Club Road, Pune, Maharashtra, India, 411001
Similar Jobs at Mastercard
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
The Software Engineering Manager leads multiple scrum teams, ensures best practices, manages software product development, and participates in project planning and people management.
Top Skills:
AWSAzure)JavaJava EeJIRAMicroservicesMs ProjectOraclePostgresPublic Clouds (GoogleRallyReact JsRestful ApiSpring
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
The role involves managing audiovisual technology in support of employee digital experiences, incident resolution, metrics reporting, and collaboration with other teams and vendors.
Top Skills:
Audio Visual TechnologyItsmMicrosoft TeamsNetwork InfrastructureVideo ConferencingWebexZoom
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Develop and implement application logic for multi-component systems, mentor junior members, ensure code quality, and participate in agile ceremonies.
Top Skills:
AngularAWSAzureCi/CdGCPHibernateJavaJdbcJenkinsJpaMicroservicesOracleRdbmsReact JsRest ApiSonarSpringSpring BootTomcat
What you need to know about the Pune Tech Scene
Once a far-out concept, AI is now a tangible force reshaping industries and economies worldwide. While its adoption will automate some roles, AI has created more jobs than it has displaced, with an expected 97 million new roles to be created in the coming years. This is especially true in cities like Pune, which is emerging as a hub for companies eager to leverage this technology to develop solutions that simplify and improve lives in sectors such as education, healthcare, finance, e-commerce and more.




