Founded by experienced entrepreneurs and engineers in 2016, Pismo is a technology company that provides a comprehensive processing platform for banking, card issuing and financial market infrastructure and helps customers innovate and build the next generation of banking and payment solutions. Pismo joined Visa in 2024.
Leveraging Visa’s solutions, our core platform, and an expanding suite of capabilities, Pismo addresses the technological challenges that large banks, marketplaces, and fintech companies face in migrating from legacy systems to more advanced technology in the market. Pismo’s cloud-based platform empowers firms to build and launch financial products rapidly, scaling as they grow to have a broader audience while keeping high security and availability standards.
Pismo’s 500+ employees are located in more than 10 countries around the world.
The Senior Cybersecurity Engineer – IAM is responsible for designing, implementing, and operating identity and access management controls across the Pismo platform, ensuring compliance with Pismo Visa Corporate Identity & Access Technical Security Requirements.
This role operates at platform and architecture level, supporting multicloud and hybrid environments, and focuses on building secure, automated, and auditable access models for human and non‑human identities. The position partners closely with Cloud Security, Platform Engineering, API, DevSecOps, and GRC teams to embed least‑privilege, zero‑trust, and automation‑first IAM practices across a regulated, multi‑tenant payments environment.
In addition to traditional IAM responsibilities, this role provides security and governance oversight for AI‑enabled identity use cases, ensuring that AI systems, agents, and automation interacting with identities comply with Internal AI Governance standards, GenAI & Agentic Systems requirements, and Corporate IAM Technical and Design requirements.
Basic Qualifications:
5+ years of relevant work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8+ years of relevant work experience.
Preferred Qualifications:
5+ years of relevant work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8+ years of relevant work experience.
8+ years of cybersecurity experience, with deep specialization in Identity & Access Management (IAM).
Proven experience operating at Senior / Consultant level, influencing IAM architecture, standards, and governance decisions.
Experience supporting financial services, payments, or regulated environments
Multicloud IAM Architecture (Mandatory)
Strong hands‑on experience designing and operating IAM across multicloud environments, including AWS and hybrid/federated cloud models.
Ability to design scalable permission models across cloud platforms, including:
Cloud‑native roles and permission sets
Least‑privilege and separation‑of‑duties enforcement
Human and non‑human identities (workloads, service accounts)
Permission Design & Access Modeling
Deep understanding of permission structures, including:
Role‑based (RBAC) and attribute‑based (ABAC) access models
IAM‑governed access roles and entitlement cataloging
Temporary, just‑in‑time, and break‑glass access patterns
Ability to design access models that reduce audit scope, review volume, and operational risk.
IAM Automation & Engineering (Critical Requirement)
Strong experience implementing IAM automation, including:
Automated provisioning and de‑provisioning (JML lifecycle)
Access revalidation and certification automation
Auto‑remediation of non‑compliant permissions
Experience integrating IAM controls with CI/CD pipelines and Infrastructure‑as‑Code (IaC).
Proven ability to codify IAM policies and controls using automation frameworks.
Coding & Scripting Skills
Hands‑on coding experience to support IAM automation and integrations, including:
Python or equivalent scripting languages
Use of APIs and SDKs to manage identities, roles, and entitlements
Automation via IaC tools (e.g., Terraform‑based IAM definitions)
Ability to build reusable, auditable, and scalable IAM automation components
Privileged Access & Cloud Governance
Experience designing and governing privileged access across cloud platforms.
Ability to enforce time‑bound, auditable privileged access aligned with least‑privilege principles.
Strong understanding of cloud governance roles required for vulnerability scanning, configuration
Work Hours: Varies upon the needs of the department.
Travel Requirements: This position requires travel 5-10% of the time.
Mental/Physical Requirements: This position will be performed in an office setting. The position will require the incumbent to sit and stand at a desk, communicate in person and by telephone, frequently operate standard office equipment, such as telephones and computers.
Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.
Visa will consider for employment qualified applicants with criminal histories in a manner consistent with applicable local law, including the requirements of Article 49 of the San Francisco Police Code.
U.S. APPLICANTS ONLY: The estimated salary range for this position is 145,300.00 to 232,700.00 USD per year, which may include potential sales incentive payments (if applicable). Salary may vary depending on job-related factors which may include knowledge, skills, experience, and location. In addition, this position may be eligible for bonus and equity. Visa has a comprehensive benefits package for which this position may be eligible that includes Medical, Dental, Vision, 401 (k), FSA/HSA, Life Insurance, Paid Time Off, and Wellness Program.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Senior Manager in Visa Consulting & Analytics responsible for selling and delivering strategic payments and analytics engagements for large U.S. issuers to drive profitable growth.
Visa is hiring a Staff Applied Scientist II to lead AI-driven data science and engineering workstreams on the Acceptance Platform, building scalable, secure ML solutions for global payments.
Provide white-glove technical support to senior leadership at RRS Group, ensuring secure, reliable devices and flawless meeting/AV experiences across office, remote, and travel settings.
Saalex seeks experienced Field Service Engineer II candidates to lead installation, sustainment, and troubleshooting of deployed IT and network systems in operational field environments.
Adoreal is hiring a hands-on Senior Manager of IT & Engineering to build the IT/security function, lead HIPAA compliance, and provide .NET technical leadership in a hybrid US-remote role with preference for candidates near Chicago, IL.
DYOPATH is hiring a SNOC Engineer II (Security) to lead incident detection and response while improving operational reliability across security, network, systems, and cloud in a remote capacity.
Lead the design, automation, and operational ownership of Harvey’s Microsoft ecosystem (Intune, M365, Entra ID) to deliver secure, scalable device and tenant management across production, development, and demo environments.
Saalex is hiring a Systems Engineer II to design, integrate, and test enterprise IT systems for Navy LVC environments in Tidewater, VA or San Diego, CA.
Experienced network engineers are needed to design, integrate, and maintain secure enterprise and tactical networks for Navy LVC environments under a contingent contract opportunity at Saalex Corporation.
Lead and inspire a web technologies team at Fortune Brands to deliver enterprise e-commerce and digital experiences using modern web stacks and best practices.
Support Kestra’s leadership teams as an AI Enablement Intern by creating tailored training, workshops, and a prompt library to accelerate adoption of M365 Copilot and other generative AI tools.
Onsite IT Support role in Cambridge, MA providing first- and second-level support, workstation setup, and ticket resolution for an international IT services firm.
Provide Tier 1 technical support across corporate, distribution, and retail channels for Abercrombie & Fitch, resolving incidents, fulfilling requests, and helping associates use supported systems and devices.
Western Alliance Bank seeks a Principal Engineer II to architect and lead Infrastructure-as-Code and automation strategies for secure, compliant, enterprise-scale Azure environments.
Crypto.com's Security Team seeks a Security IT Support Engineer to own endpoint lifecycle, patching, access management, and vulnerability remediation while helping teams adopt AI safely.
Visa Inc. operates as a payments technology company worldwide. The company facilitates commerce through the transfer of value and information among consumers, merchants, financial institutions, businesses, strategic partners, and government entiti...
118 jobs