Cyber Security Engineer - Sr. Consultant level - ForgeRock

Visa hybrid • Austinfull_time

Information security is an integral part of Visa’s corporate culture.  It is essential to maintain our position as an industry leader in electronic payments, and it is the responsibility of each employee to safeguard information, protect it from unauthorized access, and ensure regulatory compliance.  Information security has a significant effect on privacy, consumer confidence, external reputation, and/or the bottom line, and it is a priority on everyone’s agenda

The successful incumbent will be part of Visa’s Business to Business Identity & Access Management team, which is part of the larger Cybersecurity organization. The B2B IAM team has a Global focus, and is responsive to an evolving threat landscape, regulatory compliance, IT security requirements and technology architecture. The B2B IAM team is responsible for secure access to business portals and associated services.

Essential Functions

  • Deep understanding of web applications integration for single sign on using ForgeRock

  • Setting up federation agreements using SAML 2, OpenID and OAuth protocols

  • Setting up authorization policies and configuring authentication chains in ForgeRock AM

  • Installation and configuration of ForgeRock AM

  • Deep understanding of session management across geographically distributed locations

  • Installation and configuration of ForgeRock Directory Server (DS)

  • Deep understanding of replication and user directory synchronization

  • Good knowledge of OpenID connects and OAuth protocols.

  • Setting up LDAP password policies and ACIs using custom scripts

  • Building a performance lab and setting up scripts to load test the different access management functions

  • Building scripts to monitor production traffic patterns and translate the numbers into scripts for performance lab

  • Familiarity with all different flavors of web servers and app servers including IIS, Apache, MGINX, Apache Tomcat and Node.js

  • Installation of configuration of ForgeRock agents on web servers and app servers

  • Demonstrate ability to work in a complex organization to determine business and customer needs, providing the best solution to meet those needs

  • You will work closely with Operations, database, and middleware engineering teams to maintain high system up time according to agreed SLA

  • Operate with little supervision and oversight

  • Able to collaborate effectively with teams spread across different time zones

  • Serve as the Subject Matter Expert (SME) for the team, acting as the primary point of contact for cross-functional teams and various support groups within Technology’s global teams

  • Take on decision-making responsibilities that directly and significantly impact the productivity of individual support teams and the users they support 

  • Develop technical design and build documentation for all aspects of the technical infrastructure

  • Proficiency in Multi-Factor Authentication and its various implementations

This is a hybrid position. Expectation of days in office will be confirmed by your hiring manager.