Information Security Engineer
Mastercard India Services Pvt LtdJob Description
Information Security Engineer II
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Information Security Engineer IIWho is Mastercard?Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Mission First, People Always
As Corporate Security, we are responsible for keeping Mastercard safe and secure from cyber and physical threats, and it is our people on the frontlines who make this happen every day.
By taking care of our people, their well-being, and career development, we provide them the necessary tools and environment to ensure the success of our mission.
Overview
The Business Security Enablement Guild is looking for a Security Engineer II to join our team. This Guild is a worldwide team of information security experts focused on helping Mastercard achieve its goals by ensuring security is at the heart of everything we do. The ideal candidate is passionate about cybersecurity, is someone who has strong security basics & experience in web application security and has a creative mindset. In this role, you will:
• Engage with customers and help them achieve their business requirements securely by performing Third Party Software Security Evaluations.
• Apply knowledge of security principles, theories and concepts to technology reviews.
• Use Artificial Intelligence to solve relevant business problems that bring efficiency for the larger organisation.
• Understand and own existing business processes & identify opportunities to make them more efficient.
• Participate in team meetings, representing the team where required and drive a few initiatives independently.
All About You
The ideal candidate for this position should have:
• Intermediate knowledge of information security, risk management, and data privacy within the domain of digital commerce including relevant practical experience.
• Good understanding of identity management, user authentication and authorisation principles.
• Demonstrate a broad awareness of security engineering concepts and practices across all phases of the software development lifecycle.
• Demonstrated experience designing secure multi-domain Internet-facing applications.
• Experience providing security architecture advice for web-based network environments and secure communication between environments, including web services, web applications, and mobile applications.
• Demonstrate the ability to articulate and communicate effectively to diverse audiences and properly translate security and risk management terminology into business terms, and recommend alternative solutions to these stakeholders.
• Intermediate hands-on experience in scripting or Vibe coding.
• Intermediate knowledge and experience in cryptography, including several of the following: encryption, hashing, key management, digital certificates, and TLS.
• Technical experience with Java or a similar enterprise programming language, especially related to secure coding best practices, is a plus.
• Experience in mobile security architecture concepts, design, and implementation along with Android and iOS is a plus.
• Working knowledge and technical security experience with Linux is a plus.
NICE Framework References
Mastercard Corporate Security Roles have been aligned with the NICE framework (National Initiative for Cybersecurity Education). For this role the NICE Work Roles most closely aligned are:
• Cybersecurity Architecture
• Insider Threat Analysis
• Secure Systems Development
• Security Control Assessment
• Technology Research and Development
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks come with an inherent risk to the organisation, and therefore, it is expected that the successful candidate for this position must:
• Abide by Mastercard’s security policies and practices;
• Ensure the confidentiality and integrity of the information being accessed;
• Report any suspected information security violation or breach, and
• Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Abide by Mastercard’s security policies and practices;
Ensure the confidentiality and integrity of the information being accessed;
Report any suspected information security violation or breach, and
Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.

