Lead Information Security Engineer (Cloud Security)
Full-time
Mastercard
Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential. Title and Summary
• Execute onboarding and life cycle management of cloud accounts, Kubernetes clusters, and CI/CD pipelines into the CNAPP platform, following standard operating procedures
• Analyze, triage, and prioritize CNAPP findings, including misconfigurations, workload vulnerabilities, runtime alerts, and policy violations
• Partner with cloud platform, DevOps, SOC, and Vulnerability Management teams to track remediation activities and validate closure of identified cloud risks
• Provide operational security guidance to engineering teams on CNAPP findings, remediation options, and secure configuration patterns
• Support secure cloud design and implementation by validating configurations against regulatory, internal, and industry best practice controls (e.g., PCI, CIS, NIST, CSA)
• Translate cloud security risks into clear, actionable insights, dashboards, and metrics for engineering, platform, and business stakeholders
• Contribute to CNAPP tool evaluation and optimization, including testing new features, tuning policies, reducing alert noise, and supporting vendor assessments and business cases What You Bring • Hands on experience in cloud and information security within regulated environments
• Strong expertise in CNAPP, CSPM, CWPP, and Cloud Detection & Response (CDR)
• Solid understanding of CI/CD pipelines, image vulnerability scanning, and DevSecOps practices
• Strong Kubernetes and container security knowledge
• Working knowledge of cloud compliance standards and security frameworks, with the ability to apply them in public cloud environments (ISO/IEC 27001 & 27002, PCI, NIST, CIS…)
• Technical competency in Policy as Code and Security as Code approaches
• Working knowledge of identity and access management, application security, and threat detection
• Practical experience securing native AWS and Azure services
• Ability to work effectively in a global environment with strong communication skills NICE Framework References National Initiative for Cybersecurity Education (NICE) competency proficiency levels of proficient to advanced in the following areas: • Protection and Defence
• Design and Development
• Implementation and Operation
• Communication
• Critical Thinking
• Problem Solving Corporate Security Responsibility
Lead Information Security Engineer (Cloud Security)
Who We Are
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential. Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all. Mission First, People Always As Corporate Security, we are responsible for keeping Mastercard safe and secure from cyber and physical threats, and it is our people on the frontlines who make this happen every day. By taking care of our people, their wellbeing, and career development, we provide them with the necessary tools and environment to ensure the success of our mission. The Role The Cloud Security Engineering team is hiring a Lead Cloud Security Engineer to help secure Mastercard’s public cloud environments. This is a hands on role focused on implementing and operating Cloud Native Application Protection Platform (CNAPP), Cloud Security Posture Management (CSPM), and Cloud Workload Protection Platform (CWPP) capabilities at scale. What You’ll Do • Lead operation and administration of CNAPP platform (CSPM, CWPP, CI/CD security) across public cloud and hybrid environments, ensuring continuous monitoring, policy enforcement, and platform health• Execute onboarding and life cycle management of cloud accounts, Kubernetes clusters, and CI/CD pipelines into the CNAPP platform, following standard operating procedures
• Analyze, triage, and prioritize CNAPP findings, including misconfigurations, workload vulnerabilities, runtime alerts, and policy violations
• Partner with cloud platform, DevOps, SOC, and Vulnerability Management teams to track remediation activities and validate closure of identified cloud risks
• Provide operational security guidance to engineering teams on CNAPP findings, remediation options, and secure configuration patterns
• Support secure cloud design and implementation by validating configurations against regulatory, internal, and industry best practice controls (e.g., PCI, CIS, NIST, CSA)
• Translate cloud security risks into clear, actionable insights, dashboards, and metrics for engineering, platform, and business stakeholders
• Contribute to CNAPP tool evaluation and optimization, including testing new features, tuning policies, reducing alert noise, and supporting vendor assessments and business cases What You Bring • Hands on experience in cloud and information security within regulated environments
• Strong expertise in CNAPP, CSPM, CWPP, and Cloud Detection & Response (CDR)
• Solid understanding of CI/CD pipelines, image vulnerability scanning, and DevSecOps practices
• Strong Kubernetes and container security knowledge
• Working knowledge of cloud compliance standards and security frameworks, with the ability to apply them in public cloud environments (ISO/IEC 27001 & 27002, PCI, NIST, CIS…)
• Technical competency in Policy as Code and Security as Code approaches
• Working knowledge of identity and access management, application security, and threat detection
• Practical experience securing native AWS and Azure services
• Ability to work effectively in a global environment with strong communication skills NICE Framework References National Initiative for Cybersecurity Education (NICE) competency proficiency levels of proficient to advanced in the following areas: • Protection and Defence
• Design and Development
• Implementation and Operation
• Communication
• Critical Thinking
• Problem Solving Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard’s security policies and practices;
- Ensure the confidentiality and integrity of the information being accessed;
- Report any suspected information security violation or breach, and
- Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
Vacancy posted 23 days ago
Similar jobs that could be interesting for youBased on the Lead Information Security Engineer (Cloud Security) in Mexico vacancy
- ...payments choices, making transactions secure, simple, smart and accessible. Our... ...greatest potential. Title and Summary Information Security Engineer Job Description Summary Mission... ...of our mission. Overview The Cloud Security team is looking for an Information...SuggestedFull timeWorldwide
- ...choices, making transactions secure, simple, smart and accessible... ...and Summary Senior Analytics Engineer Overview • Responsible... ...exposure to automation and/or cloud delivery effort • Experience... ...access to Mastercard assets, information, and networks comes with an...SuggestedFull timeWorldwide
- ...choices, making transactions secure, simple, smart and accessible... ...Summary Director, Platform Engineering Mastercard powers economies... ...consistency, and velocity across cloud and on prem platforms. The... ...access to Mastercard assets, information, and networks comes with an...SuggestedFull timeWorldwide
- ...currently seeking a System Engineer-Active Directory,... ...The NTT DATA Services Security organization is looking... ...one of the world's leading AI and digital infrastructure... ...enterprise-scale AI, cloud, security,... ...for payment or banking information and will only use @nttdata...SuggestedWork at officeRemote workWork from homeHome officeFlexible hoursNight shiftWeekend work
- ...Home based role ICON plc is a world-leading healthcare intelligence and clinical research organization. We’re proud to foster an inclusive environment driving innovation and excellence, and we welcome you to join us on our mission to shape the future of clinical development...SuggestedRemote jobContract workWork from homeFlexible hours
- ...We are currently seeking a Cloud DBA Lead to join our team in City of... ...Good Understanding of database security principles and best... ...REQUIRED Google Cloud Associate Engineer - REQUIRED Azure Database... ...a plus B.Tech/BE/MCA in Information Technology degree or equivalent...Work at officeRemote workFlexible hoursShift work
- ...Job Title: Data Engineer Overview We are seeking a Data Engineer responsible for designing... ..., AWS Glue) Experience working with cloud platforms , preferably AWS Solid... ...Engineers Support structure: 1 senior/lead resource Willingness to work in a collaborative...
- ...We are currently seeking a Cloud Architect (AWS) to join our team... ...routing, Route53 DNS, secure file transfer patterns) with... ...connectivity. We are one of the leading providers of digital and AI infrastructure... ...ask for payment or banking information and will only use @nttdata....Work at officeRemote workFlexible hours
- ...combines Salesforce platform engineering, AI/Agentic solution... ...degree in Computer Science, Information Technology, Engineering, or... ...We are one of the world's leading AI and digital infrastructure... ...capabilities in enterprise-scale AI, cloud, security, connectivity, data centers...Work at officeRemote workFlexible hours
- ...DevOps-Focused Backend Engineer Role Overview We... ...Qualifications Cloud Infrastructure: Exposure... ...are one of the world's leading AI and digital infrastructure... ...-scale AI, cloud, security, connectivity, data... ...for payment or banking information and will only use @...Work at officeRemote workFlexible hours
- ...digital payments choices, making transactions secure, simple, smart and accessible. Our... ...Customer Technical Services (Contact Center Lead) Overview: Mastercard Cross-Border... ...regulatory requirements and procedures, information security requirements, and all internal policies...Full timeWork at officeLocal areaWorldwide
$28.5k
...and Global Process Owners to align with global strategies. Lead global and regional project initiatives and support internal and... ...and LATAM markets. Proficiency in Portuguese. Additional Information: Travel: 0%-10% Location: Guadalajara, JAL . Don’t meet...- ...connectivity. We are one of the leading providers of digital... ...payment or banking information and will only use @... ...for a Senior DevOps Engineer with strong... ...pipeline engineering, cloud platform build and deployment, monitoring, security, and application reliability...Work at officeRemote workFlexible hours
- ...architects, developers, QA engineers, and Product Owners to ensure... ...degree in Computer Science, Information Technology, Business Administration... .... We are one of the world's leading AI and digital... ...capabilities in enterprise-scale AI, cloud, security, connectivity, data centers...Full timeWork at officeRemote workFlexible hours
$2,500 per month
...wellness supplements through to digital security software — antivirus and VPN.... ...Coordinate the infrastructure. Run the cloud and the full API surface funnels depend... ...degree (or equivalent) in computer science, engineering, or a related technical field. ● A genuine...Permanent employmentFull timeWorldwideTrial period- ...Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume... ...people in 100+ countries for our industry-leading security, user fund transparency, trading engine speed, deep liquidity, and an unmatched portfolio of...Full timeLocal areaWork from homeFlexible hours
- ...currently seeking a SAP BASIS Team Lead to join our team in Mexican... ...4. Manage OS/DB/Platform/Cloud migrations, with experience in... ...strategy, maintain database security, administer database performance... ...ask for payment or banking information and will only use @nttdata....Work experience placementWork at officeImmediate startRemote workFlexible hours
- ...Senior Manager, Software Engineering (People Leader) Do you love... ...One. What You’ll Do: Lead a portfolio of diverse technology... ...managers, and deliver robust cloud-based solutions that drive... ..., educational tools or other information available through this site....InternshipLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Information Security Engineer (Cloud Security). Be the first to apply!
