Senior Cloud Security Strategist

at Bank of America
Location Jersey City, NJ
Date Posted October 4, 2021
Category Default
Job Type Full-time

Description

Job Description:

Come join an exciting team within Global Information Security (GIS). Cyber Security Technology (CST) is a globally distributed team responsible for cyber security innovation and architecture, engineering, solutions and capabilities development, cyber resiliency, access management engineering, data strategy, deployment maintenance, technical project management and information technology security control support.

The Senior Cloud Security Strategist is a key individual contributor on the GIS Cybersecurity Innovation & Strategy Team. We’re looking for an enthusiastic, inspired, creative thinker who can develop innovative strategic security solutions to complex business problems.

In this role you will have responsibility for identifying, defining, developing, leading security technology strategy across a broad portfolio of cloud security and related technology systems, and the assessment of new and emerging cloud security technologies for a large-scale enterprise.

As a senior member of the team you will engage and partner with senior leaders across the bank leveraging your extensive hands-on background in (managing / delivering / implementing / architecting) cloud security technology combined with expertise in organizational and cross-functional communication to develop cloud security strategy, influence roadmaps, solution adoption, champion strategic opportunities / execution plans with the aim to improve security capabilities, reduce risk and position platform security enhancements.

A comprehensive understanding of the emerging cloud security challenges is essential; malware, ransomware, DLP, behavioral anomaly detection, application security risks, policy & management platforms (+ capabilities at scale), vulnerability analysis, remediation, evolving industry trends, techniques & tools.

Required Skills

  • 8-10 years of experience in large scale cloud security technology platform engineering, design, architecture, or strategy (experience in developing security strategy highly desired / preferred)
  • Minimum 5+ years of security technology experience-
  • Extensive knowledge of cloud security (across a variety of commercial platforms)
  • Experience with virtualization, containerization, SaaS platform security
  • Strong working knowledge of cloud management platforms
  • Experience with platform attack and defense techniques preferred
  • Experience with network infrastructure & remote access security technology engineering, design, architecture or strategy preferred
  • Ability to present complex subjects to executive level audiences
  • Ability to undertake and complete tasks independently, meet schedules and delivery timelines
  • Strong written and verbal communications skills (to develop and deliver concise presentations on complex subjects)
  • CISSP, CISSM, or other cloud security certification (AWS, Azure, Google) preferred

The ideal candidate will have experience in several of the following areas:

  • Extensive knowledge of cloud management, orchestration, automation tools, and operating systems
  • Cloud and infrastructure security threats
  • Containerization & virtualization
  • Thorough understanding of network firewalls, proxy, DMZ architecture, remote access technologies
  • Cloud authentication, encryption, key management, access management
  • Cloud security policy / configuration management
  • Cloud application management
  • Threat modelling
  • Threat hunting
  • Penetration testing
  • Behavioral anomaly detection
  • Enterprise Architecture governance and process (in a large enterprise)

Enterprise Role Overview:

Responsible for defining an architectural vision and architecture for large complex solutions, which aligns with the enterprise architecture strategy, technology and platform choices. Describes the solution intent and the associated operating environment, determining the primary systems/subsystems and their interfaces, defining non-functional requirements and architectural runway to support new epics/features and expand into new opportunities. Ensures the solution is fit for purpose and use by working with stakeholders, vendors/service providers, and evaluating the impact of strategic design decisions. Contributes to best practices, standard templates, and the architecture roadmap for defined domains. Contributes in the creation of the architecture roadmap of defined domains (Business, Application, Data and Technology) in support of the product roadmap. Contributes to the development of best practices including standardized templates. Works across business and technology to create the solution intent and architectural vision for large complex solutions and evolves it based on an emerging backlog. Leads rapid shaping of a high level architecture with details filled in with emerging business requirements; ensures architecture is flexible and modular and designed to adapt easily. Facilitates solution driven discussions, leads the design of complex architectures, and finds creative solutions through practical experiments and POCs. Works with Product Manager/Owner to plan and prioritize technology focused backlog items for the architecture runway to enable business epics/features and expand into new opportunities. Clarifies the architecture for the development teams to support implementation, and provides solution options to resolve any architectural impediments. Performs design and code reviews to ensure all non-functional requirements for a solution are sufficiently met (e.g. security, performance, maintainability, scalability, usability, and reliability). Supports the Principal Engineer as needed to select the technology stack needed for solutions, and helps select preferred technology products. Educates team members on the technology practices, standardization strategies and best practices to create innovative solutions. Individual Contributor.

Job Band:

H4

Shift: 

1st shift (United States of America)

Hours Per Week:

40

Weekly Schedule:

Referral Bonus Amount:

0

-->

Job Description:

Come join an exciting team within Global Information Security (GIS). Cyber Security Technology (CST) is a globally distributed team responsible for cyber security innovation and architecture, engineering, solutions and capabilities development, cyber resiliency, access management engineering, data strategy, deployment maintenance, technical project management and information technology security control support.

The Senior Cloud Security Strategist is a key individual contributor on the GIS Cybersecurity Innovation & Strategy Team. We’re looking for an enthusiastic, inspired, creative thinker who can develop innovative strategic security solutions to complex business problems.

In this role you will have responsibility for identifying, defining, developing, leading security technology strategy across a broad portfolio of cloud security and related technology systems, and the assessment of new and emerging cloud security technologies for a large-scale enterprise.

As a senior member of the team you will engage and partner with senior leaders across the bank leveraging your extensive hands-on background in (managing / delivering / implementing / architecting) cloud security technology combined with expertise in organizational and cross-functional communication to develop cloud security strategy, influence roadmaps, solution adoption, champion strategic opportunities / execution plans with the aim to improve security capabilities, reduce risk and position platform security enhancements.

A comprehensive understanding of the emerging cloud security challenges is essential; malware, ransomware, DLP, behavioral anomaly detection, application security risks, policy & management platforms (+ capabilities at scale), vulnerability analysis, remediation, evolving industry trends, techniques & tools.

Required Skills

  • 8-10 years of experience in large scale cloud security technology platform engineering, design, architecture, or strategy (experience in developing security strategy highly desired / preferred)
  • Minimum 5+ years of security technology experience-
  • Extensive knowledge of cloud security (across a variety of commercial platforms)
  • Experience with virtualization, containerization, SaaS platform security
  • Strong working knowledge of cloud management platforms
  • Experience with platform attack and defense techniques preferred
  • Experience with network infrastructure & remote access security technology engineering, design, architecture or strategy preferred
  • Ability to present complex subjects to executive level audiences
  • Ability to undertake and complete tasks independently, meet schedules and delivery timelines
  • Strong written and verbal communications skills (to develop and deliver concise presentations on complex subjects)
  • CISSP, CISSM, or other cloud security certification (AWS, Azure, Google) preferred

The ideal candidate will have experience in several of the following areas:

  • Extensive knowledge of cloud management, orchestration, automation tools, and operating systems
  • Cloud and infrastructure security threats
  • Containerization & virtualization
  • Thorough understanding of network firewalls, proxy, DMZ architecture, remote access technologies
  • Cloud authentication, encryption, key management, access management
  • Cloud security policy / configuration management
  • Cloud application management
  • Threat modelling
  • Threat hunting
  • Penetration testing
  • Behavioral anomaly detection
  • Enterprise Architecture governance and process (in a large enterprise)

Enterprise Role Overview:

Responsible for defining an architectural vision and architecture for large complex solutions, which aligns with the enterprise architecture strategy, technology and platform choices. Describes the solution intent and the associated operating environment, determining the primary systems/subsystems and their interfaces, defining non-functional requirements and architectural runway to support new epics/features and expand into new opportunities. Ensures the solution is fit for purpose and use by working with stakeholders, vendors/service providers, and evaluating the impact of strategic design decisions. Contributes to best practices, standard templates, and the architecture roadmap for defined domains. Contributes in the creation of the architecture roadmap of defined domains (Business, Application, Data and Technology) in support of the product roadmap. Contributes to the development of best practices including standardized templates. Works across business and technology to create the solution intent and architectural vision for large complex solutions and evolves it based on an emerging backlog. Leads rapid shaping of a high level architecture with details filled in with emerging business requirements; ensures architecture is flexible and modular and designed to adapt easily. Facilitates solution driven discussions, leads the design of complex architectures, and finds creative solutions through practical experiments and POCs. Works with Product Manager/Owner to plan and prioritize technology focused backlog items for the architecture runway to enable business epics/features and expand into new opportunities. Clarifies the architecture for the development teams to support implementation, and provides solution options to resolve any architectural impediments. Performs design and code reviews to ensure all non-functional requirements for a solution are sufficiently met (e.g. security, performance, maintainability, scalability, usability, and reliability). Supports the Principal Engineer as needed to select the technology stack needed for solutions, and helps select preferred technology products. Educates team members on the technology practices, standardization strategies and best practices to create innovative solutions. Individual Contributor.

Job Band:

H4

Shift: 

1st shift (United States of America)

Hours Per Week:

40

Weekly Schedule:

Referral Bonus Amount:

0

Job Description:
Come join an exciting team within Global Information Security (GIS). Cyber Security Technology (CST) is a globally distributed team responsible for cyber security innovation and architecture, engineering, solutions and capabilities development, cyber resiliency, access management engineering, data strategy, deployment maintenance, technical project management and information technology security control support.

The Senior Cloud Security Strategist is a key individual contributor on the GIS Cybersecurity Innovation & Strategy Team. We’re looking for an enthusiastic, inspired, creative thinker who can develop innovative strategic security solutions to complex business problems.

In this role you will have responsibility for identifying, defining, developing, leading security technology strategy across a broad portfolio of cloud security and related technology systems, and the assessment of new and emerging cloud security technologies for a large-scale enterprise.

As a senior member of the team you will engage and partner with senior leaders across the bank leveraging your extensive hands-on background in (managing / delivering / implementing / architecting) cloud security technology combined with expertise in organizational and cross-functional communication to develop cloud security strategy, influence roadmaps, solution adoption, champion strategic opportunities / execution plans with the aim to improve security capabilities, reduce risk and position platform security enhancements.

A comprehensive understanding of the emerging cloud security challenges is essential; malware, ransomware, DLP, behavioral anomaly detection, application security risks, policy & management platforms (+ capabilities at scale), vulnerability analysis, remediation, evolving industry trends, techniques & tools.

Required Skills

  • 8-10 years of experience in large scale cloud security technology platform engineering, design, architecture, or strategy (experience in developing security strategy highly desired / preferred)
  • Minimum 5+ years of security technology experience-
  • Extensive knowledge of cloud security (across a variety of commercial platforms)
  • Experience with virtualization, containerization, SaaS platform security
  • Strong working knowledge of cloud management platforms
  • Experience with platform attack and defense techniques preferred
  • Experience with network infrastructure & remote access security technology engineering, design, architecture or strategy preferred
  • Ability to present complex subjects to executive level audiences
  • Ability to undertake and complete tasks independently, meet schedules and delivery timelines
  • Strong written and verbal communications skills (to develop and deliver concise presentations on complex subjects)
  • CISSP, CISSM, or other cloud security certification (AWS, Azure, Google) preferred

The ideal candidate will have experience in several of the following areas:

  • Extensive knowledge of cloud management, orchestration, automation tools, and operating systems
  • Cloud and infrastructure security threats
  • Containerization & virtualization
  • Thorough understanding of network firewalls, proxy, DMZ architecture, remote access technologies
  • Cloud authentication, encryption, key management, access management
  • Cloud security policy / configuration management
  • Cloud application management
  • Threat modelling
  • Threat hunting
  • Penetration testing
  • Behavioral anomaly detection
  • Enterprise Architecture governance and process (in a large enterprise)

Enterprise Role Overview:

Responsible for defining an architectural vision and architecture for large complex solutions, which aligns with the enterprise architecture strategy, technology and platform choices. Describes the solution intent and the associated operating environment, determining the primary systems/subsystems and their interfaces, defining non-functional requirements and architectural runway to support new epics/features and expand into new opportunities. Ensures the solution is fit for purpose and use by working with stakeholders, vendors/service providers, and evaluating the impact of strategic design decisions. Contributes to best practices, standard templates, and the architecture roadmap for defined domains. Contributes in the creation of the architecture roadmap of defined domains (Business, Application, Data and Technology) in support of the product roadmap. Contributes to the development of best practices including standardized templates. Works across business and technology to create the solution intent and architectural vision for large complex solutions and evolves it based on an emerging backlog. Leads rapid shaping of a high level architecture with details filled in with emerging business requirements; ensures architecture is flexible and modular and designed to adapt easily. Facilitates solution driven discussions, leads the design of complex architectures, and finds creative solutions through practical experiments and POCs. Works with Product Manager/Owner to plan and prioritize technology focused backlog items for the architecture runway to enable business epics/features and expand into new opportunities. Clarifies the architecture for the development teams to support implementation, and provides solution options to resolve any architectural impediments. Performs design and code reviews to ensure all non-functional requirements for a solution are sufficiently met (e.g. security, performance, maintainability, scalability, usability, and reliability). Supports the Principal Engineer as needed to select the technology stack needed for solutions, and helps select preferred technology products. Educates team members on the technology practices, standardization strategies and best practices to create innovative solutions. Individual Contributor.
Shift:

1st shift (United States of America)

Hours Per Week: 

40

Drop files here browse files ...