Cloud Security & Automation Engineer - VP
Hispanic Technology Executive Council - pittsburgh, PA
Apply NowJob Description
Cloud Security & Automation Engineer - VP At BNY, our culture empowers you to grow and succeed. As a leading global financial services company at the center of the worlds financial system we touch nearly 20% of the worlds investible assets. Every day around the globe, our 50,000+ employees bring the power of their perspective to the table to create solutions with our clients that benefit businesses, communities and people everywhere. We continue to be a leader in the industry, awarded as a top home for innovators and for creating an inclusive workplace. Through our unique ideas and talents, together we help make money work for the world. This is what #LifeAtBNY is all about. Were seeking a future team member in the role of Cloud Security & Automation Engineer - VP to join our Information Security Division (Cyber Cloud Security) team. (ISD) . This role is located in Pittsburgh, PA or Lake Mary, FL - Hybrid (2-3 days/week in-office. Must live within a commutable distance.) Click here to view our Information Security Division Career Brochure. What to expect: Be part of team that is laser focused on delivering a transformative cloud security program that is in alignment with BNYs overall cloud strategy. Provided with an opportunity to further finetune and specialize in skills across all cyber disciplines. You will collaborate with passionate leaders, technologists, architects, engineers, and cyber professionals that strive to enable business securely with innovative technology and solutions. Strong partnership and support from the Cloud Service Providers (Azure, GCP, AWS) and Cyber Security partners and vendors we do business with. An opportunity to influence the banks cloud security and automation strategy. In this role, youll make an impact in the following ways: Design, implement, and maintain secure cloud environments in accordance with industry best practices and regulatory requirements. Optimize cloud security controls and capabilities (e.g., CSPM, DSPM, etc.) to ensure IaaS, SaaS, PaaS, and FaaS cloud service compliance with relevant regulations, standards, organizational policies, and design patterns through continuous assessment and reporting. Integrate security tools and practices into our continuous integration and continuous delivery (CI/CD) pipeline, ensuring security is embedded in all stages of the software development lifecycle. Partner closely with cloud architecture, cloud engineering, developers, and other line-of-business representatives to develop and refine automation capabilities for a multitude of Cloud Service design patterns. In partnership with SOC and IR implement monitoring and logging solutions to detect and respond to security threats and incidents in real-time. Provide security domain expertise on protective controls, to include system, network, encryption, and authentication services. Collaborate with stakeholders to define security requirements and provide guidance on secure development practices. Develop and maintain documentation related to security policies, procedures, and best practices. Provide training and support to development and operations teams on security-related topics and tools. To be successful in this role, were seeking the following: Bachelor's or Graduate degree in engineering, computer science or a related discipline or equivalent work experience required. 8+ years of experience in information security or related technology experience required, experience in the securities or financial services industry is a plus. 3-4 years of larger scale application scripting/development experience combined with 2-3 years of direct experience working with and securing cloud native workloads in one or more of the three major cloud service providers (Microsoft Azure, Google Cloud Platform, and AWS). Expertise in cloud-native container and container orchestration security (e.g., Azure Kubernetes Service). Experience developing Infrastructure-as-code/Policy-as-code components and automation using languages and tools like Python, Terraform, ARM/BICEP to name but a few. Experience in implementing security controls in CI/CD pipelines, third party security tools (e.g., Rego) and cloud native policies. Experience in API Security and implementation of appropriate security controls. Experience with software architectures and development/scripting experience in at least one programming language. Experience with cyber security related processes and tooling (e.g., Vulnerability management, IAM). Familiarity with adopting cloud security frameworks and best practices (e.g., NIST, CIS, CSA CCM, and OWASP). At BNY, our culture speaks for itself. Heres a few of our awards: Americas Most Innovative Companies, Fortune, 2024 Worlds Most Admired Companies, Fortune 2024 Human Rights Campaign Foundation, Corporate Equality Index, 100% score, Best Places to Work for Disability Inclusion, Disability: IN 100% score, Most Just Companies, Just Capital and CNBC, 2024 Dow Jones Sustainability Indices, Top performing company for Sustainability, 2024 Bloombergs Gender Equality Index (GEI), 2023 Our Benefits and Rewards: BNY offers highly competitive compensation, benefits, and wellbeing programs rooted in a strong culture of excellence and our pay-for-performance philosophy. We provide access to flexible global resources and tools for your lifes journey. Focus on your health, foster your personal resilience, and reach your financial goals as a valued member of our team, along with generous paid leaves, including paid volunteer time, that can support you and your family through moments that matter. BNY is an Equal Employment Opportunity/Affirmative Action Employer - Underrepresented racial and ethnic groups/Females/Individuals with Disabilities/Protected Veterans. This is a Talent Pipeline requisition.
Created: 2024-11-05