Cloud Security Controls Governance Specialist
Company: Bank of America
Location: Washington
Posted on: March 29, 2025
|
|
Job Description:
Cloud Security Controls Governance SpecialistChicago, Illinois;
Washington, District of ColumbiaAt Bank of America, we are guided
by a common purpose to help make financial lives better through the
power of every connection. We do this by driving Responsible Growth
and delivering for our clients, teammates, communities, and
shareholders every day.You can build a successful career with
opportunities to learn, grow, and make an impact. Join us!The Cloud
Security Controls Enablement Specialist is responsible for
designing, implementing, and managing security controls across
multi-cloud environments, with a specific emphasis on Azure and AWS
platforms, to ensure the protection of organizational data and
systems. This role requires deep expertise in cloud security,
architecture principles, and industry standards. The ideal
candidate will work closely with various teams to ensure the
security of cloud-based applications, data, and infrastructure,
particularly on platforms like AWS and Azure. 5+ years of Cloud
experience.Key Responsibilities:--- Lead the design and
implementation of secure cloud architectures and solutions,
ensuring alignment with business objectives and security
requirements.--- Influence security architectures in partnership
with CST solutions architecture team, including detailed diagrams
and written explanations.--- Evaluate and recommend new cloud
security technologies and practices to improve the organization's
security posture.--- Develop and implement preventative security
controls for cloud infrastructure (IaaS, PaaS, SaaS) based on
industry best practices and compliance requirements.--- Monitor and
evaluate the effectiveness of existing cloud security controls and
recommend enhancements.--- Define and implement security controls
and policies for cloud environments, ensuring compliance with
industry standards (e.g., ISO 27001, NIST, GDPR, HIPAA) and bank
policies, standards, and baselines.--- Conduct regular security
assessments and audits of cloud environments to identify and
mitigate risks.--- Partner with vulnerability management team to
assess risk from identified potential security threats and
vulnerabilities in cloud environments.--- Develop risk mitigation
strategies and work with relevant teams to implement solutions.---
Maintain and update risk registers and ensure continuous monitoring
of cloud security risks.--- Develop and maintain documentation for
security controls, policies, and procedures.--- Participate in
internal and external audits to demonstrate compliance with cloud
security requirements.--- Provide guidance and training to
stakeholders on cloud security best practices and the
implementation of security controls.--- Act as a liaison between
the security team and other departments to promote a security-first
culture.--- Collaborate with DevOps, IT, and business teams to
integrate security controls into cloud deployments and CI/CD
pipelines.--- Act as a subject matter expert on cloud security
architecture, providing guidance and support to various
stakeholders.--- Stay current with emerging cloud security trends,
technologies, and best practices.--- Continuously improve security
controls and processes to enhance the organization's security
posture.--- Participate in security research, community
engagements, industry forums, and knowledge-sharing
initiatives.Required Skills:--- Strong understanding of cloud
security principles and best practices for Azure and AWS
platforms.--- Extensive knowledge of security tools and
technologies such as SIEM, IDS/IPS, DLP, firewalls, PKI, and
identity management.--- Experience architecting SIEM systems,
threat intelligence platforms, security automation, and
orchestration.--- Knowledgeable in network security, including AWS
networking primitives, security groups, network access control
lists, proxies, firewall, and WAF technologies.--- Experience
building and implementing IaC/PaC governance strategies.---
Experience with cloud and containerized technologies, AKS, EKS,
ECS, serverless, Kubernetes, and Docker.--- Experience with PKI
secrets management platforms (e.g., Azure Key Vault, AWS KMS, AWS
Secrets Manager, HashiCorp Vault).--- DevSecOps experience building
and deploying infrastructure with build and test automation
technologies terraform, cloudformation, ansible, docker,
jenkins.--- Hands-on experience designing and deploying cloud
security controls at scale.--- Extensive knowledge of public cloud
service providers and the threats to workloads within those
environments.--- Hands-on experience with cloud security solutions,
including Cloud Security Posture Management (CSPM) and Cloud
Workload Protection (CWPP).--- 5 years of experience in cloud
security.--- Currently hold active AWS Security Specialty or Azure
AZ-500 certification.--- In-depth understanding of cloud security
principles, best practices, and industry frameworks such as OWASP
Top 10, NIST, CSA, CIS benchmarks.Desired Skills:--- Relevant
industry certifications such as ISC2 and SANS GIAC are highly
desirable.--- Strong communication and interpersonal skills to work
effectively with cross-functional teams.--- Ability to manage
multiple projects and priorities in a fast-paced environment.
#J-18808-Ljbffr
Keywords: Bank of America, Washington DC , Cloud Security Controls Governance Specialist, Other , Washington, DC
Click
here to apply!
|