Search jobs > Denver, CO > Aws cloud engineer

Senior Cloud Security Engineer - AWS

Bank of America Corporation
Denver, CO
Full-time

Job Description :

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection.

Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.

One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone.

We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.

Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.

Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!

Position Summary

Bank of America is looking for an experienced Senior Cloud Security Engineer to join our AWS Cloud Security Operations team.

The ideal candidate must have deep knowledge of security controls, tools, features, and operations for AWS. Candidate should be able to demonstrate relevant experience with implementing and enhancing visibility and detective capabilities in a fully managed AWS environment.

The candidate should be intellectually curious about technology and have a strong desire to find and mitigate risks.

This role will help to build a continuous improvement process as part of the AWS Cloud Security Operations team. It will partner across GIS to identify, escalate, and drive corrective actions related to lack of visibility or monitoring within the Azure environments.

You may lead cross functional teams within Global Technology that research, engineer, test, implement, communicate, monitor, and maintain solutions supporting the Bank's information security policies and / or procedures.

You will utilize your in-depth knowledge and business requirements to design and engineer secure solutions to meet partner teams' needs, or to address critical audit findings while protecting the Bank's cloud assets.

Qualifications :

  • Eight (8) or more years relevant Cyber Security experience with at least five (5) years in Cloud SOC and / or Purple Team roles.
  • Highly organized and motivated self-starter who can deliver results with minimal direction.
  • Experience designing and implementing technical solutions to enhance visibility, alerting capabilities, and reduce risk within AWS.
  • Experience reviewing applications, infrastructure, and architectural designs to identify threats and vulnerabilities.
  • Experience with a range of AWS native services and tools.
  • Experience writing and modifying Analytic Rules.
  • Experience designing and implementing SOAR capabilities within AWS.
  • Deep understanding of AWS.
  • Deep understanding of Cyber Security control environments and their relationship to zero-trust networks.
  • Understanding of threat frameworks, such as MITRE ATT&CK for Cloud and D3FEND.
  • Understanding of Risk Management principles.
  • Deep experience in building, configuring, operating and / or securing cloud infrastructure and applications in Azure with either native cloud service provider capabilities or 3rd party vendor tools.
  • Proven ability to leverage AWS native capabilities to build custom reports and dashboards.
  • Ability to independently assess risks and identify vulnerabilities in infrastructure with an eagerness to suggest new processes, policies, and overall improvements to internal security controls.
  • Experience partnering with incident response teams, threat intelligence researchers, Red / Purple teams, and / or HUNT researchers.
  • Familiarity with common Information Security and data protection frameworks and standards (i.e. CIS, NIST, HIPAA, GDPR, PCI DSSS, ISO 270001).
  • Ability to navigate and collaborate effectively within a geographically complex and dispersed global corporation.
  • Excellent verbal and written communication skills with ability to distill key data points and effectively present information.

Desired :

  • Bachelor's or Master's Degree in Computer Science, Information Systems, Cyber Security, or related field.
  • Experience with deployment orchestration systems such as Kubernetes, ECS, and Elastic Beanstalk
  • Experience working with CI / CD tools such as CircleCI or Jenkins
  • Experience with Docker and Docker-Compose
  • Experience with configuration management and automation tools (e.g., Puppet, Ansible, Chef, CloudFormation, SaltStack, Terraform)
  • Linux system administration experience
  • Programming experience in at least one language (python, node, java, go, c / c++, ruby)
  • Experience with logging and monitoring tools such as ELK, DataDog or NewRelic, LogEntries, SumoLogic, etc.

Preferable Certifications

  • AZ-500
  • SC-200
  • CCSP / CCSK
  • CISSP / CISM / Security +
  • Network +

Shift :

1st shift (United States of America)

Hours Per Week :

10 days ago
Related jobs
Promoted
GeoLogics Corporation
Aurora, Colorado

Sr Cloud Engineer - Front End Processor. Bachelor Degree in Science, Technology Engineering Math (STEM) in Information Technology, Computer Science, Computer Engineering, or Physics. Front End Processor (FEP) Engineer will support design, development, and implementation of traditional compute/networ...

Promoted
Buildertrend
Arvada, Colorado
Remote

Security Engineer or Cloud Engineer, with a focus on public cloud security and network security required. Work closely with Cloud Engineers and Site Reliability Engineers to implement and manage advanced security technologies and tools on public cloud platforms, such as identity and access managemen...

Promoted
CACI
Denver, Colorado

Senior Full Stack Software Engineer. As a Senior Software Developer on the GEOINT Tradecraft Suite (GTS) team,. You will work on a small team of engineers contributing to the identification, assessment, and integration of a wide array of technologies and processes. Bachelor’s degree in computer scie...

Promoted
Amazon Development Center U.S., Inc.
Littleton, Colorado

BASIC QUALIFICATIONS- Associate's degree, or Cloud+ or GICSP (Global Industrial Cyber Security Professional) or GSEC (GIAC Security Essentials) or SSCP (Systems Security Certified Practitioner). Would you like to implement innovative cloud computing solutions and solve the world's most compl...

Promoted
Regions Financial Corporation
Denver, Colorado

At Regions, the Cybersecurity Cloud Security Engineer contributes to the advancement of Cybersecurity strategy. Bachelor's degree in Information Security, Information Technology, Information Systems Management, Computer Science, Engineering, or related field with eight years (8) years of Information...

Promoted
Oracle
Denver, Colorado

Job DescriptionThe Oracle Security and Controls practice implements Oracle ERP & HCM Cloud security and the Oracle Controls products to our customers. Our growing customer base and product portfolio offer exciting opportunities for broad and rapid skill development! We are looking for consultants wh...

Charles Schwab
Lone Tree, Colorado

We are looking for a driven, results-oriented Senior Cloud & Software Applications Engineer who shares our passion for technology, innovation, and quality. You will be a senior member of our engineering team that is responsible for developing automated deployment scripts used by Application Developm...

Empower
Greenwood Village, Colorado

Senior Engineer for Container Security, you’ll p. Coordinate with systems and network engineers to ensure servers and network devices conform to security standards, and that security devices and controls are working as designed. Evangelize our container security platform and manage associated securi...

Amazon Development Center U.S., Inc.
Thornton, Colorado

Associate's degree, or Cloud+ or GICSP (Global Industrial Cyber Security Professional) or GSEC (GIAC Security Essentials) or SSCP (Systems Security Certified Practitioner). Would you like to implement innovative cloud computing solutions and solve the world's most complex technical problems? Do you ...

Sierra Nevada Corporation
Lone Tree, Colorado

The Senior Systems Security Engineer is responsible for designing and deploying secure IT systems to meet emerging customer needs. The SSE closely collaborates with the system owners, administrators, engineers, and program managers to ensure cybersecurity controls are effectively implemented and doc...