Cloud Security Design and Controls Lead
Bank of America ATM
Cloud Security Design and Controls Lead
Chicago, Illinois;Washington, District of Columbia; Denver, Colorado
To proceed with your application, you must be at least 18 years of age.
Acknowledge (
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (
Refer a friend
To proceed with your application, you must be at least 18 years of age.
Acknowledge (
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description:
The Information Security Senior Specialist will be a key functional member of the Cloud Security Team within the Global Information Security (GIS) and Business Information Security Officer (BISO) organizations. The role is responsible for implementing, managing, and governing security controls across multi-cloud environments, with a specific emphasis on Azure, AWS and Google platforms, to ensure the protection of organizational data and systems. This role requires deep expertise in cloud security, architecture principles, and industry standards. The ideal candidate will work closely with various teams to ensure the security of cloud-based applications, data, and infrastructure, particularly on platforms like AWS and Azure.
Key Responsibilities (continued from above):
Integration with CI/CD Pipelines -
Developers ensure that security policies are embedded in CI/CD workflows to enforce compliance during the development and deployment phases.
Custom Solutions Development -
Off-the-shelf security tools often need customization to fit organizational requirements. Developers can write custom modules, scripts, or extensions to adapt these tools effectively.
Collaboration with Security Teams -
Developers act as a bridge between security and DevOps teams, ensuring that security policies align with operational workflows without hindering development agility.
Governance and Regulatory Compliance -
Conduct regular security assessments and audits of cloud environments to identify and mitigate risks.
Conduct risk assessments to identify potential security threats and vulnerabilities in cloud environments.
Evidence Package Creation
Package evidence of security policies deployment and effectiveness proving to non-technical audience, Audit and Governance Teams, the effectiveness of security policies.
Participate in internal and external audits to demonstrate compliance with cloud security requirements.
Responsibilities
Lead the design and implementation of secure cloud architectures and solutions, ensuring alignment with business objectives and security requirements.
Maintain and update risk registers and ensure continuous monitoring of cloud security risks.
Act as a liaison between the security team and other departments to promote a security-first culture.
Security Controls
Define and implement security controls and policies for cloud environments, ensuring compliance with industry standards (e.g., ISO 27001, NIST, GDPR, HIPAA) and bank security policies.
Continuously improve security controls and processes to enhance the organization's security posture.
Develop and maintain documentation for security controls, policies, and procedures.
Policy as Code (PaC) Implementation
Policies are increasingly managed as code, requiring developers skilled in scripting and programming to define, customize, and automate these policies using tools like HashiCorp Sentinel, Open Policy Agent (OPA), and Terraform.
Required Skills:
Minimum of 5 years of professional experience designing and implementing cloud security controls.
Bachelor’s degree in Information Systems or Computer Science, and/or equivalent combination of education and work experience within the domain areas of Cloud Security.
In-depth understanding of cloud security principles, best practices for Azure and/or AWS platforms, and industry frameworks such as OWASP Top 10, NIST, CSA, CIS benchmarks.
Experience building and implementing Infrastructure as Code and/or Policy as Code governance strategies.
Experience conducting security assessments, risk analyses, and developing security concepts.
Hands-on experience with cloud security tools and technologies such as AWS Security Hub, Azure Security Center, Google Cloud Security Command Center, and/or Wiz.
Extensive knowledge of security tools and technologies such as SIEM, IDS/IPS, DLP, firewalls, PKI, and identity management and how they work in cloud environments. Specifically in network security, including AWS networking primitives, security groups, network access control lists, proxies, firewall and WAF technologies.
Experience with cloud and containerized technologies, AKS, EKS, ECS, serverless, Kubernetes and Docker.
Extensive knowledge of public cloud service providers and the threats to workloads within those environments.
Currently hold active AWS Security Specialty or Azure AZ-500 certification.
Desired Qualifications:
Master’s degree in Information Systems or Computer Science, and/or equivalent combination of education and work experience within the domain areas of Cloud Security.
Relevant industry certifications such as ISC2 and SANS GIAC are highly desirable.
Strong communication and interpersonal skills to work effectively with cross-functional teams.
Ability to manage multiple projects and priorities in a fast-paced environment.
Skills:
Customer and Client Focus
Interpret Relevant Laws, Rules, and Regulations
Policies, Procedures, and Guidelines
Problem Solving
Quality Assurance
Business Process Analysis
Data Privacy and Protection
Innovative Thinking
Risk Analytics
Stakeholder Management
Business Acumen
Business Continuity Management
Data Governance
External Resource Management
Information Systems Management
Shift:
1st shift (United States of America)
Hours Per Week:
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your "Know your Rights ( " poster.
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy (“Policy”) establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank’s required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
$98.1k - $220.95k
...Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and... ...opening for a Tier II Site Lead: To support the Intelligence... ...systems, providing design specifications, testing and... ...implementing local quality control processes to inspect, measure...CloudContract workTemporary workWork at officeLocal areaRelocation$79.4k - $136.4k
...Overview The Database Team Lead oversees the design, administration, and performance... ...to ensure availability, security, backup and recovery, and... ...strategies across on‑premises and cloud‑hosted databases.... ...database security, access controls, and auditing in alignment...CloudContract workWork at office$135k - $182.1k
...Information Security Senior Specialist At Bank of America, we... ...key functional member of the Cloud Security Team within the Global... ..., and governing security controls across multi-cloud environments... ...Responsibilities: Lead the design and implementation of secure...CloudWork experience placementWork at officeFlexible hoursShift workDay shift- ...Delivery - focusing on the Platfrom Controls and HMI bundles which span... ...for applications and cloud. The Tech Platform Program (TPP... ...or Palo Alto What You’ll Do… Leading the new working interaction model... ...the FNV3.x Platform and Digital Design, Controls Strategies,...CloudWork at officeImmediate startFlexible hours
- ...Serco is seeking a Principal Information Security Systems Engineer in Denver, Colorado. This role supports cloud system security for the U.S. Navy. Candidates should... .... Responsibilities include monitoring security controls and developing security documentation. Serco offers...Cloud
- ...Senior Enterprise System Lead Marathon TS is... ...Mission Performance & Security Systems Directorate. This... ...foundation and applies it to design, build, and lead the... ...developers, MLS engineers, cloud architects, and... ...identity management, access control, and authentication...CloudRemote work
$210k - $300k
...services, complete spacecraft design and manufacturing,... ...change, national security, and exciting new technology... ...Systems Software to lead our satellite flight and... ...including AI, automation, and cloud-based solutions.... ...computer keyboard and controls, and communicate verbally...CloudPermanent employmentFor contractorsLocal area- RK Mechanical, Inc. is seeking a Document Control Manager to lead document management systems and processes. This role requires 5+ years of experience... ...analytical skills, and proficiency in Autodesk Construction Cloud. The candidate must ensure document accuracy and compliance...CloudWork at office
$120.1k - $251.6k
...stand up and mature the cost and controls governance function across OCI... ..., Finance, E2E, Procurement, Design, and Regional leadership to... ...ground-up construction programs Lead initiatives to improve... ...company leading the way in AI and cloud solutions that impact billions...CloudTemporary workFlexible hours$132.06k - $186.44k
...they love. Fastly's edge cloud platform enables... ...digital experiences quickly, securely, and reliably by... ...Internet. The platform is designed to take advantage of the... ...join us. Security Risk Lead Fastly helps... ...into actionable security controls ~ Working knowledge...CloudWork at officeLocal areaRemote workFlexible hours- ...Senior UiPath/ RPA Developer Lead Must be local/ open to relo... ...team, you'll lead efforts to design, build, deploy, and scale UiPath... ...AI/ML services, etc.) in the cloud Architect end-to-end RPA solutions... ...CI/CD pipelines and version control (Git, Azure DevOps, etc.)...CloudLong term contractLocal area3 days per week
$35 - $45 per hour
...by providing innovative fire, security, and communication... ...countries. We bring industry-leading expertise to clients in enterprise... ...leader, Pavion specializes in the design, installation, service, and maintenance... ..., video surveillance, access control, and advanced AV technologies...Contract workLocal area- ...effective wholesale, colocation, and cloud data centers. Each of our... ...categories of availability, security, connectivity, and physical resilience... ...authority and delivery lead for enterprise AI solutions. This role owns the end-to-end design, engineering, and deployment...CloudTemporary work
$100k - $141.3k
Bank of America is seeking a Cloud Security Vulnerability Management Program Specialist in Denver, CO. This role involves ensuring enterprise... ...an annual salary of $100,000 to $141,300 along with industry-leading benefits and a commitment to professional growth. #J-18808-...Cloud- ...Lead Platform Security Engineer At HDR, our employee-owners are fully engaged... ...HCX, recovery tooling, and cloud-connected platform capabilities... ..., platform risks, and design tradeoff decisions. Partner... ...leadership to align platform controls with enterprise policy, risk...CloudMonday to FridayShift work
- ...AWS Cloud Security Engineer Denver, CO Client is building out its Security capabilities for supporting... ...Security department aims to architect, design, deploy and test the various infrastructure, application and data security controls on the cloud. The AWS Cloud Security...CloudWork experience placement
- Security Engineer, Vulnerability & Attack Surface Management You will operate... ...addressed before exploitation across IT, cloud, and OT‑adjacent environments. Design and operate AI‑augmented... ...exception documentation and compensating control tracking through structured, audit...Cloud
- A healthcare technology firm is seeking a Lead Healthcare Platform Engineer & Compliance Expert. You'll architect and govern compliance systems, design cloud-native infrastructures, and lead initiatives focused on health innovation. Ideal candidates have 7+ years in software...CloudRemote workFlexible hours
$75 - $90 per hour
The Cigna Group is seeking a Security Architect in Denver, Colorado. The role involves collaborating with various teams to enhance security... ..., along with relevant certifications like CISSP and AWS Cloud Security. The pay ranges from $75.00 to $90.00 per hour, with additional...CloudHourly pay$94.1k - $143.7k
...technical expert for the design, implementation, and... ...availability, performance, and security while aligning to... ...across on‑premise and cloud environments. Monitor... ...appropriate controls in UC and telecommunications... ...Experience supporting or leading telecommunications and...CloudContract workWork at office$104k - $156k
...Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate security controls that protect Relativity's employee... ...systemlevel security ownership in a modern cloud environment. Job Description and Requirements...CloudRemote work- ...standardization, software architecture, controls integration, operational... ...of deployment. You will lead cross‑functional engineering teams... ...supporting hyperscale cloud and AI infrastructure growth... ...infrastructure systems Standards & Global Design Governance Establish global...CloudLocal areaRemote work
$115k - $143k
...Systems Engineer Required Security Clearance Secret (SBI) Type... ...SN SE&I program through the design, analysis, and improvement of... ...hardening, and secure device access control implementation Apply... ...solutions across on-premise or cloud architectures Required Qualifications...CloudFull timeImmediate startWorldwide2 days per week3 days per week- ...Senior Application Security Engineer A new space race has begun... ...implementing and auditing security controls for mission-critical space... ...800-171/800-53), and modern cloud-native architectures to... ...security standards. You will design and implement application-level...CloudShift work
- ...Henderson Global Investors is seeking a Senior Engineer in Denver to lead the design and evolution of their Internal Developer Platform. The role... ...should possess strong experience in platform engineering and cloud platforms, particularly Azure, alongside expertise in...Cloud
$85k - $105k
...of the world's well-known hyperscalers, cloud providers and large enterprises. Developing... ...Pacific, Vantage has evolved data center design in innovative ways to deliver dramatic... ...oriented, and resourceful Operations Change Control Specialist to support the team. In this...CloudContract workTemporary workWork at officeLocal areaRemote workFlexible hours- A technology solutions firm based in Denver is seeking a Cloud Solutions Architect to spearhead cloud migration, modernization, and infrastructure design for enterprise clients. You'll lead the architectural strategy across AWS, Azure, and GCP platforms, ensuring operational...CloudRemote jobFull timeFlexible hours
- ...world’s well‑known hyperscalers, cloud providers and large... ...Vantage has evolved data center design in innovative ways to deliver... ...Executive Protection and Physical Security program in North America. This... ...professional presence and situational control to deter threats, disruptions,...CloudTemporary workWork at officeWorldwideFlexible hours
$85.1k - $161.7k
...We are the leading provider of professional services to the middle market globally,... ...experienced Oracle Fusion Oracle ERP Cloud security & controls specialist with a strong background in... ...ERP security assessments, security role designs, Oracle ERP focused GRC implementations...CloudFull timeWork experience placementInternshipLocal area$115k - $170k
...services, complete spacecraft design and manufacturing, payloads,... ...combat climate change, national security, and exciting new technology... ...(e.g. Security+, Cloud+, CISSP, CISM, CEH, or equivalent... ...g., NIST 800, ISO 27001, CIS Controls). ~ Proficiency in security...CloudPermanent employmentLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cloud Security Design and Controls Lead. Be the first to apply!
- ux design lead Denver, CO
- design coordinator Denver, CO
- interior design coordinator Denver, CO
- cloud admin Denver, CO
- senior cloud service delivery manager Denver, CO
- cloud administrator Denver, CO
- oracle cloud technical Denver, CO
- salesforce commerce cloud Denver, CO
- cloud engineer azure Denver, CO
- vp cloud Denver, CO


