Senior Vice President, Senior Cloud Security Engineer
$83k - $209kBNY Mellon
Senior Cloud Security Engineer
At BNY, our culture allows us to run our company better and enables employees' growth and success. As a leading global financial services company at the heart of the global financial system, we influence nearly 20% of the world's investible assets. Every day, our teams harness cutting-edge AI and breakthrough technologies to collaborate with clients, driving transformative solutions that redefine industries and uplift communities worldwide.
Recognized as a top destination for innovators, BNY is where bold ideas meet advanced technology and exceptional talent. Together, we power the future of finance - and this is what #LifeAtBNY is all about. Join us and be part of something extraordinary.
We are seeking a Senior Vice President, Cloud Security Engineer to join our Cloud Security team and lead the implementation of security controls across cloud platforms and cloud-native services, support Cloud Security Strategy and Governance.
This role combines deep expertise in cloud security engineering with strong knowledge of AI-driven technologies and their practical application in cyber security.
It is responsible for advancing secure cloud capabilities through technical leadership, posture management, and close partnership with engineering, architecture, DevSecOps, IAM, and cyber teams.
The ideal candidate brings strong hands-on experience securing cloud workloads across one or more major cloud platforms, understands security control frameworks including NIST SP 800-53, and can translate cloud security requirements into technical controls and measurable operational outcomes. Also required is solid knowledge of Cloud Security Posture Management (CSPM), including tools such as Wiz and native cloud policy and monitoring services. This role is in New York, NY or Pittsburgh, PA
What to expect
- Be part of a team focused on strengthening enterprise cloud security capabilities across public cloud and cloud-native environments.
- Contribute to the implementation of secure cloud design patterns, technical standards, and control requirements.
- Partner closely with cloud engineering, DevSecOps, IAM, platform teams, and cyber stakeholders.
- Gain experience across cloud security engineering, automation, posture management, and governance support.
- Help translate cloud security requirements into practical technical controls and repeatable implementation patterns.
- Support cloud security strategy and governance through engineering execution, control adoption, and reporting inputs.
In this role, you'll make an impact in the following ways
- Lead the engineering, implementation, and continuous improvement of cloud security controls for identity and access management, network security, encryption, key management, secrets management, logging, monitoring, and workload protection in AWS, Azure, or GCP.
- Act as an AI enabler for cloud security by identifying, assessing, and promoting AI use cases that improve security outcomes.
- Support the adoption of AI-driven capabilities for threat detection, risk analysis, automation, incident response, and security operations.
- Translate security and control requirements into repeatable engineering solutions and implementation standards.
- Support the design and implementation of technical controls aligned to NIST SP 800-53 and related enterprise security requirements.
- Lead implementation efforts for container, Kubernetes, API, and cloud-native workload security controls.
- Drive the operational maturity of Cloud Security Posture Management (CSPM) capabilities to identify misconfigurations, policy violations, excessive permissions, exposed assets, and control drift.
- Partner with engineering and cyber teams to optimize Wiz and similar CSPM/CNAPP platforms, including workflow integration, prioritization, remediation support, and reporting.
- Design and strengthen the use of cloud-native posture and policy services, including AWS Config, AWS Security Hub, AWS Organizations SCPs, Azure Policy, Microsoft Defender for Cloud, GCP Organization Policy, and Security Command Center.
- Define and implement policy-as-code, automated guardrails, and infrastructure-as-code patterns to improve control consistency and reduce manual processes.
- Provide senior technical guidance to cloud engineers, DevSecOps practitioners, and application teams on secure cloud implementation practices.
- Partner with cloud architects and governance stakeholders to improve standards adoption, exception handling, and control coverage.
- Help define cloud security metrics, remediation priorities, and technical reporting that support governance and risk management objectives.
- Contribute to audit, regulatory, and control review activities by explaining technical implementations, evidence, and remediation status.
- Maintain and improve documentation for cloud security standards, design patterns, engineering procedures, and operating guidance.
To be successful in this role, we're seeking the following
- 6-10 years of experience in cloud security engineering, security engineering, DevSecOps, infrastructure security, or a related security engineering role.
- Strong hands-on experience securing workloads and services in AWS, Azure, or GCP.
- Strong knowledge of cloud security principles across IAM, networking, encryption, secrets management, logging, workload protection, resilience, and secure service consumption.
- AI enabler for cloud security by identifying, assessing, and promoting AI use cases that improve security outcomes.
- Experience with security automation, orchestration, analytics, and AI-driven security tooling.
- Experience implementing cloud security controls at scale in enterprise or regulated environments.
- Strong familiarity with NIST SP 800-53, MCSB and related control concepts, especially in areas such as: Access Control (AC), Audit and Accountability (AU), Configuration Management (CM), Identification and Authentication (IA), Incident Response (IR), Risk Assessment (RA), System and Communications Protection (SC), System and Information Integrity (SI)
- Strong understanding of Cloud Security Posture Management (CSPM) concepts, including continuous compliance monitoring, misconfiguration detection, exposure analysis, and governance workflows.
- Experience with CSPM/CNAPP tools such as Wiz, Prisma Cloud, Orca, Lacework, or similar platforms.
- Experience with cloud-native policy and posture tools, such as:
- AWS Config
- AWS Security Hub
- AWS Organizations SCPs
- Azure Policy
- Microsoft Defender for Cloud
- GCP Organization Policy
- Google Security Command Center
- Experience developing or supporting policy-as-code and automated guardrails using tools such as OPA/Rego or equivalent policy frameworks.
- Strong experience with Infrastructure as Code and automation using Terraform, CloudFormation, ARM, Bicep, Python, or similar tooling.
- Experience with container and Kubernetes security, API security, vulnerability management, and cloud-native control implementation.
- Experience supporting or contributing to cloud security strategy, governance processes, standards, exception handling, remediation tracking, and risk reporting.
- Strong technical judgment, problem-solving ability, and cross-functional collaboration skills.
- Strong written and verbal communication skills, including the ability to explain technical controls in business and risk terms.
- Bachelor's degree in computer science, engineering, cybersecurity, or related discipline, or equivalent practical experience.
- Experience in a regulated industry such as financial services.
- Familiarity with CIS Benchmarks, CSA CCM, OWASP, or NIST CSF.
- Experience supporting remediation workflows tied to cloud security findings.
- Exposure to architecture review, risk assessments, or cloud governance processes.
- Relevant certifications such as:
- AWS Security Specialty
- Azure Security Engineer Associate
- Google Professional Cloud Security Engineer
- CCSP
- Lead the implementation and improvement of cloud security controls across supported cloud platforms.
- Implement and maintain cloud security controls across supported platforms with Cloud native policies, WIZ rules.
- Able to fluently work with KQL, WIZ, Splunk, Azure Policies, bash, Powershell, gcloud, Terraform, Log Analytics, Microsoft Sentinel, Gitlab - All development tools fluently in an enterprise setting.
- Implement and mature cloud controls aligned to NIST SP 800-53 and enterprise requirements.
- Strengthen technical traceability, evidence support, and control consistency.
- Identify, prioritize, and help remediate control gaps across cloud environments.
- Work with platform, DevOps, architecture, and application teams to embed security into engineering workflows.
- Promote adoption of automated controls, secure design patterns, and policy enforcement.
- Provide senior-level technical guidance that improves secure cloud adoption at scale.
Preferred qualifications Core responsibilities by domain Cloud security engineering Security controls and framework alignment Engineering partnership Risk and governance
- Support in review high-risk cloud initiatives and document residual risk, exceptions, and compensating controls.
- Support governance forums, audits, and regulatory reviews with defensible engineering rationale.
- Balance security, resilience, cost, and engineering usability in decision making.
Cloud security strategy and governance
- Support cloud security strategy and governance through technical leadership, control implementation, and reporting inputs.
- Contribute to standards adoption, remediation governance, exception handling, and security maturity efforts.
- Partner with stakeholders to improve control effectiveness and support risk-based decision-making.
Cloud security posture management
- Drive posture management processes across third-party and cloud-native capabilities.
- Improve detection, prioritization, and remediation of misconfigurations, policy violations, and exposure risks.
- Help operationalize Wiz or similar tooling alongside native cloud policies and governance workflows.
AI Enablement for Cloud Security
- Act as an AI enabler by identifying opportunities to apply AI to strengthen cloud security outcomes.
- Support implementation of AI capabilities to improve threat detection, posture analysis, risk prioritization, and security operations efficiency.
- Help streamline cloud security tooling, processes, and workflows through intelligent automation and AI-driven insights.
- Partner with engineering, platform, and security teams to embed AI capabilities into cloud security operations and decision-making.
- Promote practical and responsible use of AI as a force multiplier for cloud security effectiveness, scalability, and operational maturity
What success looks like:
- Cloud security controls are implemented consistently, effectively, and at scale.
- AI is integrated into all processes and controls in suppor to increase controls effectiveness and streamline operational efforts
- Security is embedded into engineering and deployment workflows with reduced manual effort.
- Posture management findings are better prioritized, more actionable, and more effectively remediated.
- Wiz, cloud-native policies, and automation capabilities work together to improve visibility and reduce cloud risk.
- Cloud control implementations demonstrate alignment to NIST SP 800-53 and enterprise standards.
- Engineering teams adopt secure patterns more consistently with fewer design and control exceptions.
- Governance and audit stakeholders receive clearer technical support, evidence, and remediation transparency.
At BNY, our culture speaks for itself, check out the latest BNY news at:
BNY Newsroom
BNY LinkedIn
Here's a few of our recent awards:
- America's Most Innovative Companies, Fortune, 2025
- World's Most Admired Companies, Fortune 2025
- "Most Just Companies", Just Capital and CNBC, 2025
BNY offers highly competitive compensation, benefits, and wellbeing programs rooted in a strong culture of excellence and our pay-for-performance philosophy. We provide access to flexible global resources and tools for your life's journey. Focus on your health, foster your personal resilience, and reach your financial goals as a valued member of our team, along with generous paid leaves, including paid volunteer time, that can support you and your family through moments that matter.
BNY is an Equal Employment Opportunity/Affirmative Action Employer - Underrepresented racial and ethnic groups/Females/Individuals with Disabilities/Protected Veterans.
BNY assesses market data to ensure a competitive compensation package for our employees. The base salary for this position is expected to be between $83,000 and $209,000 per year at the commencement of employment. However, base salary if hired will be determined on an individualized basis, including as to experience and market location, and is only part of the BNY total compensation package, which, depending on the position, may also include commission earnings, discretionary bonuses, short and long-term incentive packages, and Company-sponsored benefit programs. This position is at-will and the Company reserves the right to modify base salary (as well as any other discretionary payment or compensation) at any time, including for reasons related to individual performance, change in geographic location, Company or individual department/team performance, and market factors.- ...Senior Cloud Security Engineer At BNY, our culture allows us to run our company better and enables employees' growth and success. As a leading... ...of something extraordinary. We are seeking a Senior Vice President, Cloud Security Engineer to join our Cloud Security team...SeniorWorldwide
- ...A leading secure identity company in New York is looking for a Senior Security Engineer to safeguard its core platforms, focusing on cloud security and infrastructure. The successful candidate will implement security controls in AWS and Kubernetes, automate security workflows...SeniorFlexible hours
$150k - $200k
...A fast-growing technology company in New York is seeking a Senior Cloud Security Engineer specializing in AWS infrastructure and security. The ideal candidate will have several years of experience in cloud security, a passion for securing infrastructure, and the ability...Senior$150k - $190k
...A fast-growing identity risk solutions company in New York seeks a Senior Cloud Security Engineer focused on Infrastructure and Security. Responsibilities include advising on best practices, responding to security incidents, and conducting risk assessments. The ideal...Senior$160k - $185k
A fintech firm specializing in digital asset securities is seeking a Senior Infrastructure Security Engineer. This fully remote position involves managing AWS cloud security, ensuring compliance, and defining security practices in a lean environment. Candidates should have...SeniorRemote work- ...Vice President, Cloud Security Engineering About the Company Respected provider of financial technology (FinTech) services Industry Financial Services Type Privately Held About the Role The Company is in search of a Vice President, Cloud Security...
$147.5k - $211k
...Senior Cloud Security Engineer The Senior Cloud Security Engineer helps architect, deploy and operate a secure cloud application infrastructure that aligns with business needs. The position is responsible for supporting operational innovation and providing security...$83k - $209k
...Cloud Security Engineer At BNY, our culture allows us to run our company better and enables employees' growth and success. As a leading... ...extraordinary. We're seeking a future team member for the role of Vice President, Cloud Security Engineer to join our Cloud Security team....Temporary workWorldwideFlexible hours$147.5k - $211k
...Location Designation: Hybrid - 3 days per quarter The Security Engineer is responsible for designing and maintaining NYL’s cloud security controls, mainly in AWS and hybrid environments, with Azure and GCP also included. This hands-on role focuses on secure cloud...Local area$150k - $200k
Truebill is seeking a Cloud Security Engineer in Washington, D.C. to manage and enhance AWS security strategies while collaborating with the InfoSec team. You will be responsible for evolving our cloud infrastructure, ensuring secure deployments, and treating detection...SeniorWork at office$102.6k - $179.25k
...The Cloud Security Engineer - FAB supports the security, resilience, and compliance of FAB (Foundation and Beyond) , Wolters Kluwer's centralized GenAI platform. This role focuses on cloud-native security controls, DevSecOps automation, and operational security ,...SeniorWork at office- A leading healthcare company in New York is seeking a Cloud Security Engineer to ensure the security of our cloud infrastructure. In this senior-level role, you will collaborate with cross-functional teams, implement robust security measures, and enhance our cloud security...SeniorFlexible hours
- ...experience in IT or Information security or Bachelor's Degree and... ...Cybersecurity, Computer Engineering, Computer Science, Information... ...security or Network Security in a senior technical role With... ...Security Engineer Associate, or GCP Cloud Security Engineer; Experience...SeniorWork experience placementNight shift
- The Senior Cloud Security Engineer is a senior technical and leadership position responsible for implementing and continuously improving cloud security across multi cloud environments including AWS, Azure, Google Cloud, and Oracle Cloud Infrastructure (OCI). This role...Senior
- Con Edison is seeking a Senior Cloud Security Engineer to lead the charge in enhancing cloud security across multiple environments including AWS, Azure, and Google Cloud. This role is pivotal, balancing hands-on technical execution with team oversight to ensure robust,...Senior
- ...Overview The Senior Cloud Security Engineer is a senior technical and leadership position responsible for implementing and continuously improving cloud security across multi cloud environments including AWS, Azure, Google Cloud, and Oracle Cloud Infrastructure (OCI...SeniorWork experience placementNight shift
- Con Ed is looking for a Senior Cloud Security Engineer in New York to lead cloud security initiatives across AWS, Azure, Google Cloud, and OCI. This senior role combines hands-on technical execution with leadership, managing a team to develop secure architectures and enterprise...Senior
$105k - $151k
iconectiv is seeking a Security Engineer to enhance information security for its platforms. This role involves platform security monitoring, incident response, security assessments, and developing security policies. The position is hybrid, requiring residence within 75...Senior$187k - $240k
...As a Cloud Security Engineer you will partner with different stakeholders across the organization to secure our cloud infrastructure. As part of the Platform Security organization we secure the building blocks of Datadog's applications and infrastructure. We do this by...SeniorWork at office- ...experience, this role is open to Vice President or Assistance Vice President... ...-to-day business and keeps security and consistency of the... ...network, cybersecurity, and AWS cloud environments. Resolves... ...while remaining hands-on in engineering and troubleshooting. # Support...SeniorWork at officeRemote workWork from homeFlexible hours2 days per week
- A leading technology firm is looking for an exceptional engineer to join their Detection Platform team in New York. This role involves architecting and implementing data pipelines for security telemetry and developing ML-powered detection systems. Ideal candidates have...Senior
- ...Job Description The Senior Cloud Security Engineer is a senior technical and leadership position responsible for implementing and continuously improving cloud security across multi cloud environments including AWS, Azure, Google Cloud, and Oracle Cloud Infrastructure...SeniorPart timeWork experience placementFlexible hoursNight shift
$140k - $200k
...offering a wide range of simple, reliable, and secure crypto products and services to individuals... ...services, and expert consultation to engineering teams for secure cloud and non-cloud infrastructure. The Role: Senior Platform Security Engineer The Platform...SeniorWork at officeRemote workFlexible hours- ...enable the firm to manage technology risk through modern, cloud‑aligned and AI‑informed security practices. CDRR executes first‑line of defence... ...Information Technology experience, including security engineering for Windows and cloud platforms (Azure). Strong knowledge...
$90k - $128.5k
...Platform Engineer Location Designation: Hybrid - 3 days per quarter Role Summary... ...images. Coordinate certification and security sign-off for image releases (CIS-aligned... .... Collaborate with application teams, cloud platform teams, and infrastructure engineering...SeniorLocal areaImmediate start$187k - $240k
As a Cloud Security Engineer you will partner with different stakeholders across the organization to secure our cloud infrastructure. As part of the Platform Security organization we secure the building blocks of Datadog’s applications and infrastructure. We do this by...Senior$140k - $215k
A leading cybersecurity firm is seeking a Senior Engineer to enhance its Cloud Security Product Group. This role requires extensive experience in backend systems programming and cloud services, focusing on securing cloud-native workloads. You will lead engineering efforts...Senior2 days per week3 days per week$124k - $177k
...per week Role Overview We are looking for a Senior AI Platform Security Engineer who lives on GCP and can own the security architecture... ...Azure is a plus, but your day-to-day will be deep in Google Cloud: securing GKE workloads, governing AI pipelines on...SeniorLocal area3 days per week- Senior Security Operations Platform Engineer Location: New York, NY 10004 (Hybrid) Experience: 10+ years in SOC roles (analyst/engineer/architect/consultant... ...engineering and gap analysis. Telemetry across cloud, endpoint, network, and identity. Strong SOC operations...SeniorShift work
$175k - $215k
...investment bank. Our team of senior professionals delivers a wide... ...continuously improving a robust and secure technology foundation that... ...a Data and AI Infrastructure Engineer to build secure, scalable platforms... ...Azure SQL, and Cosmos DB. Cloud Infrastructure & DevOps...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Vice President, Senior Cloud Security Engineer. Be the first to apply!
- vp account director New York, NY
- vp creative director New York, NY
- vice president of application development New York, NY
- vice president digital media New York, NY
- vice president technical operations New York, NY
- vice president internal communications New York, NY
- vice president data analytics New York, NY
- vp internal audit New York, NY
- vice president corporate communications New York, NY
- vice president of product strategy New York, NY

