Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

SVP, Vulnerability Management & Cloud Security Posture Platform Engineering

BNY

SVP, Vulnerability Management & Cloud Security Posture Platform Engineering

We're seeking a team member for the role of SVP, Vulnerability Management & Cloud Security Posture Platform Engineering to join our Cybersecurity Engineering Tools & Platforms team. This role is located in New York, NY; Pittsburgh, PA; or Washington, DC.

This is a high-impact, deeply technical individual contributor role focused on both running and engineering enterprise cybersecurity platforms that support vulnerability management, asset discovery, network and infrastructure scanning, cloud security posture management, cloud-native risk visibility, reporting, and remediation enablement.

This role fits in the intersection of hands-on platform operations, deployment and execution, troubleshooting, automation engineering, service ownership, and technical leadership.

In this role, you'll make an impact in the following ways:

  • Own engineering and operational accountability for enterprise vulnerability management and cloud security posture management tooling.
  • Run critical cybersecurity platforms day to day, including platform health, configuration, access, integrations, upgrades, onboarding, troubleshooting, vendor support, and production stability.
  • Engineer platform improvements that increase reliability, scalability, coverage, automation, performance, data quality, and operational resilience.
  • Manage platform configuration, tenant administration, access models, scanner and agent lifecycle, cloud connectors, onboarding standards, and service health.
  • Support scanning across servers, endpoints, databases, network devices, appliances, cloud assets, containers, external-facing assets, and other enterprise technologies.
  • Partner with network and infrastructure teams on scanner placement, network zones, routing, firewall rules, segmentation, latency, reachability, authenticated scanning, and scan troubleshooting.
  • Drive asset discovery, inventory reconciliation, coverage reporting, ownership validation, and integration with CMDB and authoritative asset sources.
  • Build and maintain automation, APIs, configuration management, dashboards, reporting workflows, and data pipeline integrations, including integrations that ingest asset, ownership, cloud, and configuration data from enterprise systems and publish vulnerability and posture data to downstream remediation, reporting, and risk platforms.
  • Partner with vulnerability management teams to enable prioritization, remediation tracking, SLA governance, exception workflows, and major vulnerability response.
  • Own platform monitoring, health checks, operational dashboards, incident response, vendor escalations, disaster recovery readiness, and business continuity procedures.
  • Support SSO, RBAC, privileged access, service accounts, API tokens, access recertification, segregation of duties, audit evidence, and regulatory reporting.
  • Troubleshoot complex issues across tools, agents, scanners, APIs, cloud connectors, networks, identity systems, data pipelines, vendor platforms, and downstream reporting consumers.
  • Create dynamic engineering solutions using languages such as Python, Go, Java, or similar.
  • Mentor engineers, improve runbooks and documentation, and raise the technical bar through hands-on platform expertise.

To be successful in this role, you bring:

  • Hands-on experience running and engineering enterprise cybersecurity platforms, especially vulnerability management, scanning, asset discovery, cloud security posture, or cloud-native application protection platforms in large financial institutions.
  • Strong operational discipline, including production support, incident response, change management, service health monitoring, vendor escalation, and lifecycle management.
  • Strong engineering mindset, including automation, API integration, configuration management, repeatable deployment patterns, data quality improvement, and toil reduction.
  • Strong understanding of vulnerability management operating models, including remediation tracking, SLA governance, exceptions, ownership validation, and major vulnerability response.
  • Strong networking knowledge, including TCP/IP, routing, DNS, firewalls, proxies, load balancers, network segmentation, NAT, packet flows, latency, and reachability troubleshooting.
  • Experience scanning and assessing diverse enterprise technologies, including servers, endpoints, network devices, databases, appliances, cloud assets, containers, and externally exposed systems.
  • Knowledge of scanner architecture, agent health, network zones, scan routes, authenticated scanning, credential management, and scan troubleshooting.
  • Experience with cloud environments, including AWS, Azure, and GCP, cloud connectors, IAM, APIs, and security control frameworks.
  • Experience integrating cybersecurity platforms with CMDB, ticketing systems, reporting platforms, data pipelines, cloud platforms, vulnerability management systems, and enterprise dashboards.
  • Strong understanding of access management, including SSO, MFA, RBAC, privileged access, service accounts, API tokens, and recertification.
  • Programming and automation skills using Python, Go, Java, or similar.
  • Ability to debug complex issues across platforms, agents, scanners, cloud connectors, APIs, data pipelines, identity systems, networks, firewalls, routing paths, and vendor services.
  • Experience supporting audit, regulatory reporting, evidence retention, operational controls, and production change management.
  • A mindset focused on automation, scalability, governance, resilience, and reducing operational friction.
  • Experience with Kubernetes and container vulnerability management, including cluster visibility, container image assessment, runtime context, registry integrations, cloud-native asset inventory, and remediation workflows.

Preferred:

  • Experience with the following tooling preferred: Qualys, Wiz.io, Lumeta, or similar vulnerability management, asset discovery, network visibility, and cloud security posture platforms.
  • Experience operating or engineering cybersecurity platforms in FedRAMP-authorized or FedRAMP-aligned cloud environments.
  • Familiarity with FedRAMP control expectations, evidence collection, vulnerability scanning requirements, continuous monitoring, access governance, and cloud security operations.

Success Profile

  • Becomes a senior technical authority for both operating and engineering vulnerability management and cloud security posture tooling.
  • Bachelor's degree in computer science or a related discipline, or equivalent work experience required, advanced degree preferred.
  • 10-12 years of experience in information security or related technology experience required, experience in the securities or financial services industry is a plus.
  • Keeps critical cybersecurity platforms stable, healthy, upgraded, monitored, documented, and supportable.
  • Improves platform reliability, scan health, agent health, connector health, data quality, and operational visibility.
  • Expands coverage across infrastructure, applications, business units, cloud accounts, containers, network devices, appliances, and external-facing assets.
  • Enables reliable reporting, remediation tracking, SLA governance, audit evidence, and regulatory support.
  • Reduces manual effort through automation, repeatable onboarding, self-service intake, standardized runbooks, and engineered controls.
  • Strengthens access governance, platform controls, service ownership discipline, and production resilience.

This role is for someone who wants to run, own, and engineer the platforms that define cyber risk visibility across the enterprise. Day-to-day platform execution and long-term engineering decisions will directly impact security posture, vulnerability response, regulatory confidence, and operational resilience across BNY.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the SVP, Vulnerability Management & Cloud Security Posture Platform Engineering in Washington DC vacancy
  • $100k - $141.3k

     ...seeking a skilled and motivated Cloud Security Vulnerability Management Program Specialist to support the...  ...visibility into workload security posture across virtual machines, containers...  ...closely with infrastructure, platform, engineering, and operations teams to ensure vulnerability... 
    Cloud
    Work at office
    Shift work
    Day shift

    Koitecc Solutions

    Washington DC
    18 hours ago
  • $100k - $141.3k

    Koitecc Solutions is seeking a Cloud Security Vulnerability Management Program Specialist to support the Cloud Security Assurance...  ...collaboration with infrastructure and engineering teams, focusing on maintaining security posture and compliance standards. The salary range... 
    Cloud

    Koitecc Solutions

    Washington DC
    18 hours ago
  • $67.7k - $90.27k

     ...ecosystem. We enable secure, high-performance...  ...across cloud, edge, and AI workloads...  ...Cloud Security & Vulnerability Management consultant to join...  ...cloud security posture assessment, where...  ...manages scanning platforms in customer environments...  ...findings to both engineers and executives... 
    Cloud
    Temporary work
    Remote work

    Lumen Inc

    Washington DC
    18 hours ago
  •  ...Job Description Job Description Cloud Security Posture Management SME Falls Church, Virginia. Full...  ...Security Specialty, Azure Security Engineer, or CCSP highly desired....  ...Expert knowledge of cloud security, CSPM platforms, DoD Cloud Computing SRG, Infrastructure... 
    Cloud
    Full time
    Contract work
    Work at office
    Remote work

    ZTI Solutions, LLC

    Falls Church, VA
    17 days ago
  •  ...Conducts risk and vulnerability assessments of...  ...and Authorization Management Program (FedRAMP)...  ...Manages systems security evaluations, audits...  ...support for commercial cloud service...  ...mobile computing platforms, system virtualization...  ...IT security engineering standards, integrated... 
    Cloud
    For contractors
    Remote work

    General Services Administration

    Washington DC
    3 days ago
  •  ...Senior Cloud Platform Security Engineer Job Description Overview CoStar...  ...Guardrails : Enforce security posture across AWS, GCP, and...  ...network policy, and secrets management. Drive sensor coverage...  ...SBOM generation, dependency vulnerability management, build... 
    Cloud
    Full time
    Work at office
    Work from home
    Monday to Thursday

    CoStar Group

    Arlington, VA
    4 days ago
  • Senior Cloud Platform Security Engineer Location: Arlington, VA or Richmond, VA Schedule...  ...Enforce security posture across AWS, GCP, Azure using...  ...network policy, and secrets management. Validate sensor...  ...SBOM generation, dependency vulnerability management, build provenance... 
    Cloud
    Work at office
    Remote work

    CoStar Group, Inc.

    Arlington, VA
    2 days ago
  • $180k - $247.5k

     ...Secure Every Identity, from AI to Human Identity is the key to unlocking the...  ...too, let's talk. Staff Security Engineer - Vulnerability Management, US Public Sector The Okta Security...  .... With the ever-increasing pace of cloud application adoption, companies are... 
    Cloud
    Permanent employment
    Local area
    Worldwide
    Flexible hours

    Okta, Inc.

    Washington DC
    3 days ago
  • $100k - $110k

     ...Description The Sr. Cloud Security Engineer plays a key role in securing...  ...through Cloud Security Posture Management (CSPM) and workload...  ...maintain cloud security platforms, triage and fine-tune alerts...  ...and automate threat and vulnerability management in the cloud using... 
    Cloud
    Temporary work
    Local area
    Visa sponsorship
    Work visa
    Flexible hours

    WTW inc.

    Arlington, VA
    1 day ago
  •  ...Cybersecurity Engineer The Cybersecurity...  ...improves enterprise security controls across cloud, network, endpoint...  ...incident response, vulnerability management, identity and...  ...enterprise security platforms across cloud, on-premises...  ...improve security posture. Five years of... 
    Cloud

    Spry Methods

    Washington DC
    1 day ago
  • $90k - $110k

     ...OCT Consulting is a business management and technology consulting...  ...currently has an opening for a Cloud Security & Compliance Specialist to...  ...systems. Conduct vulnerability and compliance reporting: analyze...  ...Risk, and Compliance (GRC) platforms such as Archer or... 
    Cloud
    Contract work
    Temporary work
    For contractors
    Work experience placement
    Remote work

    OCT Consulting, LLC

    Hyattsville, MD
    12 days ago
  •  ...Senior Information System Security Officer / RMF Lead...  ...provides expert-level Risk Management Framework support,...  ..., contractor-hosted, cloud-hosted, and FedRAMP-aligned...  ..., POA&M updates, risk posture, system-level...  ...continuous monitoring, vulnerability remediation tracking,... 
    Cloud
    For contractors

    R3 Management Services

    Hyattsville, MD
    4 days ago
  •  ...leading-edge security and resilience...  ...or resiliency posture by using industry...  ...risks and vulnerabilities in people, processes...  ...(or manage a highly-skilled...  ...applications, platforms, and third-party...  ...infrastructures, cloud, with a focus...  ...in reverse engineering standalone, thick... 
    Cloud
    Worldwide

    JPMorgan Chase & Co.

    Washington DC
    1 day ago
  •  ...of Information Security specialists...  ...s on-prem and cloud infrastructure...  ...collaborating with engineers to design...  ...identity access management, infrastructure...  ..., and vulnerability management....  ...cloud security posture, suggest improvements...  ...Partner with platform engineering and... 
    Cloud

    Bloomberg Industry Group

    Arlington, VA
    3 days ago
  • $70k - $120k

     ...Analyst IT Vulnerability Management Location: Long Island City...  ...Vulnerability Management - Cloud supports JetBlue's...  ..., and future cloud platforms as adopted. The...  ...Cybersecurity, Cloud Engineering, DevOps, Infrastructure...  ...management, cloud security, CSPM/CNAPP,... 
    Cloud
    Temporary work
    Work experience placement
    Night shift

    JetBlue

    Washington DC
    1 day ago
  •  ...attack surface management. We help enterprises...  ...find and fix vulnerabilities through our...  ...combined PTaaS platform and our Autonomous...  ...strong Sales Engineer with an offensive security background to join...  ..., APIs, cloud, and more Act...  ...for their risk posture Lead Proof of... 
    Cloud
    Remote job

    BreachLock, Inc.

    Washington DC
    1 day ago
  •  ...True Zero Vulnerability Management Position True Zero Technologies,...  ...environments, including cloud and on-site scanning while...  ...a customer-service posture for program office and engineering partners. Job Qualifications...  ...'s degree ~3 years security-related experience. ~... 
    Cloud
    Work at office

    True Zero Technologies, LLC

    Washington DC
    18 hours ago
  • $60k

     ...critical programs across national security, defense, and public service...  ..., applications, cloud platforms, and network environments. Support vulnerability management and compliance activities, including...  ...into performance tracking, risk posture, and security metrics.... 
    Cloud
    Contract work
    Remote work
    Shift work

    MAXIMUS

    Washington DC
    18 hours ago
  • ## Cloud Systems AdministratorApplylocations: Arlington, VAtime type: Full timeposted...  ..., cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance...  ...to provide rapid deployment and management of secure cloud-based engagement kits for cyber... 
    Cloud
    Contract work
    Local area

    Nightwing Group

    Arlington, VA
    18 hours ago
  • $197.3k - $225.1k

    Manager, Offensive Security: Purple Team At Capital One, you'll be...  ...risk by uncovering vulnerabilities and weaknesses in the...  ...information security posture against a broad range...  ...resolution. Engineering & Analytics: Perform...  ...Engineering within a cloud or hybrid environment... 
    Cloud
    Full time
    Part time
    H1b
    Local area

    Capital One

    Mc Lean, VA
    15 days ago
  •  ...seeking a Product Manager SME to work in...  ...The War Data Platform (WDP) is a key initiative...  ...enterprise vulnerability assessment operations...  ...(ACAS), Tenable Security Center, and...  ...across virtualized, cloud, and on premise environments...  ..., network engineers, and... 
    Cloud
    Contract work

    ECS Limited

    Falls Church, VA
    3 days ago
  • $140k - $200k

     ...efficient, resilient, and secure. As an AI-forward...  ...security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects...  ...Staff Technical Program Manager - DoW to join our team. This...  ...and improve security posture Oversee secure architecture... 
    Cloud
    Full time
    Work at office
    Local area
    Remote work

    Zscaler

    Washington DC
    4 days ago
  •  ...Vulnerability Management Team Lead Cherokee-Federal Systems, LLC...  ...across hybrid on-prem and cloud environments. The...  ...infrastructure and security tools, apply critical...  ...the agency's security posture and lead a small team...  ...Analyst Cybersecurity Engineer Security... 
    Cloud
    Remote work

    Cherokee Federal

    Alexandria, VA
    18 hours ago
  • $155k - $220k

     ...and experienced AWS Cloud Assurance Manager to lead the design...  ...of the Cloud Security Assurance (CSA) program...  ...in cloud security posture management, vulnerability identification and...  ...with Cloud Engineering, DevOps, Architecture...  ...controls into cloud platforms, standards, and delivery... 
    Cloud
    Shift work
    Day shift

    Koitecc Solutions

    Washington DC
    3 days ago
  •  ...Arlington, VA, is looking for a Senior Cybersecurity Engineer to implement and advance cybersecurity practices...  ...contributing to cybersecurity architecture, executing vulnerability management, and integrating security into development processes. The ideal candidate will... 
    Cloud
    Full time
    Work at office

    Fluence Energy

    Arlington, VA
    1 day ago
  • $70 - $80 per hour

     ...seeking a Senior Security Analyst / Vulnerability Management Lead to join our security...  ...(on-prem and cloud). • Analyze, prioritize...  ...communicate risk posture and remediation...  ...science, cyber security, engineering, or a related...  ...Familiarity with cloud platforms (AWS and GCP) and... 
    Cloud
    Contract work
    Temporary work
    Work experience placement
    3 days per week
    Bethesda, MD
    6 days ago
  •  ...increasing threats and vulnerabilities in this digital age....  ...) is seeking a DoW Cloud Security ISSM who thrives in the...  ...cyber leaders, engineers, and assessors. This...  ...outcomes—this is your platform to lead from the front...  ...compliance and risk posture through Continuous Monitoring... 
    Cloud
    Permanent employment
    Remote work

    Tetrad Digital Integrity LLC

    Washington DC
    17 days ago
  • A federal cybersecurity solutions provider in Washington is seeking a Senior Cloud ISSO to oversee the security configuration and management of information systems. The ideal candidate will have at least five years of experience as an ISSO at a cleared facility, a cloud... 
    Cloud

    Redtracetech

    Washington DC
    4 days ago
  •  ...Everforth ECS is seeking a Cloud Security Engineer to work in the...  .... The War Data Platform (WDP) is a key...  ...with a focus on patch management, continuous monitoring...  ...sustaining the security posture, authorization...  ...enclaves by operating vulnerability scanning workflows,... 
    Cloud
    Contract work

    ECS Limited

    Falls Church, VA
    18 hours ago
  • $86.8k - $198k

     ...scalability, resilience, and robust security controls. Integrate Axonius with...  ...as Active Directory, endpoint management tools, cloud platforms, vulnerability scanners, CMDBs, identity providers...  ...Participate in the full systems engineering lifecycle, including requirements... 
    Cloud
    Work at office
    Local area
    Remote work

    Phase2 Technology

    Washington DC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to SVP, Vulnerability Management & Cloud Security Posture Platform Engineering. Be the first to apply!