Information Security Cloud Remediation Lead
3 weeks ago
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us
Job Description:
An experience senior security professional with expertise in cloud security. The Senior Information Security Consultant will be part of the Global Information Security (GIS) Cyber Security Assurance (CSA) Infrastructure Remediation Governance team. In this role, you will play an integral part in ensuring security of the cloud infrastructure by governing and overseeing remediation activities. As the Cloud Remediation Lead, you will collaborate closely with cross functional teams and stakeholders in IT, business technology groups, Risk Partners, and GIS teams across their respective LOBs. You will present key findings, progress, and escalate issues to GIS and LOB leadership on a regular basis and be responsible for influencing the stakeholders to prioritize/execute risk management issues and lead remediation efforts.
Key responsibilities:
- Lead and oversee remediation efforts for identified vulnerabilities and compliance/configuration violations in the cloud infrastructure environment.
- Analyze findings from security monitoring systems such as Aqua, Qualys Scanning, Network Configuration Compliance, and Security Compliance, to identify and direct a respond to all potential security incidents and data breaches.
- Review all current and existing vulnerabilities for active and acceptable remediation plans. These plans may be reviewed with LOB point of contacts, Application Owners, Data Owners / Custodians or System Administrators. Verify that remediation plans are implemented per remediation plan and GIS guidelines. Review and identify any potential gaps that may result in possible audit issues.
- Drive remediation of vulnerabilities and misconfiguration issues in public and private cloud
- Design and enhance vulnerability management process for Public and Private cloud.
- Serve as a key resource in improving the governance of end-user remediation and act as the subject matter expert of end-user remediation governance.
- Review all vulnerability scan results to identify all security risks and report on findings to appropriate partners.
- Respond to relevant requests received from stakeholders, or representatives of stakeholders, for investigation of potential reporting issues.
- Provide all necessary reports and presentations on the status of remediation efforts and all gaps and potential obstacles or issues to management and technical staff.
- Performs other related duties incidental to the work described herein and all special assignments as needed or assigned.
Required Skills:
- 6+ years of experience in information security and/or project management roles
- Knowledgeable with cloud-native application development and application modernization
- Experience with one or more of Cloud Service Provider (i.e. AWS, and Azure) products and services
- Excellent communication skills, and the ability to understand and translate cyber security threats from a technical perspective to business-line understanding and execution; ability to communicate risks and propose counter measures to senior technology executives
- Well-developed analytic, qualitative, and quantitative reasoning skills and demonstrated creative problem-solving abilities with complementary skills for log analytics and diagnosis skills utilizing regular expression and/or scripting
- Ability to work independently on initiatives with little oversight. Motivated and willing to learn
- Broad technical background utilizing security technologies, such as Cloud, Server and workstation Operating Systems, Network Security, Vulnerability Scanning Engines, and Compliance Management solutions
- Strong PC skills including Microsoft Office applications
- Proven project management Skills
Desired Skills:
- Bachelors and/or Master s degree in Computer Science, Information Technology or related field
- Strong analytical skills/problem solving/conceptual thinking
- Ability to effectively communicate with Technical and Non-Technical business owners
- Lead internal efficiencies projects and development
Enterprise Job Description:
This job is responsible for partnering with leaders to balance the needs of the business while ensuring information security and organizational risks are appropriately identified and managed to drive uncompromising cyber security protection. Key responsibilities include leading in-depth information security risk-based discussions and acting as an integrated business partner with cross-functional leaders to provide blended security and business expertise to ensure appropriate management of information security risks.
Shift:
1st shift (United States of America)Hours Per Week:
40-
Cloud Remediation Lead
4 weeks ago
Chicago, Illinois, United States Bank of America Full timeJob Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...
-
Cloud Remediation Lead
3 weeks ago
Chicago, Illinois, United States Bank of America Full timeJob Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...
-
Cloud Security Engineer
5 days ago
Chicago, Illinois, United States TAG - The Aspen Group Full timeThe Aspen Group (TAG) is one of the largest and most trusted retail healthcare business support organizations in the U.S.and has supported over 20,000 healthcare professionals and team members at more than 1,300 health and wellness offices across 48 states in four distinct categories: dental care, urgent care, medical aesthetics, and animal health.Working in...
-
Senior Director, Information Security
3 weeks ago
Chicago, Illinois, United States GoHealth Full timeGoHealth Intro:GoHealth is a leading health insurance marketplace and Medicare-focused digital health company. Through the efficient, multi-tiered guidance of our highly specialized licensed insurance agents, GoHealth meets Medicare consumers where they are in their enrollment journeys and empowers them to choose the plan and carrier best suited for their...
-
Senior Director, Information Security
3 weeks ago
Chicago, Illinois, United States GoHealth Full timeGoHealth Intro:GoHealth is a leading health insurance marketplace and Medicare-focused digital health company. Through the efficient, multi-tiered guidance of our highly specialized licensed insurance agents, GoHealth meets Medicare consumers where they are in their enrollment journeys and empowers them to choose the plan and carrier best suited for their...
-
Information Security Technical Consultant
4 weeks ago
Chicago, Illinois, United States Zurich Insurance Company Ltd. Full timeZurich North America is currently hiring an Information Security Technical Consultant and this person will work in a hybrid schedule at the Schaumburg, IL North America Headquarters. This person will report to a Cybersecurity Senior Manager. Responsibilities:Actively participate in the security design and regular activities for backup and recovery system...
-
Information Security Technical Consultant
3 weeks ago
Chicago, Illinois, United States Zurich Insurance Company Ltd. Full timeZurich North America is currently hiring an Information Security Technical Consultant and this person will work in a hybrid schedule at the Schaumburg, IL North America Headquarters. This person will report to a Cybersecurity Senior Manager. Responsibilities:Actively participate in the security design and regular activities for backup and recovery system...
-
Senior Cloud Security Engineer
5 days ago
Chicago, Illinois, United States Tempus Full timePassionate about precision medicine and advancing the healthcare industry?Recent advancements in underlying technology have finally made it possible for AI to impact clinical care in a meaningful way. Tempus' proprietary platform connects an entire ecosystem of real-world evidence to deliver real-time, actionable insights to physicians, providing critical...
-
Cyber Security Consultant
5 days ago
Chicago, Illinois, United States Zurich Insurance Company Ltd. Full timeZurich North America is currently hiring a Cloud Security Consultant and this person will work in a hybrid schedule at the Schaumburg, IL NA Headquarters. This person will report to a Cybersecurity Senior Manager.Responsibilities: Consultative role, write gap analysis, documentation, work with operations to share knowledge and drive remediation, consult with...
-
Information Security Analyst
3 weeks ago
Chicago, Illinois, United States VTS Full timeAs an Information Security Analyst you will assist more senior members of the team in managing day to day security operations, including Investigating & resolving alerts & reports from Endpoint Detection & Response tools (EDR, CrowdStrike), mail filtering tools (Checkpoint Harmony), and others.You will also respond to client requests for sensitive...
-
Information Security Analyst
4 weeks ago
Chicago, Illinois, United States VTS Full timeAs an Information Security Analyst you will assist more senior members of the team in managing day to day security operations, including Investigating & resolving alerts & reports from Endpoint Detection & Response tools (EDR, CrowdStrike), mail filtering tools (Checkpoint Harmony), and others.You will also respond to client requests for sensitive...
-
Data Security Classification Engineer
5 days ago
Chicago, Illinois, United States TEKsystems Full timeTop Skills' Details1. DevOps and Software Engineering background with an understanding of infrastructure deployments and how to implement scaled scanning methodologies for data classification 2. Ability to review current data classification program and develop data security remediation visualization across an organization 3. Experience utilizing and...
-
Senior Information Security Analyst
5 days ago
Chicago, Illinois, United States Potbelly Sandwich Works Full timeWe are currently looking for a skilled Senior Information Security Analyst to join our team. This role involves utilizing technical expertise and knowledge of information systems to develop and implement an information security risk management progra Security Analyst, Security, Information, Cloud Architect, Analyst, Senior, Restaurant, Technology
-
Security Technology Lead
5 days ago
Chicago, Illinois, United States Apex Systems Full timeJob Title: Privileged Access Management EngineerCompany: Apex SystemsJob Description:The client is in search of a dedicated Privileged Access Management Engineer with a flair for innovation to contribute to the design and enhancement of cybersecurity tools and technologies with the incorporation of new architectural features while upholding the security of...
-
Information Security Architect
3 weeks ago
Chicago, Illinois, United States AbbVie Full timeCompany DescriptionAbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas immunology, oncology, neuroscience, and eye care and products and services in our...
-
Information Security Architect
3 weeks ago
Chicago, Illinois, United States AbbVie Full timeCompany DescriptionAbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas immunology, oncology, neuroscience, and eye care and products and services in our...
-
AWS Cloud Architect- Network and Security
3 weeks ago
Chicago, Illinois, United States Cognizant Full timeAWS Cloud Architect- Network and Security Locations: Anywhere in United States (remote) Overview: We are looking for AWS Cloud Architect for an immediate need. This is a remote position, and the candidate will have regular interactions with various client leaders. Roles & Responsibilities: · Experience Designing and implementing scalable AWS solutions...
-
Chicago, Illinois, United States McDonald's Global Technology Full timeJob DescriptionCompany Description:McDonald's is proud to be one of the most recognized brands in the world, with restaurants in over 100 countries that serve 70 million customers daily. As the global leader in the food service industry, our legacy of innovation and hard work continues to drive us.From drive thru updates to delivery to mobile order and pay,...
-
Chief Information Security Officer
3 weeks ago
Chicago, Illinois, United States Origami Risk Full timeThe Chief Information Security Officer (CISO) ensures the security and integrity of the organization's information systems and data. Origami Risk's security program responsibility includes measuring, assessing, reporting, and tracking risks to the organization to support informed risk management decisions by executive leadership. The CISO oversees daily...
-
Chief Information Security Officer
4 weeks ago
Chicago, Illinois, United States Origami Risk Full timeThe Chief Information Security Officer (CISO) ensures the security and integrity of the organization's information systems and data. Origami Risk's security program responsibility includes measuring, assessing, reporting, and tracking risks to the organization to support informed risk management decisions by executive leadership. The CISO oversees daily...