BNY logo
BNYPosted 2 weeks ago

Vice President, Information Security

On-siteNew York City, New York, United States or New York, United States

Part TimeSenior LevelEnterpriseFinancial Services

Job Summary

Implement cloud security controls across AWS, Azure, and GCP environments while enabling AI use cases for threat detection and posture analysis. Drive security integration into CI/CD pipelines and implement policy-as-code patterns to ensure secure-by-design deployments. Manage Cloud Security Posture Management capabilities to identify misconfigurations, prioritize remediation, and reduce manual processes through automation. Partner with engineering, DevOps, and governance teams to embed security into workflows and improve standards adoption. Support detection, prioritization, and remediation of risks using Wiz, Terraform, and Splunk to align with NIST standards.

Required Qualifications

  • 6-10 years of experience in cloud security engineering, security engineering, DevSecOps, infrastructure security, or a related technical security role
  • Proven experience as an AI enabler for cloud security by identifying, assessing, and promoting AI use cases
  • Experience with security automation, orchestration, analytics, and AI-driven security tooling
  • Hands-on experience working with and securing workloads in AWS, Azure, or GCP
  • Working knowledge of cloud security principles across IAM, networking, encryption, logging, secrets management, workload protection, and secure service configuration
  • Experience implementing security controls for cloud-native services and modern application environments
  • Familiarity with Cloud Security Posture Management (CSPM) concepts and tools such as Wiz
  • Experience with cloud-native policy and posture tools, including Azure Policy and Microsoft Defender for Cloud
  • Experience with Infrastructure as Code and automation using tools such as Terraform
  • Bachelor's degree in computer science, engineering, cybersecurity, or related discipline, or equivalent practical experience
  • Familiarity with CIS Benchmarks, CSA CCM, OWASP, or NIST CSF
  • Relevant certifications such as AWS Security Specialty, Azure Security Engineer Associate, Google Professional Cloud Security Engineer, or CCSP

Desired Qualifications

  • Exposure to container and Kubernetes security, API security, or vulnerability management is a plus

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce