Cloud Security Vulnerability Management Program Specialist ensuring secure configurations of cloud workloads. Focused on vulnerability management, monitoring, and risk remediation across environments at Bank of America.
Responsibilities
Ensure cloud workloads are protected and monitored in alignment with CSA security standards and defined baselines.
Maintain continuous visibility into workload security posture across virtual machines, containers, and compute platforms.
Identify workload vulnerabilities, misconfigurations, and insecure operating system or platform settings.
Monitor runtime activity to detect suspicious behavior, privilege escalation, policy violations, and drift from security baselines.
Build, maintain, and tune vulnerability detections aligned to vulnerability management and runtime protection requirements.
Support onboarding and operationalization of cloud security tooling across environments and workload types.
Partner with infrastructure, DevOps, and platform teams to drive remediation of workload security risks.
Triage vulnerability findings, assess risk and impact, and support prioritization of remediation efforts.
Provide workload security posture reporting, metrics, and risk transparency to CSA leadership.
Contribute to workload security standards, baseline documentation, and audit readiness activities.
Requirements
Understanding of Cloud Native security concepts and runtime security principles.
Experience identifying and managing workload vulnerabilities and insecure configurations.
Knowledge of cloud compute services, operating systems, and containerized workloads.
Familiarity with vulnerability management and runtime detection techniques.
Strong analytical, documentation, and collaboration skills.
Experience supporting cloud or workload security assurance programs.
Principal Cybersecurity role at AT&T focusing on cloud security feature design and implementation. Leading innovative security solutions in conjunction with modern cloud technologies and Agile methodologies.
Security Architect delivering secure solutions for Defence and National Security at SiXworks. Supporting agile teams in technical projects like Kubernetes and security risk management.
CIS Security Manager responsible for EID’s information security strategy and compliance. Ensuring protection of information assets and promoting security culture across the organization.
Cyber Security Subject Matter Expert at CACI supporting a new DoD contract. Working on cloud security with an emphasis on system security engineering and risk management.
Cybersecurity Engineer developing solutions for complex security challenges protecting data and networks. Implementing next generation security solutions for government and commercial clients in hands - on roles.
Information Security Manager responsible for security governance and risk management. Engaging with technical teams for compliance with security standards and best practices.
Security Access Control Specialist at AMERICAN SYSTEMS managing database queries, document processes, and security measures. Supporting federal government programs through effective security operations in McLean, VA.
Customer Support Coordinator delivering technical support for complex security solutions. Collaborating with internal teams and external stakeholders to resolve service incidents while ensuring high performance standards.
Site Security Specialist tasked with implementing security measures for client at Richmond site. Acting as point of contact for security team and client management.