What are the responsibilities and job description for the DLP Could Security Engineer position at OneTen?
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
Role Overview:
As a DLP Cloud Security Architect, you will be responsible for designing, implementing, and maintaining DLP security measures within cloud environments to protect Bank of America's digital assets and data. This role involves collaborating with cross-functional teams to develop and enforce security policies, identify vulnerabilities, and create robust security solutions for cloud-based systems
Key Responsibilities:
- Develop and implement a comprehensive cloud DLP security strategy that aligns with the organization's goals and compliance requirements.
- Design and architect secure cloud solutions, considering aspects such as network security, identity and access management (IAM), encryption, and data protection
- Continuously monitor cloud environments for security threats, vulnerabilities, and anomalies. Guide implementation of proactive measures to address security concerns effectively
- Ensure that cloud security practices adhere to industry standards and regulatory compliance, such as GDPR, HIPAA, or SOC 2.
- Establish reporting routines that provide visibility to effective execution of long-term maturity/strategic plans.
- Consult with control owners and others on developing complete and repeatable control processes including control documentation such as procedures, control evidence, narratives, control matrices, metrics etc.
- Develop high-level presentations tailored for executives and stakeholders.
Required Skills:
- Minimum of 10 years of experience in information security, with at least 5 years focused on cloud security. Prior experience as a Security Architect or similar role is highly desirable
- Experience with developing performance baselines for DLP tools
- Proficiency in cloud platforms such as AWS, Azure, or Google Cloud, including knowledge of their security services and best practices.
- Strong understanding of security principles, protocols, and technologies, with expertise in areas like network security, DLP, and encryption.
- Exceptional analytical and problem-solving abilities, along with the ability to assess complex security risks and devise effective solutions (e.g. you should be comfortable working on problems that have a fair amount of ambiguity at the onset).
- Experience in administration of a DLP tool which includes configuring policies, upgrading and disaster recovery of DLP operations planning
- Understanding of technical and organizational security vulnerabilities, threats, and risks
- Exceptional communication skills and the ability to explain yourself concisely and accurately.
- Ability to troubleshoot and solve complex problems rapidly.
- Certified Cloud Security Professional (CCSP) preferred or ability to obtain within 3 months.
Desired Skills:
- Experience operating and tuning DLP technologies
- Experience with CASB solutions, Microsoft Purview,, Proofpoint, M365
- Cloud platform familiarity as it relates to DLP solutions (AWS, Azure)
- Operating Systems (Windows/Mac/Linux)
- Basic Networking - VPN, TCP/UDP protocols
- Basic Encryption - SSL, AES, IPsec, Key Management, Certificates
- Ancillary Services - DNS, Web Server, LDAP/AD, Database technologies
- Intermediate Level Scripting - e.g., Python, PowerShell
If you are a seasoned professional with a passion for shaping secure cloud operations and want to be part of a forward-thinking organization, we encourage you to apply for this exciting opportunity.
Enterprise Job Description: This job is responsible for developing and managing enterprise-wide information security policies, procedures, and standards. Key responsibilities include applying cyber security knowledge and an understanding of laws, rules and regulations to maintain and manage policies, execute and streamline processes, identify gaps in coverage, and manage risk reduction in a policy governance lifecycle. Job expectations include aligning processes and controls to requirements and reporting on adherence to the enterprise policy.
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
Shift:
1st shift (United States of America)
Hours Per Week:
40
Security Engineer
Talent Groups -
Plano, TX
Security Engineer
Ampcus, Inc -
Irving, TX
Security Engineer
Beau Roi -
Frisco, TX