Expoint – all jobs in one place
Finding the best job has never been easier

Sr Network Security Engineer Cloud Exp Required jobs at Bank Of America in United States, Boston

Discover your perfect match with Expoint. Search for job opportunities as a Sr Network Security Engineer Cloud Exp Required in United States, Boston and join the network of leading companies in the high tech industry, like Bank Of America. Sign up now and find your dream job with Expoint
Company (1)
Job type
Job categories
Job title (1)
United States
State
Boston
13 jobs found
Yesterday
BOA

Bank Of America Identity Access Management IAM Security Administration Speci... United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information...
Description:


This job is responsible for developing and supporting enterprise-wide information security policies, procedures, and standards. Key responsibilities include applying knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies, validate alignment of processes and controls to requirements, and report on adherence to policy requirements. Job expectations include using data analytics and partnering with internal teams to verify policy compliance, identify gaps in coverage, and support remediation activities.

LOB Overview:

  • Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Responsibilities:

  • Support the implementation and ongoing management of access provisioning solutions across enterprise platforms, ensuring alignment with security policies and regulatory requirements.

  • Apply working knowledge of Active Directory , Microsoft Azure, Amazon Web Services (AWS), and Mainframe , Oracle and SQL databases , file systems , and enterprise storage , with a focus on enforcing least privileged access .

  • Assist in maintaining access control policies , group structures , and role-based access models to support scalable and secure provisioning.

  • Collaborate with application owners and infrastructure teams to implement access requirements for new and existing systems.

  • Participate in automation initiatives to streamline provisioning and de-provisioning workflows , integrating with identity governance platforms and HR systems and IAM controls.

  • Conduct periodic access reviews , entitlement audits , and certification campaigns to ensure compliance and identify access anomalies.

  • Investigate and remediate access-related incidents, working closely with cybersecurity and risk teams to address vulnerabilities and improve controls.

  • Stay current with emerging IAM technologies, regulatory changes, and industry best practices to continuously enhance the access provisioning program.

  • Prepare metrics, reports, and recommendations to senior leadership and audit teams regarding access provisioning effectiveness and risk posture.

Required Qualifications:

  • 3-5+ years experience in Identity and Access Management, with a focus on access provisioning across enterprise environments.

  • Working knowledge of Active Directory , Microsoft Azure AWS, Mainframe , Oracle Database , SQL Server , Windows and Unix file systems , and enterprise storage platforms .

  • Understanding of IAM governance frameworks , platforms ( e.g., SailPoint, Saviynt ) role-based access control (RBAC) , group policy management , and privileged access management (PAM) tools, CyberArk, Hashi Corp and Beyond Trust.

  • Experience with automated provisioning/de-provisioning workflows , including integration with HR systems to demonstrate proficiency in scripting and automation (e.g., PowerShell, Python) to support scalable access provisioning and audit processes.

  • Familiarity with cloud infrastructure security and access controls in hybrid environments, particularly within Microsoft Azure AWS and Oracle Cloud .

  • Ability to conduct access reviews , entitlement audits , and risk assessments to identify and remediate access-related vulnerabilities.

  • Excellent analytical, problem-solving, and communication skills, with the ability to collaborate across technical and business teams.

1st shift (United States of America)

Show more
08.12.2025
BOA

Bank Of America Sr Network Security Engineer Cloud exp required United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Serves as a subject matter expert for one or more engineering initiatives and is the point of contact for clients. Contributes to defining and ensuring security requirements are met based...
Description:

Job Description:

We are seeking a skilled and motivated Network Security Engineer to join our GIS Core Engineering team. The Network Security Engineer is a key individual contributor that has accountability for researching, designing, engineering, implementing, and supporting network security solutions. You will utilize in-depth technical knowledge and business requirements to help design and implement a secure solution to meet customer / client needs while protecting the Bank's assets. Develops and implements security standards, procedures, and guidelines for multiple platforms and diverse environment. Exercises judgment within broadly defined practices and policies in selecting methods, techniques, and evaluation criterion for obtaining results.

It is imperative that you have a solid knowledge of network security domains such as DDoS, Segmentation, Network Access, Web Content Inspection, Perimeter Defense, and Network monitoring. You will regularly collaborate with experts both in country and in other regions, so excellent communication skills are very important. If you are seeking a demanding role within Global Information Security (GIS) and have the required skills, this will be a great opportunity for you. Typically, applicants should have 5 to 7 years of cybersecurity or engineering experience.

Key Responsibilities:

  • Serves as a subject matter expert for one or more engineering initiatives and is the point of contact for clients

  • Contributes to defining and ensuring security requirements are met based on BofA standards and Policies.

  • Incorporates basic architecture components including threat-models, diagrams, and technological requirements for in solution development.

  • Understands and utilizes basic network, virtualization, and datacenter technologies for deployment strategies.

  • Leads the delivery of the major engineering milestones and acts as the critical decision maker with regards to technical design and implementation

  • Documents and communicates required information for deployment, maintenance, support, and business functionality.

  • Adheres to team delivery/release process and cadence pertaining to solution deployment and release.

  • Identifies and raises risks or potential vulnerabilities at all stages of the security-engineering process

  • Works closely with a diverse set of stakeholders with varying priorities to debate and negotiate paths forward

  • Navigates and works effectively across a complex, geographically dispersed organization

Required Qualifications:

· Strong fundamental understanding of information security principles, risks, and controls and of cyber security operations functions.

· Knowledge of how Web Based internet facing applications are deployed and set up and experience architecting complex enterprise cybersecurity solutions for data in transit across web, email and b2b environments. Including technology that provides proxy control, malware inspection, SSL termination, and Data Loss Prevention (DLP).

· Understanding of how Content Delivery Networks (CDNs) work, how they are designed to provide application services, and how they are used to mitigate network security threats.

· Detailed knowledge of Network Security solutions such as DDOS mitigations techniques, WAF, etc.

· Knowledge Solid experience with designing, evaluating, and deploying network security solutions for outbound, inbound, and lateral network traffic. Experience engineering web content inspection solutions using tools such as Skyhigh Web gateway, Trellix (Fireeye), and F5 LTM/APM/SSLO.

· Experience deploying proxies in the cloud (AWS) and experience with SASE platforms

· Experience coordinating delivery of project/changes milestones, ensures projects stay on target, escalating and identifying roadblocks.

· Ability to quickly diagnose the problem areas and come up with solutions and/or workarounds

· Ability to translate business needs into requirements and experience understand analyzing the technical feasibility and design against the requirements.

Effective communication skills and must be comfortable in delivering messages across a wide spectrum of individuals having varying degrees of technical understanding.

· Ability to work independently on various initiatives with little oversight.

· Strong analytical skills/problem solving/conceptual thinking.

· Motivated and willing to learn.

Desired Qualifications

· Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).

· Experience deploying security solutions in virtual environments such as VMWare, AWS, Azure

· Experience integrating network security solutions with IAAS, PAAS and SAAS components such as Zscaler, O365, etc.

· Experience deploying security solutions in email environments.

· Experience with Data Governance, Model Risk Management and Application Management.

· Ability to work with Technical and Non-Technical business owners.

· Experience in large enterprise environments.

· Assist with internal efficiencies projects and development.

· Familiarity with industry standard endpoint tools.

· Relevant certifications: CCNA, CCNP, CISSP, or CEH.

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more

These jobs might be a good fit

08.12.2025
BOA

Bank Of America Identity Access Management IAM Process Analyst Engineer United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information...
Description:

LOB Summary:

  • Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Role Description:

  • This role will be responsible for designing and implementing modernized processes that optimize Identity and Access Management workflows and cross-functional integration with systems that are deeply interconnected with identity management (i.e. HR, IT, Security). The ideal candidate will possess strong organizational, leadership, and communication skills, with the ability to engage senior leaders and teams across the enterprise. In this role, you will partner with stakeholders in Global Information Security (GIS) and the bank to drive end-to-end identity processes aligned with strategic organizational goals. You will ensure transparency in work activities, alignment with business and technology strategies, and establish governance structures for effective delivery oversight.

  • Responsibilities include leading end-to-end process reviews with the Identity and Access Management and upstream/downstream teams to identify process gaps and risks. Using data-driven analysis, you will recommend strategic improvements with measurable outcomes. You will also provide thought leadership with respect to identifying inefficiencies, document current and future state processes, and develop user guides and metrics to translate identity insights into to optimal user experience while meeting the bank’s security standards.

  • Designs, develops, tests, implements, and integrates Identity and Access Management (IAM) processes that support operational transformation of systems and solutions.

  • Define, document, and build detailed workflows, SOP’s, and documentation that enable automation and scalability.

  • Establish sustainable long-term plans with clear, proactive, and measurable targets.

  • Serve as a liaison between Identity and Access Management, Human Resources, aligned IT teams, Compliance, and Operations teams to ensure alignment

  • Develop processes that incorporate input from senior leadership, stakeholders, and partners to ensure alignment of priorities and actions.

  • Maintain and enhance strategic planning materials, including deep dives and book of work documentation.

  • Continuously seek innovative solutions, challenge the status quo, and drive process improvements using data analysis and process modeling techniques.

  • Identify process gaps and risks and collaborate with partners to develop mitigation plans.

  • Monitor process performance using metrics and drive continuous improvement initiatives.

  • Ensure compliance with internal policies and external regulations through robust process design.

  • Act as a subject matter expert in process engineering and identity system integration.

  • Champion a culture of continuous improvement by applying Lean and Six Sigma methodologies.

  • Communicate strategic improvement ideas and lead initiatives aligned with business priorities.

  • Deliver effective process standardization with a human-centered approach, enabling technology teams to implement optimized solutions.

  • Organize and communicate information clearly to keep cross-functional stakeholders aligned and informed.

Required Qualifications:

  • 5+ years of experience in process analysis and engineering, business architecture, or identity/access management

  • Strong understanding of IAM platforms (e.g., Okta, SailPoint, Active Directory, etc.)

  • Experience integrating identity systems with HR platforms (e.g., Workday, SAP)

  • Knowledge of regulatory requirements and risk management practices

  • Formal training/certification in Lean, Six Sigma and/or other process quality methodologies

  • Experience using Visio or other Business Process Mapping Notation (BPMN) tools

  • Excellent analytical, communication, and cross-functional collaboration skills.

Desired Qualifications:

  • Passion for continuous improvement by using your experience and expertise to improve existing processes

  • Ability to utilize logic & reason to navigate complex problem solving

  • Ability to navigate complex security technology environments

  • Experience in financial services or highly regulated industries

  • Familiarity with cloud-based identity solutions and zero trust architectures

1st shift (United States of America)

Show more

These jobs might be a good fit

07.12.2025
BOA

Bank Of America Senior Network Security Engineering Manager United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience). Experience deploying security solutions in virtual environments such as VMWare, AWS, Azure. Experience integrating network security solutions...
Description:

Job Description:

This job is responsible for supporting multiple network security engineering efforts to deliver enterprise security capabilities globally. Key responsibilities: include serving as a subject matter expert of security technology, overseeing major engineering milestones including the design, development, and implementation of systems, and reporting on key metrics. Job expectations include executing on engineering initiatives, partnering with cross-functional teams, solving complex issues within BofAs global network footprint, and mentoring/managing team members.

This role is for a Senior Network Engineer. This role participates and leads design discussions, engineering and implementation of network activities. This includes vendor selection, testing, technical support, systems/network design, and risk reduction activities. This person is responsible for components of complex engineering and/or analytical tasks and activities, they assist in establishment of input/output processes and working parameters for hardware compatibility and coordination of subsystems design and integration of total system. They will serve as a fully seasoned/proficient technical resource and technical subject matter expert. This role will have direct reports and will also influence and direct activities of a team related to special initiatives or operations. Provides input on staffing, budget, and personnel. Typically 5 or more years of systems engineering experience.

Key Responsibilities:

• Contribute to defining and ensuring security requirements are met based on BofA standards and Policies.

• Incorporates basic architecture components including threat-models, diagrams, and technological requirements for in solution development.

• Understand and utilize basic network, virtualization, and datacenter technologies for deployment strategies.

• Work across technology teams to understand and aid in the delivery of system requirements.

• Build and improve processes supporting system transformation, structures, quality controls, dependency, and workload management.

• Perform/Implement existing test suites (integration, regression, and performance), analyze test reports, identify any test issues/errors, and triage the underlying cause.

• Document and communicate required information for deployment, maintenance, support, and business functionality.

• Adhere to team delivery/release process and cadence pertaining to solution deployment and release.

• Identify gaps in environment management standards adherence and work with appropriate partners to develop plans to close gaps.

Required Qualifications:

• 10+ years of experience in technology, preferably in network/infrastructure

• 5+ years of experience in Network Security

• 5+ years of experience in managing teams

• Expertise in Network design for hybrid cloud implementations and experience with various network security tools

• Experience in deploying large-scale, global projects and programs

• Familiarity with IT security and risk management practices

• Leadership skills and qualities which enable you to work with peers and various levels of management

• Effective communication skills and motivation/willingness to learn

Desired Skills:

  • Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).

  • Experience deploying security solutions in virtual environments such as VMWare, AWS, Azure

  • Experience integrating network security solutions with IAAS, PAAS and SAAS components such as Zscaler, O365, etc.

  • Experience deploying security solutions in email environments.

  • Experience with Data Governance, Model Risk Management and Application Management.

  • Ability to work with Technical and Non-Technical business owners.

  • Familiarity with industry standard endpoint tools.

  • Relevant certifications: CCNA, CCNP, CISSP, or CEH

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more

These jobs might be a good fit

07.12.2025
BOA

Bank Of America Sr Credit Underwriter-Global Leasing United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Evaluates credit worthiness and provides analysis and decisioning on whether a client should receive a credit facility. Partners with Credit Officers, Relationship Management, and Risk teammates to assess and deliver...
Description:

Job Description:

Job Description:
This job is responsible for performing risk assessment and repayment capacity analysis (i.e., financial, borrower, industry, etc.) and preparing transaction justification for moderately to highly complex transactions with limited oversight. Key responsibilities include documenting credit analysis, independently assessing historic and projected borrower financial information, evaluating adherence to policy and procedure, providing loan structure analysis and recommendations, and monitoring portfolio performance.The Sr. Credit Underwriter uses this client knowledge to assess the appropriateness of existing solutions and to propose optimal financing alternatives or additional financing solutions. Directly accountable for managing credit quality and the approval process through their interaction with Risk Management Officers and Senior Management.

Responsibilities:

  • Evaluates credit worthiness and provides analysis and decisioning on whether a client should receive a credit facility
  • Partners with Credit Officers, Relationship Management, and Risk teammates to assess and deliver credit solutions
  • Monitors the client's operating performance and financial condition, proactively identifying issues and opportunities
  • Delivers financial modeling, loan structure, industry, economic, and other analysis to team members to support the loan decision-making process
  • Ensures adherence to credit policies, guidelines, procedures, and applicable regulatory requirements

Required Qualifications:

  • 7+ yrs commercial credit experience
  • Must have equipment finance experience
  • Experience in the analysis and structuring of complex transactions
  • Strong credit and risk analysis skills
  • Strong presentation, structuring and financial statement analysis skills
  • Proven ability to analyze, interpret and negotiate third party documentation
  • Proven ability to identify trends and emerging risks in underwriting and client selection

Desired Qualifications:

  • Undergraduate degree in finance or accounting.
  • MBA or CFA preferred

Skills:

  • Attention to Detail
  • Credit and Risk Assessment
  • Financial Analysis
  • Underwriting
  • Written Communications
  • Analytical Thinking
  • Credit Documentation Requirements
  • Financial Forecasting and Modeling
  • Recording/Organizing Information
  • Business Acumen
  • Collaboration
  • Collateral Management
  • Loan Structuring
  • Prioritization
1st shift (United States of America)

Show more

These jobs might be a good fit

19.11.2025
BOA

Bank Of America Identity Access management IAM Mainframe Security United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Implement and maintain security administration and access policies using RACF, ACF2, or Top Secret. Enforce least privilege and role-based access control (RBAC). Ensure multi-factor authentication for privileged users. Ensure that...
Description:

LOB Overview:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Role Description:

The Mainframe Security Administration Manager leads a team of analysts responsible for managing secure access to mainframe systems. This role requires a blend of technical acumen in mainframe security mechanisms (RACF, ACF2, Top Secret), strong governance expertise including knowledge of industry standards, and leadership of team members as a key stakeholder within Information Security and the broader IT organization.

Access Control Management

  • Implement and maintain security administration and access policies using RACF, ACF2, or Top Secret.

  • Enforce least privilege and role-based access control (RBAC).

  • Ensure multi-factor authentication for privileged users.

  • Ensure that privileged access and encryption policies are enforced.

Compliance & Auditing

  • Align security administration and access controls with regulatory frameworks (SOX, UCAL and PWC applications).

  • Maintain detailed logs and audit trails for all access request and administrators provisioning activities.

  • Utilize tools such as Vanguard Resource Administrator (VRA) for forensic analysis and Report Analyzer for reporting.

Security Governance

  • Monitor for unauthorized access and potential data leakage.

  • Conduct regular access reviews and security assessments.

  • Integrate with Identity and Access Management (IAM) systems for centralized governance.

Team Management

  • Lead and mentor a team of mainframe security analysts.

  • Ensure team proficiency in RACF, Top Secret, and z/OS environments, including by participating in learning opportunities and communicating with vendors

  • Promote automation of repetitive provisioning tasks to enhance efficiency.

  • Oversee ticketing systems integrated with IAM workflows for request tracking, Quality Assurance validation for efficiency and remediation.

Training & Development

  • Provide ongoing training on evolving security threats and compliance requirements, process changes.

  • Set Global Information Security goals and encourage professional certifications (e.g., CISSP, Certified RACF and Vanguard Specialist).

Operational Best Practices

  • Ensure 24/7 monitoring of access provisioning activities.

  • Establish and maintain incident response protocols for access-related events.

  • Design scalable provisioning processes to support organizational growth.

Required Qualifications:

  • 10+ years of progressive experience in Identity and Access Management, with a strong focus on access provisioning across enterprise environments.

  • 10+ Years of experience in RACF, ACF2 and zOS systems

  • Drives Mainframe Modernization and work in close partnership with the CTO Mainframe team to provide SME security leadership.

  • Deep technical expertise in Mainframe RACF, Vanguard and Microsoft Azure AWS, Databases DB2 and VMSecure and enterprise storage platforms.

  • Proven ability to design, implement, and manage access provisioning solutions that enforce least privileged access and align with regulatory and internal compliance requirements.

  • Strong understanding of IAM governance frameworks, platforms (e.g., ForgeRock Single Sign- On SSO, Adaptive Authentication) role-based access control (RBAC), group policy management, and privileged access management (PAM) tools, CyberArk, Hashi Corp and Beyond Trust.

  • Experience with automated provisioning/de-provisioning workflows, including integration with HR systems to demonstrated proficiency in scripting and automation (e.g., PowerShell, Python) to support scalable access provisioning and audit processes.

  • Familiarity with cloud infrastructure security and access controls in hybrid environments, particularly within Microsoft Azure AWS and Oracle Cloud.

  • Ability to conduct access reviews, entitlement audits, and risk assessments to identify and remediate access-related vulnerabilities.

  • Excellent analytical, problem-solving, and communication skills, with the ability to collaborate across technical and business teams.

  • Bachelor’s degree in computer science, Information Security, or a related field; advanced degree or certifications (e.g., CISSP, CISM, Microsoft Certified: Identity and Access Administrator Associate) preferred.

  • BS/BA Engineering degree or equivalent experience

Desired Skills:

  • Understanding or have experience with agile and lean philosophies.

  • Strong critical thinking and problem-solving skills with clear communication

  • Ability to collaborate with different roles to achieve common goals.

  • Ability to think critically and question the status quo.

  • Understand how to identify software security vulnerabilities and recognize and communicate their associated impact to the business.

  • Demonstrate awareness of secure software design principles such as least privilege, defense in depth, or designing secure user interfaces

1st shift (United States of America)

Show more

These jobs might be a good fit

19.11.2025
BOA

Bank Of America Identity Access Management IAM Analyst Mainframe / RACF exp ... United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Administer and maintain RACF security profiles for users, groups, datasets and general resources. Implement, review, and update RACF rules to align with security policies and compliance requirements. Analyze and troubleshoot...
Description:

Job Summary:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

What you can expect in Identity & Access Management:

In today’s highly connected world, managing and securing the identity of users is essential to the safety and success of our workforce. The Identity & Access Management (IAM) team works within Global Information Services (GIS) and in close participation with all other LOB teams as well as second and third line of defense partners. This role is highly visible and requires frequent interaction with senior management and key stakeholders.

Role Description:

  • Administer and maintain RACF security profiles for users, groups, datasets and general resources

  • Implement, review, and update RACF rules to align with security policies and compliance requirements

  • Analyze and troubleshoot RACF related security incidents and access issues

  • Provide RACF support during Mainframe upgrades, migrations and disaster recovery tests

  • Provide 24/7 on-call support for RACF related issues

  • Develop and maintain RACF process and procedural documentation

  • Work closely with internal/external audit and compliance to ensure adherence to IAM standards.

Required Qualifications:

  • 3+ years of experience with IAM

  • 3+ years of experience with Mainframe security administration (RACF)

  • Strong knowledge of z/OS mainframe environment, TSO/ISPF, JCL and security related exits

  • Excellent analytical, troubleshoot, and problem solving skills

  • Excellent communication skills

1st shift (United States of America)

Show more

These jobs might be a good fit

Limitless High-tech career opportunities - Expoint
Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information...
Description:


This job is responsible for developing and supporting enterprise-wide information security policies, procedures, and standards. Key responsibilities include applying knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies, validate alignment of processes and controls to requirements, and report on adherence to policy requirements. Job expectations include using data analytics and partnering with internal teams to verify policy compliance, identify gaps in coverage, and support remediation activities.

LOB Overview:

  • Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Responsibilities:

  • Support the implementation and ongoing management of access provisioning solutions across enterprise platforms, ensuring alignment with security policies and regulatory requirements.

  • Apply working knowledge of Active Directory , Microsoft Azure, Amazon Web Services (AWS), and Mainframe , Oracle and SQL databases , file systems , and enterprise storage , with a focus on enforcing least privileged access .

  • Assist in maintaining access control policies , group structures , and role-based access models to support scalable and secure provisioning.

  • Collaborate with application owners and infrastructure teams to implement access requirements for new and existing systems.

  • Participate in automation initiatives to streamline provisioning and de-provisioning workflows , integrating with identity governance platforms and HR systems and IAM controls.

  • Conduct periodic access reviews , entitlement audits , and certification campaigns to ensure compliance and identify access anomalies.

  • Investigate and remediate access-related incidents, working closely with cybersecurity and risk teams to address vulnerabilities and improve controls.

  • Stay current with emerging IAM technologies, regulatory changes, and industry best practices to continuously enhance the access provisioning program.

  • Prepare metrics, reports, and recommendations to senior leadership and audit teams regarding access provisioning effectiveness and risk posture.

Required Qualifications:

  • 3-5+ years experience in Identity and Access Management, with a focus on access provisioning across enterprise environments.

  • Working knowledge of Active Directory , Microsoft Azure AWS, Mainframe , Oracle Database , SQL Server , Windows and Unix file systems , and enterprise storage platforms .

  • Understanding of IAM governance frameworks , platforms ( e.g., SailPoint, Saviynt ) role-based access control (RBAC) , group policy management , and privileged access management (PAM) tools, CyberArk, Hashi Corp and Beyond Trust.

  • Experience with automated provisioning/de-provisioning workflows , including integration with HR systems to demonstrate proficiency in scripting and automation (e.g., PowerShell, Python) to support scalable access provisioning and audit processes.

  • Familiarity with cloud infrastructure security and access controls in hybrid environments, particularly within Microsoft Azure AWS and Oracle Cloud .

  • Ability to conduct access reviews , entitlement audits , and risk assessments to identify and remediate access-related vulnerabilities.

  • Excellent analytical, problem-solving, and communication skills, with the ability to collaborate across technical and business teams.

1st shift (United States of America)

Show more
Find your dream job in the high tech industry with Expoint. With our platform you can easily search for Sr Network Security Engineer Cloud Exp Required opportunities at Bank Of America in United States, Boston. Whether you're seeking a new challenge or looking to work with a specific organization in a specific role, Expoint makes it easy to find your perfect job match. Connect with top companies in your desired area and advance your career in the high tech field. Sign up today and take the next step in your career journey with Expoint.