

Job Description:
Job Description:
Our Security Operations and Threat Response team within Bank of America’s Cyber Security Technology function works to continuously strengthen the bank’s cyber security posture through partnership and delivery of technology to support our content detection and threat hunt teams. This team works with partners in Cyber Security Operations to deliver robust technology solutions and support for detection engineering environments and content scenarios.
Required Qualifications:
Data Ingestion and Parsing:
Security and Compliance:
Documentation and Training:
Desired Qualifications:
Skills:
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
1st shift (United States of America)משרות נוספות שיכולות לעניין אותך

Job Description:
Job Description:
This job is responsible for defining and leading the engineering approach for complex features to deliver significant business outcomes.
Responsibilities:
Partner with cybersecurity experts to define requirements and success criteria
Lead the design and implementation of secure, scalable integration solutions for cybersecurity platforms.
Define and enforce engineering standards for secure APIs, data pipelines, and microservices.
Collaborate with security architects and platform engineers to ensure compliance with cybersecurity policies and frameworks.
Develop and maintain secure RESTful APIs for real-time and batch data processing.
Apply encryption, access control, and auditing mechanisms to protect sensitive data in transit and at rest.
Integrate with SIEM, SOAR, and threat intelligence platforms to enable automated detection and response.
Optimize performance and resilience of data ingestion and processing pipelines.
Mentor junior engineers and promote secure coding and integration best practices.
Document integration patterns, data flows, and security controls for audit and compliance purposes.
Required Qualifications:
10+ years of experience in cybersecurity engineering, secure software development, or platform integration.
Strong programming skills inJava and Python, with experience in secure API development.
Experience with container orchestration platforms (Kubernetes, OpenShift) and infrastructure automation.
Knowledge of data streaming and processing platforms (Kafka, Databricks, Snowflake).
Data Analytics Experience using common security tools(Splunk, Hadoop, Spark, Python)
Hands-on experience with securing databases and implementing RBAC, encryption, and audit logging.
Understanding of secure software development lifecycle (SSDLC) and DevSecOps practices.
Ability to lead technical projects and collaborate with cross-functional teams.
A Master’s or Bachelor’s degree in Computer Science, Information Security, or a related field is helpful but experience is highly valued.
Skills:
Proven Cybersecurity expertise, preferably in Detection and Response related fields but other domains are also valued.
Deep expertise in secure software engineering, API security, and data protection best practices.
Hands-on experience designing and implementing secure data pipelines, ETL processes, and real-time streaming architectures (e.g., Kafka, Databricks).
Proficiency in Java, Python, and scripting languages for secure application and integration development.
Strong understanding of API security protocols (OAuth2, OpenID Connect, JWT) and OWASP API Security Top 10.
Experience with containerized and virtualized environments (Kubernetes, OpenShift, Docker, VMware).
Significant experience with cloud-native security controls and multi cloud architectures across AWS, Azure, and GCP
Expertise in securing relational and NoSQL databases (PostgreSQL, MongoDB) with encryption, RBAC, and auditing.
Experience with infrastructure-as-code, CI/CD pipelines, and DevSecOps practices.
Strong communication and collaboration skills to work across cybersecurity, engineering, and architecture teams.
Application Development
Solution Design
Agile Practices
Analytical Thinking
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
משרות נוספות שיכולות לעניין אותך

Role Description:
As the development lead, you will drive the strategic vision for a multi environment platform that integrates security tools, telemetry, automation, and analytics into a unified experience. You will collaborate closely with SOC analysts, threat hunters, incident responders, and security engineers to ensure that the interface meets operational needs while reducing friction and improving response times.
Skills
Roles & Responsibilities
Required Qualifications:
Managerial Responsibilities:
This position may also have responsibilities for managing associates. At Bank of America, all managers at this level demonstrate the following responsibilities, in addition to those specific to the role, listed above.
Skills:
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
1st shift (United States of America)משרות נוספות שיכולות לעניין אותך

Job Description:
Job Description:
This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.
Key Responsibilities in order of importance:
Required Skills:
Desired:
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
1st shift (United States of America)משרות נוספות שיכולות לעניין אותך

Job Description:
Merrill is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
This job is responsible for performing a variety of specialized functions across a team of Financial Advisors, such as business management, business development, wealth planning, investment management, or relationship management. Key responsibilities include providing quality client service, and operations support and executing problems where extensive analysis and evaluation is required. Job expectations include having knowledge of the Merrill Wealth Management business and supporting team members as needed.
This position is subject to SAFE Act registration requirements. Pursuant to the SAFE Act requirements, all employees engaged in residential loan mortgage originations must register with the federal registry system and remain in good standing. Since this position requires SAFE Act registration, employees are required to register and to submit to the required SAFE Act background check and registration process. Failure to obtain and/or maintain SAFE Act registration may result in disciplinary action up to and including termination.
Job Description:
This EGP Specialist Trainee is a training program to develop and prepare candidates to further develop and service the FA Teams client base. The Trainee role allows EGP Specialist to achieve the appropriate designations before taking on the full EGP Specialist role. This position operates in a marketing and sales development role by implementing and executing the Elite Growth Practice (EGP). Specific accountabilities for the role may vary depending on the team’s practice. Performance is measured by the FA or FA team through specific goals, metrics, and behaviors related to the execution of the EGP model. This position is subject to SAFE Act registration requirements. Pursuant to the SAFE Act requirements, all employees engaged in residential loan mortgage originations must register with the federal registry system and remain in good standing. Since your position requires SAFE Act registration, you will be required to register and to submit to the required SAFE Act background check and registration process. Failure to obtain and/or maintain SAFE Act registration may result in disciplinary action up to and including termination. Requirements: Either SIE, Series 7 and 66 registrations or SIE, Series 7, 63, and 65.
Elite Growth Practice (EGP) Wealth Management Specialistposition may be filled at a Trainee, Specialist or Senior level depending on experience of the candidate and needs of the Financial Advisor Team. The Trainee is a non-exempt position for a hire lacking required security licenses and/or designation. This position allows the individual to become fully licensed and achieve the appropriate designations required for the position. If Series 7 and 66 (or 63 & 65) licenses and approved designation are not currently held, must be obtained within a specified timeframe to be eligible for Specialist position.
This
Responsibilities:
• Provides quality client service and effective operations support by resolving client issues and analyzing data to address risk issues and trends
• Escalates issues and provides resolution on complex inquiries, requests, and problems related to client concerns
• Documents client interactions and provides team members with time sensitive updates
• Attends client review meetings to capture notes, document in Salesforce, and tracks all actions/activities to ensure the highest level of client service is provided
• Provides advice and assists with training for team members
Required Qualifications:
Skills:
Minimum Education Requirement:High School Diploma / GED / Secondary School or equivalent
משרות נוספות שיכולות לעניין אותך

Job Description:
GIS Policy Regulatory Management Specialist represents Global Information Security (GIS) while working with Compliance, Risk, Legal, FLU's and Enterprise functions, consulting on all regulations with Global Information Security applicability. Expected to read published laws rules regulations and guidance’s (LRRGs), understand how they apply to GIS and map them to GIS policy. Maintain the inventory of LRRGs and mappings in the system of record and update the mappings as needed when policy language changes. Must be able to assess regulatory requirements against GIS policy, controls and assessment proof points. Drive action plans to address any regulatory gaps and ensure accurate risk and compliance reporting. Will work closely with subject matter experts including GIS Policy, Risk, Audit, Lines of Business, Legal, Compliance and external regulators as needed.Additional expectations of role:
• Ensure Laws, Rules, Regulations and Guides (LRRGs) in the GIS inventory are mapped to GIS policies and identified gaps are addressed to ensure policy coverage of regulatory requirements, industry standards and best practices.
• Breakdown and map assigned Laws, Rules, Regulations and Guides (LRRGs) to GIS policy requirements
• Raise any identified policy language gaps to be validated and remediated
• Perform Impact Assessments for any GIS policy changes (standards and baselines) to ensure coverage is maintained to aligned LRRGs
• Perform Impact Assessments for GIS Policy Exception Types to ensure a policy violation is not created based on aligned LRRGs
• Maintain accurate data for all LRRGs and GIS policy mappings in the system of records through BAU and QA routines
• Publish routine reports for Regulatory Landscape, metrics, newsletters, etc
• Maintain process documentation and playbooks
• Analytical mindset and teamwork to support and improve the GIS Policy Governance ecosystem.
• Technical and business knowledge to ensure policy language gaps are covered by policy and have aligned controls.
• Result-oriented, business focused, and successful individual to interface across multiple organizational units, at various levels.
• Knowledge/experience/exposure with information security topics, including the design, development, testing, implementation or governance of information security practices and solutions
• Knowledge of access management/risk identification and mitigation/project management skills.
Minimum Years of Experience
5
Required Qualifications:
• Previous experience in Information Technology / Information Security
• Ability to identify, analyze and address problems to resolve issues whenever possible in a way that minimizes negative impact and risk to the organization
• Strong critical thinking/analytical skills/problem solving/conceptual thinking
• Highly effective written and verbal communication skills.
• Microsoft Office Proficient (Excel, Word, Outlook, Visio, PowerPoint, etc.)
• Ability to communicate complex information in simple terms (oral and written)
• Strong organization skills with the ability to prioritize requests and workload accordingly
• Strong analysis and fact-based decision-making
• Strong leadership skills and qualities which enable you to work with peers and various levels of management
• Proven ability of risk oriented approach and Strong risk management acumen.
• Influence horizontally and vertically across the organization and diverse audiences with varying degrees of technical understanding
• Ability to work independently on initiatives with little oversight.
• Motivated and willing to learn.
• Quick learner and self-starter
Desired Qualifications
• 5 years of experience operating within an information security environment.
• Bachelor's degree in Information Technology or related field
• Prior Governance, Compliance, and or Audit experience desired.
• Broad awareness of information security operations and/or enterprise information technology (Enterprise data management, application development, network management).
• Familiarity with independent audit, assessment, QA/QC functions desired.
• Leadership competency in geographically diverse matrixed environment.
• Must be comfortable communicating technology impacts and risk to various levels of executive management understanding the need to tailor and deliver appropriate content for given audience.
• Ability to work with Technical and Non Technical business owners
• Experience with Project Management or working with Project Managers
Skills:
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
1st shift (United States of America)משרות נוספות שיכולות לעניין אותך

Job Description:
Job Description:
The Cyber Security Regulatory Engagement Lead is responsible for developing and supporting responses for audit, regulatory and compliance requests. Key responsibilities include applying knowledge of laws, rules, regulations and information security concepts (e.g., NIST, COBIT, ISO) to develop and write clear documentation and communications. Job expectations include drafting written responses and partnering with Global Information Security teams to validate accuracy of proposed communications.
Responsibilities:
Requirements:
Skills:
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
1st shift (United States of America)משרות נוספות שיכולות לעניין אותך

Job Description:
Job Description:
Our Security Operations and Threat Response team within Bank of America’s Cyber Security Technology function works to continuously strengthen the bank’s cyber security posture through partnership and delivery of technology to support our content detection and threat hunt teams. This team works with partners in Cyber Security Operations to deliver robust technology solutions and support for detection engineering environments and content scenarios.
Required Qualifications:
Data Ingestion and Parsing:
Security and Compliance:
Documentation and Training:
Desired Qualifications:
Skills:
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
1st shift (United States of America)משרות נוספות שיכולות לעניין אותך