Vice President, Cloud Security Engineer

BNY MellonNew York, NY
Hybrid

About The Position

Cloud Security Engineer At BNY, our culture allows us to run our company better and enables employees’ growth and success. As a leading global financial services company at the heart of the global financial system, we influence nearly 20% of the world’s investible assets. Every day, our teams harness cutting-edge AI and breakthrough technologies to collaborate with clients, driving transformative solutions that redefine industries and uplift communities worldwide. Recognized as a top destination for innovators, BNY is where bold ideas meet advanced technology and exceptional talent. Together, we power the future of finance – and this is what #LifeAtBNY is all about. Join us and be part of something extraordinary. We’re seeking a future team member for the role of Vice President, Cloud Security Engineer to join our Cloud Security team. This role is located in New York, NY or Pittsburgh, PA. In this role, you’ll make an impact in the following ways: Support implementation and continuous improvement of cloud security controls across infrastructure, platform, and application environments in AWS, Azure, or GCP. Support enablement of AI for cloud security by promoting AI use cases that improve security outcomes. Drive security integration into CI/CD pipelines and infrastructure delivery processes to ensure secure-by-design and secure-by-default deployment models. Support implementation efforts for container, Kubernetes, API, and cloud-native workload security controls. Drive the operational maturity of Cloud Security Posture Management (CSPM) capabilities to identify misconfigurations, policy violations, excessive permissions, exposed assets, and control drift. Partner with engineering and cyber teams to optimize Wiz and similar CSPM/CNAPP platforms, including workflow integration, prioritization, remediation support, and reporting. Implement policy-as-code, automated guardrails, and infrastructure-as-code patterns to improve control consistency and reduce manual processes. Partner with cloud architects and governance stakeholders to improve standards adoption, exception handling, and control coverage. Maintain and improve documentation for cloud security standards, design patterns, engineering procedures, and operating guidance.

Requirements

  • 6-10 years of experience in cloud security engineering, security engineering, DevSecOps, infrastructure security, or a related technical security role.
  • Proven experience as an AI enabler for cloud security by identifying, assessing, and promoting AI use cases.
  • Experience with security automation, orchestration, analytics, and AI-driven security tooling.
  • Hands-on experience working with and securing workloads in AWS, Azure, or GCP.
  • Working knowledge of cloud security principles across IAM, networking, encryption, logging, secrets management, workload protection, and secure service configuration.
  • Experience implementing security controls for cloud-native services and modern application environments.
  • Familiarity with Cloud Security Posture Management (CSPM) concepts and tools such as Wiz.
  • Experience with cloud-native policy and posture tools, including Azure Policy and Microsoft Defender for Cloud.
  • Experience with Infrastructure as Code and automation using tools such as Terraform.
  • Strong problem-solving, collaboration, and technical communication skills.
  • Bachelor’s degree in computer science, engineering, cybersecurity, or related discipline, or equivalent practical experience.

Nice To Haves

  • Exposure to container and Kubernetes security, API security, or vulnerability management is a plus.
  • Familiarity with CIS Benchmarks, CSA CCM, OWASP, or NIST CSF.
  • Relevant certifications such as AWS Security Specialty, Azure Security Engineer Associate, Google Professional Cloud Security Engineer, or CCSP.

Responsibilities

  • Support implementation of cloud security controls across supported cloud platforms.
  • Implement and maintain cloud security controls across supported platforms with Cloud native policies, WIZ rules.
  • Able to fluently work with KQL, WIZ, Splunk, Azure Policies, bash, Powershell, gcloud, Terraform, Log Analytics, Microsoft Sentinel, Gitlab – All development tools fluently in an enterprise setting.
  • Work with platform, DevOps, architecture, and application teams to embed security into engineering workflows.
  • Promote adoption of automated controls, secure design patterns, and policy enforcement.
  • Contribute to standards adoption, remediation governance, exception handling, and security maturity efforts.
  • Implement and support posture management processes across third-party tools as such as WIZ and cloud-native capabilities.
  • Support detection, prioritization, and remediation of misconfigurations.
  • Act as an AI enabler by identifying opportunities to apply AI to strengthen cloud security outcomes.
  • Support implementation of AI capabilities to improve threat detection, posture analysis, risk prioritization, and security operations efficiency.
  • Help streamline cloud security tooling, processes, and workflows through intelligent automation and AI-driven insights.
  • Promote practical and responsible use of AI as a force multiplier for cloud security effectiveness, scalability, and operational maturity.

Benefits

  • highly competitive compensation
  • benefits
  • wellbeing programs
  • generous paid leaves
  • paid volunteer time
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service