Voya Financial, Inc

Cloud Security Engineer

Voya Financial, Inc$114K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in information security, focusing on cloud and SaaS security.
  • Hands-on experience with Cloud Security Posture Management (CSPM) in AWS and/or Azure.
  • Familiarity with SaaS Security Posture Management (SSPM) tools such as CrowdStrike Falcon Shield and Palo Alto.
  • Strong understanding of container security and Kubernetes environments.
  • Proficiency in scripting and automation (Python, PowerShell, Bash).
  • Practical experience with Infrastructure-as-Code (IaC) and Policy-as-Code (PaC).
  • Solid understanding of IAM and least-privilege access models.

Responsibilities

  • Support SaaS Security Posture Management (SSPM) initiatives across enterprise SaaS platforms.
  • Configure and tune SSPM/CSPM tools to identify misconfigurations and excessive permissions.
  • Mature CSPM capabilities across AWS and Azure through continuous monitoring.
  • Partner with application owners to remediated security findings.
  • Secure cloud-native workloads across AWS and Azure using security controls.
  • Support container security through image scanning and runtime protections.
  • Develop and maintain security automation using scripting languages.

Benefits

  • Health, dental, vision, and life insurance plans.
  • 401(k) Savings plan with generous company matching contributions (up to 6%).
  • Employer-paid cash balance retirement plan (4%).
  • Tuition reimbursement up to $5,250/year.
  • 20 days paid time off, nine paid company holidays, and a flexible Diversity Celebration Day.
  • 40 hours of paid volunteer time per calendar year.
Full Job Description
***This role is remote with the expectation that candidates are based near one of the following Voya office locations: Windsor, CT; Boston, MA; or Atlanta, GA.***

Voya is seeking a Senior IT Security Specialist to strengthen our SaaS Security Posture Management (SSPM), Cloud Security Posture Management (CSPM), and container security capabilities across a rapidly evolving hybrid cloud and SaaS ecosystem.

This role will partner closely with Cloud, DevSecOps, Application Security, and Platform Engineering teams to identify, assess, and remediate security risks across SaaS platforms, public cloud infrastructure, and containerized workloads. The ideal candidate brings strong hands-on experience with cloud-native security controls, automation, Infrastructure-as-Code (IaC), Policy-as-Code (PaC), and modern security tooling.

Experience with CrowdStrike Falcon Shield, Palo Alto Prisma, Cortex or similar platforms is highly desirable. Familiarity with AI Security Posture Management (AI-SPM) and MLOps security is a strong plus as Voya continues to expand its AI-enabled capabilities.

Key Responsibilities

SaaS & Cloud Security Posture Management

  • Support SaaS Security Posture Management (SSPM) initiatives across enterprise SaaS platforms.


  • Configure, operate, and tune SSPM/CSPM tools to identify misconfigurations, excessive permissions, and risky integrations.


  • Support and mature CSPM capabilities across AWS and Azure, including continuous monitoring and risk prioritization.


  • Partner with application owners to drive remediation of SaaS and cloud security findings.


Cloud & Container Security

  • Secure cloud-native workloads across AWS and Azure using native and third-party security controls.


  • Support container and Kubernetes security, including image scanning, runtime protections, and policy enforcement.


  • Collaborate with DevSecOps teams to embed security controls into CI/CD pipelines.


Automation, IaC & PaC

  • Develop and maintain security automation using scripting languages (Python, PowerShell, Bash).


  • Implement and review Infrastructure-as-Code (Terraform, ARM, CloudFormation) with a security-first mindset.


  • Design and enforce Policy-as-Code (OPA, Sentinel, native cloud policies) to prevent insecure deployments.


  • Enable shift-left security by integrating controls early in the development lifecycle.


AI / ML Security (Plus)

  • Contribute to emerging AI Security Posture Management (AI-SPM) efforts.


  • Partner with platform and data teams to assess and secure MLOps pipelines, models, and supporting infrastructure.


  • Help define guardrails for AI usage, data access, and model governance.


Risk, Governance & Collaboration

  • Translate technical findings into actionable risk insights for remediation.


  • Support audits, risk assessments, and regulatory inquiries related to cloud and SaaS security.


  • Stay current on emerging threats, SaaS attack patterns, cloud security trends, and AI security risks.


  • Mentor junior team members and influence secure-by-design practices across the organization.


Required Qualifications

  • 5+ years of experience in information security, with strong focus on cloud and SaaS security.


  • Hands-on experience with Cloud Security Posture Management (CSPM) in AWS and/or Azure.


  • Experience with SaaS Security Posture Management (SSPM) tools such as:


  • CrowdStrike Falcon Shield


  • Palo Alto (SaaS / Prisma-related capabilities)


  • or similar platforms


  • Strong understanding of container security and Kubernetes environments.


  • Proficiency in scripting and automation (Python, PowerShell, Bash).


  • Practical experience with Infrastructure-as-Code (IaC) and Policy-as-Code (PaC).


  • Solid understanding of IAM, identity federation, least-privilege access, and SaaS permissions models.


  • Ability to work cross-functionally with cloud, DevOps, AppSec, and platform teams.


Preferred / Nice-to-Have Qualifications

  • Experience securing MLOps pipelines and AI-enabled platforms.


  • Familiarity with AI Security Posture Management (AI-SPM) concepts and tooling.


  • Experience integrating security into CI/CD pipelines.


  • Knowledge of cloud-native security services (AWS Security Hub, GuardDuty, Azure Defender, etc.).


  • Security certifications such as CISSP, CCSP, AWS/Azure Security certifications.


What Success Looks Like

  • Improved visibility and risk reduction across Voya's SaaS and cloud environments.


  • Measurable reduction in high-risk misconfigurations and over-privileged access.


  • Increased automation and policy-driven enforcement of security controls.


  • Strong partnership with engineering teams, enabling security without slowing delivery.


  • Forward-looking contributions to AI and MLOps security strategy.


Compensation Pay Disclosure:

Voya is committed to pay that's fair and equitable, which means comparable pay for comparable roles and responsibilities.

The below annual base salary range reflects the expected hiring range(s) for this position in the location(s) listed. In addition to base salary, Voya offers incentive opportunities (i.e., annual cash incentives, sales incentives, and/or long-term incentives) based on the role to reward the achievement of annual performance objectives. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Voya Financial is willing to pay at the time of this posting.

Actual compensation offered may vary from the posted salary range based upon the candidate's geographic location, work experience, education, licensure requirements and/or skill level and will be finalized at the time of offer. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

$114,480 - $130,000

Be Well. Stay Well.

Voya provides the resources that can make a difference in your lives. To us, this means thriving physically, financially, socially and emotionally. Voya benefits are designed to help you do just that. That's why we offer an array of plans, programs, tools and resources with one goal in mind: To help you and your family be well and stay well.

What We Offer
  • Health, dental, vision and life insurance plans
  • 401(k) Savings plan - with generous company matching contributions (up to 6%)
  • Voya Retirement Plan - employer paid cash balance retirement plan (4%)
  • Tuition reimbursement up to $5,250/year
  • Paid time off - including 20 days paid time off, nine paid company holidays and a flexible Diversity Celebration Day.
  • Paid volunteer time - 40 hours per calendar year

About Voya Financial, Inc

Voya Financial, Inc. is an American financial, retirement, investment, and insurance company based in New York City. The company was formed in 1991 as ING U.S., Inc. and was renamed Voya Financial in 2014. Voya Financial operates in the United States and has more than 6,000 employees. The company provides retirement, investment, and insurance solutions to individuals and businesses.
Learn more about Voya Financial, Inc
Size
6,000 employees
Market Cap
$5.8 billion
Industry
Net Income
-$206 million
Founded
1991
5 Year Trend
-13.7%
Revenue
$7.7 billion
NASDAQ

Similar Jobs

More Jobs at Voya Financial, Inc

More Information Technology Jobs

Find similar Cloud Security Engineer jobs: