Bloomberg

(TVM Cloud) Senior Cloud Security and Vulnerability Analyst

Bloomberg$195K — $240K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of IT operations, systems management, or IT Security experience
  • Solid knowledge of Cloud Security and vulnerability assessment
  • Hands-on expertise with enterprise and cloud architectures
  • Understanding of Linux and Windows OS, system administration, and engineering
  • Knowledge of IT security best practices and system hardening
  • Understanding of Public Cloud infrastructure concepts
  • Experience with vulnerability management tools
  • Strong organizational skills and ability to manage complex projects

Responsibilities

  • Perform IT Security assessments to identify and mitigate vulnerabilities
  • Build partnerships with technical teams to promote vulnerability management best practices
  • Define solutions that meet both security and business requirements
  • Standardize security workflows, processes, and reporting
  • Establish security baselines in collaboration with Cloud Engineering teams
  • Provide security guidance on various Cloud operations
  • Produce metrics demonstrating the effectiveness of remediation efforts
  • Enhance IT Security management tools and solutions

Benefits

  • Comprehensive and generous benefits plan
  • Merit increases and incentive compensation
  • Paid holidays and time off
  • Medical, dental, and vision coverage
  • Short and long-term disability benefits
  • 401(k) with company match
  • Life insurance and wellness programs
Full Job Description
Description & Requirements

What's The Role?

We are seeking an IT Security Analyst to help ensure that our Public Cloud IT infrastructure and security processes are resilient against the latest threats. You will be responsible for analyzing and assessing vulnerabilities across a wide range of technologies. You'll engage with various technology partners to validate and manage identified vulnerabilities through remediation. You will work directly with other cross-department security engineering and incident response teams to set strategic direction for our enterprise Threat and Vulnerability Management program.

This is a team that drives company-wide initiatives to improve the effectiveness of Bloomberg's security posture. Analysts in this role must show exemplary judgment in making technical decisions to achieve business goals. You're expected to always demonstrate resilience and navigate difficult situations with composure and tact.

We'll Trust You To:

- Perform IT Security assessments and partner with other security or IT professionals to assess potential impact from vulnerabilities and determine appropriate mitigating controls

- Build strong partnerships with technical teams to promote best practices for managing vulnerabilities, initiate and track remediation through to completion

- Understand business requirements and work with business partners to define appropriate solutions; meeting both security mandates and business needs

- Help standardize workflows, processes, procedures and reporting

- Partner with Cloud Engineering teams to establish security baselines and best practices

- Provide security guidance to Cloud Engineering teams encompassing perimeter, misconfigurations, asset visibility, policies, container, patching cadence, and vulnerability scanning

- Produce metrics and key performance indicators that demonstrate the effectiveness of remediation efforts

- Improve the design and usefulness of our IT Security management tools and solutions.

- Have excellent interpersonal and effective communications skills

You'll need To Have:

- Solid knowledge of Cloud Security and able to rate vulnerabilities appropriately in the context of the infrastructure & application stack

- 10+ years of proven IT operations, systems management, or IT Security related experience

- Hands-on expertise working with enterprise and cloud architectures

- Understanding of Linux and Windows OS, system administration and engineering

- Knowledge of IT security and system hardening best practices

- Solid understanding of Public Cloud infrastructure concepts and terminologies

- Experience analyzing vulnerability findings from IT and Security management tools

- Understanding of industry security standards such as CVE, CPE, CVSS & NIST

- Ability to interpret complex data sets to make informed risk-based decisions

- Strong organizational skills and can effectively manage complex tasks, projects, and agile framework

We'd love to see:

- AWS / Azure Solutions Architect, which is highly preferred

- A Certified Cloud Security Professional (CCSP), is a plus

- Experience building Cloud Resources and hardening them to CIS standards

- SCRUM Master Certification / PMP Certified

- Solid understanding of Risk management frameworks and security tools

- Ability to learn and implement technologies quickly

- Bachelor's degree in Computer Science, Engineering, or other related fields

Salary Range = 195,000 - 240,000 USD Annual + Benefits + Bonus

The referenced salary range is based on the Company's good faith belief at the time of posting. Actual compensation may vary based on factors such as geographic location, work experience, market conditions, education/training and skill level.

We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include merit increases, incentive compensation (exempt roles only), paid holidays, paid time off, medical, dental, vision, short and long term disability benefits, 401(k) +match, life insurance, and various wellness programs, among others. The Company does not provide benefits directly to contingent workers/contractors and interns.

About Bloomberg

Bloomberg L.P. is a privately held financial, software, data, and media company headquartered in Midtown Manhattan, New York City. It was founded by Michael Bloomberg in 1981, with the help of Thomas Secunda, Duncan MacMillan, Charles Zegar, and a 12% ownership investment by Merrill Lynch. Bloomberg L.P. provides financial software tools and enterprise applications such as analytics and equity trading platform, data services, and news to financial companies and organizations through the Bloomberg Terminal (via its Bloomberg Professional Service), its core revenue-generating product. Bloomberg L.P. also includes a wire service (Bloomberg News), a global television network (Bloomberg Television), digital websites, a radio station (WBBR), subscription-only newsletters, and three magazines: Bloomberg Businessweek, Bloomberg Markets, and Bloomberg Pursuits.
Learn more about Bloomberg
Size
20,000 employees
Industry
Founded
1981

Similar Jobs

More Jobs at Bloomberg

More Information Technology Jobs

Find similar (TVM Cloud) Senior Cloud Security and Vulnerability Analyst jobs: