Hardening & CSPM; Cloud Security Posture Management; Lead
Listed on 2025-12-20
-
IT/Tech
Cybersecurity, IT Support, IT Consultant, Cloud Computing
Hardening & CSPM (Cloud Security Posture Management ) Lead Country:
United States of America Your Journey Starts Here
Santander is a global leader and innovator in the financial services industry. We believe that our employees are our greatest asset. Our focus is on fostering an enriching journey that empowers you to explore diverse career opportunities while nurturing your personal growth. We are committed to creating an environment where continuous learning and development are prioritized, enabling you to thrive both professionally and personally.
Here, you will find ample opportunities to connect and collaborate with talented colleagues from around the world, sharing insights and driving innovation together. Join us at Santander, where you are supported by a culture of engagement and a commitment to your success.
An exciting journey awaits, if you are interested in exploring the possibilities We Want to Talk to You!
The Difference You MakeWe are seeking a Hardening & CSPM Lead to join our Infrastructure Security organization. This is a technical leadership role focused on secure configuration, system hardening, and Cloud Security Posture Management (CSPM). You will guide analysts, troubleshoot misconfigurations, validate remediations, and collaborate closely with system administrators and cloud engineering teams to ensure our environments remain secure, compliant, and operationally resilient. This is not a governance or audit role — this position requires strong technical skills in system configuration, hardening, and cloud security posture.
Lead the technical execution and supervision of the Hardening Compliance function, covering both on-premises systems and cloud platforms.
Oversee the planning, execution, and monitoring of hardening controls and CSPM controls for IT and cloud assets.
Act as a hands-on contributor
, directly performing compliance checks and remediation activities when needed.Coordinate with system administrators, delivery teams, auditors, and Risk & Compliance stakeholders to ensure alignment and accountability.
Investigate anomalies (e.g., drops in compliance scores) to differentiate between false positives and true configuration issues before requesting remediation.
Ensure controls and processes remain aligned with regulatory requirements, internal policies, and CIS Benchmarks (including cloud benchmarks).
Lead efforts to optimize and streamline semi-manual processes, with the goal of improving efficiency and scalability.
Serve as the primary technical point of contact for escalations within the Hardening Compliance and CSPM functions.
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Bachelor's Degree or equivalent work experience:
Computer Science, Engineering or Information Technology Management, or equivalent field.
- Required. - 5+ years of experience in systems administration, IT operations, or information security roles.
- Hands-on involvement in implementing or monitoring security configuration baselines (e.g., CIS Benchmarks).
- Practical experience performing compliance checks, identifying misconfigurations, and coordinating remediation activities.
- 1+ year of direct experience with Cloud Security Posture Management (CSPM) tools and cloud platform hardening.
- Experience interacting with cross-functional teams such as system administrators, software delivery, audit, or compliance.
- Demonstrated track record of ownership and accountability in operational security tasks.
- Proven experience in system administration or IT operations, with a strong understanding of system configuration and security.
- Practical experience with CIS Benchmarks
, including hardening of IT assets and cloud platforms. - Hands-on experience with Cloud Security Posture Management (CSPM) tools such as Sysdig, Wiz, or equivalent.
- Familiarity with compliance and vulnerability management platforms (e.g., Tenable, Qualys).
- Ability to analyze,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).