More jobs:
Corporate Vice President - Cloud Security Engineer
Job in
New York, New York County, New York, 10261, USA
Listed on 2026-05-26
Listing for:
New-York-Life
Full Time
position Listed on 2026-05-26
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
Job Description & How to Apply Below
Requisition ID93299
Department Tech Data AI Ventures Job Function Tech Data AI Ventures Location Remote ,New York,United States Role Location Designation Hybrid - 3 days per quarter
Location Designation:
Hybrid - 3 days per quarter
The Security Engineer is responsible for designing and maintaining NYL’s cloud security controls, mainly in AWS and hybrid environments, with Azure and GCP also included. This hands-on role focuses on secure cloud platform development through automation, monitoring, and configuration. Key duties include operationalizing CIEM and CWPP tools, integrating detections and guardrails, and automating ongoing security improvements.
This role will also be key in strengthening NYL’s identity and access architecture in the cloud—ensuring that IAM frameworks, authentication models, and permissions management are consistent, automated, and aligned with Zero Trust principles. In addition, this person will play a role in aligning our Agentic AI architecture and security patterns with the Identity design elements. The ideal candidate will combine deep technical expertise in AWS security with experience in identity engineering and automation, to help NYL reduce Identity risks across our cloud and hybrid environments.
What You’ll Do:
Engineer, configure, and maintain cloud security and identity controls across AWS and hybrid environments.
Design and implement secure cloud architectures leveraging AWS-native services (e.g., IAM, Organizations, Cloud Formation, Guard Duty, Security Hub).Engineer and maintain CIEM and CSPM capabilities, including tuning and extending Wiz detections and queries for AWS-native services (EC2, Lambda, S3, EKS, RDS, IAM, Cloud Formation).Develop scripts and APIs to integrate our cloud, identity, and other security controls.
Collaborate with AI and Data teams on Agentic AI Identity architecture patterns and designs
Continuously assess AWS configurations against CIS AWS Benchmarks, CSA, NIST 800-53, and NYDFS 500 standards; correlate Wiz findings with Cloud Trail, IAM Access Analyzer, and Config data to identify systemic risks.
Build pipelines and IaC modules (Terraform, Cloud Formation) to onboard new AWS accounts and resources into Wiz with secure-by-default baselines and consistent tagging.
Integrate cloud identity and access controls with enterprise IAM platforms (SailPoint, Cyber Ark, Ping).Collaborate with Cloud Engineering, Dev Ops, and Application teams to design AWS architectures that meet posture requirements and embed IAM and security controls in CI/CD pipelines.
Document and evangelize AWS security best practices, secure configuration standards, and Wiz integration playbooks.
What You’ll Bring :
Bachelor’s degree in Computer Science, Information Systems, or equivalent experience.
10+ years of experience in cloud security engineering or related cybersecurity disciplines.
Proven ability to design, integrate, and operationalize security controls in AWS environments.
Hands-on experience with AWS IAM, KMS, Cloud Trail, Config, Guard Duty, Security Hub, and Organizations.
Experience tuning and automating CSPM tools such as Wiz for detection, remediation, and data integration.
Deep understanding of authentication and authorization protocols (SAML, OIDC, OAuth2, SPIFFE, DCR, PKCE).Strong scripting and automation skills (Python, Power Shell, Terraform) for cloud security orchestration and integration.
Understanding of Agentic AI identity principles.
Familiarity with Zero Trust principles, least-privilege access, and cloud identity lifecycle management.
Understanding of compliance frameworks (NYS DFS, NIST, CIS, ISO 27001) and how they apply to IAM and cloud environments.#LI-CD2
Pay Transparency Salary Range: $147,500-$211,000
Overtime eligible:
Exempt Discretionary bonus eligible:
Yes Sales bonus eligible:
No
Actual base salary will be determined based on several factors but not limited to individual’s experience, skills, qualifications, and job location. Additionally, employees are eligible for an annual discretionary bonus. In addition to base salary, employees may also be eligible to participate in an incentive program.
Company Overview At New York Life, our 180-year legacy…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×