AWS Specialist
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Position Summary:
We are seeking a skilled and motivated AWS Specialist to support the Cloud Security Assurance (CSA) organization by ensuring public cloud environments are securely configured, governed, and continuously monitored in alignment with enterprise security standards and risk expectations. This role focuses on identifying cloud configuration weaknesses, policy violations, and control gaps that could result in data exposure, identity compromise, service disruption, or regulatory risk.
The AWS Specialist is responsible for maintaining continuous visibility into cloud security posture across infrastructure and platform services, including identity, networking, storage, logging, and core service configurations. This role builds, maintains, and operationalizes CSPM detection logic aligned with defined configuration baselines, control frameworks, and governance standards to ensure misconfigurations and drift are identified promptly and consistently.
The AWS Specialist partners closely with cloud platform, infrastructure, DevOps, and engineering teams to ensure findings are risk-assessed, clearly communicated, and remediated effectively. The role plays a key part in improving cloud security maturity by enabling proactive posture monitoring, supporting audit and regulatory readiness, and providing leadership with transparent, risk-based reporting on cloud configuration posture.
Operating in large, enterprise-scale cloud environments, the AWS Specialist contributes to the ongoing development of cloud security standards, baseline documentation, and repeatable assurance processes that support consistent governance across multiple cloud platforms.
Responsibilities:
Ensure cloud environments are securely configured and governed in alignment with CSA security standards and baselines.
Maintain continuous visibility into cloud configuration and security posture across in-scope platforms.
Identify cloud misconfigurations, policy violations, and control gaps across infrastructure and platform services.
Build, maintain, and refine CSPM detections aligned to defined security baselines and control expectations.
Support onboarding, tuning, and operationalization of CSPM tooling and posture reporting.
Partner with cloud platform and engineering teams to remediate CSPM findings.
Triage posture findings, assess risk and blast radius, and support remediation prioritization.
Provide CSPM posture metrics, reporting, and risk transparency to CSA leadership.
Contribute to cloud security standards, baseline documentation, and audit readiness efforts.
Track evolving cloud service features and configuration risks impacting security posture.
Required Qualifications:
3+ years understanding of Cloud Security Posture Management (CSPM) principles and secure cloud configuration practices.
Experience identifying cloud misconfigurations and control weaknesses.
In-depth, real-world experience with core AWS services (compute, network, storage, and identity)
Ability to assess risk and communicate findings to technical and non-technical audiences.
Strong analytical and documentation skills.
Ability to be self-sufficient and scope necessary tasks based on high-level requirements.
Desired Qualifications:
Experience supporting cloud security assurance or posture management programs.
Hands-on experience with CSPM tools (e.g., Wiz, Prisma Cloud, Defender, Orca).
Familiarity with cloud security benchmarks or control frameworks (e.g., CIS).
Experience supporting audits, risk assessments, or compliance initiatives.
Bachelor’s degree in a technical or security-related field.
Relevant cloud or security certifications preferred.
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
Shift:
1st shift (United States of America)Hours Per Week:
40