The role requires strong understanding of cloud workload architectures, operating system security fundamentals, and shared responsibility models to accurately assess risk and prioritize remediation.
The role requires strong understanding of cloud workload architectures, operating system security fundamentals, and shared responsibility models to accurately assess risk and prioritize remediation.
With over 12 years of specialized experience, the technician also ensures compliance with DoD security protocols and is required to obtain and maintain the DoD Security Fundamentals Professional ...
With over 12 years of specialized experience, the technician also ensures compliance with DoD security protocols and is required to obtain and maintain the DoD Security Fundamentals Professional ...
Activity Security Representative II (ASR II) (TS, w/ SCI Eligibility)
$15.75 - $18.50/hr
Security Fundamentals Professional Certification (SFPC) counts towards 1 year of experience * Special Program Security Certification (SPSC) counts towards 1 year of experience * Maximum equivalent ...
Activity Security Representative II (ASR II) (TS, w/ SCI Eligibility)
$15.75 - $18.50/hr
Security Fundamentals Professional Certification (SFPC) counts towards 1 year of experience * Special Program Security Certification (SPSC) counts towards 1 year of experience * Maximum equivalent ...
PSR 1 102-043
Bedford, MA ยท On-site
Security Fundamentals Professional Certification (SFPC) counts towards 3 years of experience Security Clearance: * Active TS/SCI clearance and the willingness to sit for a CI polygraph, if needed IC ...
PSR 1 102-043
Bedford, MA ยท On-site
Security Fundamentals Professional Certification (SFPC) counts towards 3 years of experience Security Clearance: * Active TS/SCI clearance and the willingness to sit for a CI polygraph, if needed IC ...
With over 12 years of specialized experience, the technician also ensures compliance with DoD security protocols and is required to obtain and maintain the DoD Security Fundamentals Professional ...
With over 12 years of specialized experience, the technician also ensures compliance with DoD security protocols and is required to obtain and maintain the DoD Security Fundamentals Professional ...
Information Security Analyst
Syracuse, NY ยท On-site
$87K - $92K/yr
Firewall operation and network security fundamentals Required Experience (1+ years each): * Windows/Active Directory, endpoint log analysis, PowerShell, and group policies * Linux system ...
Information Security Analyst
Syracuse, NY ยท On-site
$87K - $92K/yr
Firewall operation and network security fundamentals Required Experience (1+ years each): * Windows/Active Directory, endpoint log analysis, PowerShell, and group policies * Linux system ...
Activity Security Representative II with Security Clearance
$16.75 - $19.50/hr
... Fundamentals Professional Certification (SFPC) counts towards 3 years of experience โข Special Program Security Certification (SPSC) counts towards 5 years of experience โข Maximum equivalent ...
Activity Security Representative II with Security Clearance
$16.75 - $19.50/hr
... Fundamentals Professional Certification (SFPC) counts towards 3 years of experience โข Special Program Security Certification (SPSC) counts towards 5 years of experience โข Maximum equivalent ...
Special Security Representative - Journeyman
Arlington, VA ยท On-site
$19.50 - $22.75/hr
Security Fundamentals Professional Certification (SFPC) counts towards 3 years of experience * Special Program Security Certification (SPSC) counts towards 5 years of experience * Maximum equivalent ...
Quick apply
Special Security Representative - Journeyman
Arlington, VA ยท On-site
$19.50 - $22.75/hr
Security Fundamentals Professional Certification (SFPC) counts towards 3 years of experience * Special Program Security Certification (SPSC) counts towards 5 years of experience * Maximum equivalent ...
Senior Security Engineer
New York, NY ยท Hybrid
$125K - $171K/yr
Understanding of application and cloud security fundamentals * Experience with automation and integrations * Strong communication and collaboration skills Nice-to-haves * Experience with AI in ...
Senior Security Engineer
New York, NY ยท Hybrid
$125K - $171K/yr
Understanding of application and cloud security fundamentals * Experience with automation and integrations * Strong communication and collaboration skills Nice-to-haves * Experience with AI in ...
Principal Network Security Engineer
Southlake, TX ยท On-site
$98K - $134K/yr
Collaborating with stakeholders to improve the core networking security posture through the assessment and implementation of the Network Security Fundamentals (Access Management, Situational ...
Principal Network Security Engineer
Southlake, TX ยท On-site
$98K - $134K/yr
Collaborating with stakeholders to improve the core networking security posture through the assessment and implementation of the Network Security Fundamentals (Access Management, Situational ...
IT Security Engineer
Norcross, GA ยท Hybrid
Working knowledge of security fundamentals, including access controls, system hardening, encryption concepts, monitoring, and network/security basics. * Ability to support operational security tasks ...
IT Security Engineer
Norcross, GA ยท Hybrid
Working knowledge of security fundamentals, including access controls, system hardening, encryption concepts, monitoring, and network/security basics. * Ability to support operational security tasks ...
... tools in security and automation Contribute to best practices, standards, and lightweight ... fundamentals and common vulnerabilities Experience working with cloud platforms (AWS, Azure)
... tools in security and automation Contribute to best practices, standards, and lightweight ... fundamentals and common vulnerabilities Experience working with cloud platforms (AWS, Azure)
Security Fundamentals Professional Certification (SFPC) and Special Program Security Certification (SPSC) must be completed within 2 years of employment as a condition of employment (per DoDM 3305.13)
Security Fundamentals Professional Certification (SFPC) and Special Program Security Certification (SPSC) must be completed within 2 years of employment as a condition of employment (per DoDM 3305.13)
Security Fundamentals Professional Certification (SFPC) and Special Program Security Certification (SPSC) must be completed within 2 years of employment as a condition of employment (per DoDM 3305.13)
Security Fundamentals Professional Certification (SFPC) and Special Program Security Certification (SPSC) must be completed within 2 years of employment as a condition of employment (per DoDM 3305.13)
... fundamentals Familiarity with risk scoring methodologies such as CVSS Ability to analyze and interpret scan results and security data Preferred Qualifications Experience with cloud environments ...
Quick apply
... fundamentals Familiarity with risk scoring methodologies such as CVSS Ability to analyze and interpret scan results and security data Preferred Qualifications Experience with cloud environments ...
Program Security Representative II
El Segundo, CA ยท On-site
$18 - $21.25/hr
... Fundamentals Professional Certification (SFPC) counts towards 3 years of experience Special Program Security Certification (SPSC) counts towards 5 years of experience Maximum equivalent experience ...
Program Security Representative II
El Segundo, CA ยท On-site
$18 - $21.25/hr
... Fundamentals Professional Certification (SFPC) counts towards 3 years of experience Special Program Security Certification (SPSC) counts towards 5 years of experience Maximum equivalent experience ...
Security & Test Automation Engineer
Englewood, NJ ยท On-site
$45 - $55/hr
Solid understanding of application security fundamentals and common vulnerabilities * Experience working with cloud platforms (AWS, Azure) Powered by JazzHR AuEZOu8fsg
Quick apply
Security & Test Automation Engineer
Englewood, NJ ยท On-site
$45 - $55/hr
Solid understanding of application security fundamentals and common vulnerabilities * Experience working with cloud platforms (AWS, Azure) Powered by JazzHR AuEZOu8fsg
Security & Test Automation Engineer
Englewood, NJ ยท On-site
$45 - $55/hr
Solid understanding of application security fundamentals and common vulnerabilities * Experience working with cloud platforms (AWS, Azure)
Security & Test Automation Engineer
Englewood, NJ ยท On-site
$45 - $55/hr
Solid understanding of application security fundamentals and common vulnerabilities * Experience working with cloud platforms (AWS, Azure)
Program Security Representative II
$19.25 - $22.75/hr
... fundamentals professional certification (sfpc) counts towards 3 years of experience * special program security certification (spsc) counts towards 5 years of experience * maximum equivalent ...
Program Security Representative II
$19.25 - $22.75/hr
... fundamentals professional certification (sfpc) counts towards 3 years of experience * special program security certification (spsc) counts towards 5 years of experience * maximum equivalent ...
Solid understanding of application security fundamentals and common vulnerabilities * Experience working with cloud platforms (AWS, Azure)
Solid understanding of application security fundamentals and common vulnerabilities * Experience working with cloud platforms (AWS, Azure)
Security Fundamentals information
See salary details
$61.5K - $74.6K
0% of jobs
$74.6K - $87.7K
2% of jobs
$87.7K - $100.8K
3% of jobs
$100.8K - $113.9K
6% of jobs
$113.9K - $127K
5% of jobs
$127K - $140K
4% of jobs
$141.4K is the 25th percentile. Wages below this are outliers.
$140K - $153.1K
39% of jobs
$161.2K is the 75th percentile. Wages above this are outliers.
$153.1K - $166.2K
24% of jobs
$166.2K - $179.3K
2% of jobs
$179.3K - $192.4K
0% of jobs
$192.4K - $205.5K
14% of jobs
$61.5K
$152.8K
$205.5K
How much do security fundamentals jobs pay per year?
What are some common challenges faced by professionals working in Security Fundamentals roles?
What are Security Fundamentals?
What is the difference between Security Fundamentals vs Security Analyst?
| Aspect | Security Fundamentals | Security Analyst |
|---|---|---|
| Certifications | Basic security certifications (e.g., CompTIA Security+) | Advanced certifications (e.g., CISSP, CEH) |
| Work Environment | Entry-level, training-focused roles | Operational, monitoring, and incident response roles |
| Employer Usage | Foundational training for security roles | Active security monitoring and threat analysis |
Security Fundamentals provides foundational knowledge of security concepts, ideal for beginners. Security Analysts build on this foundation with practical skills in monitoring, analyzing, and responding to security threats. While Fundamentals focus on understanding security principles, Analysts are involved in active security operations.
What are the key skills and qualifications needed to thrive in a Security Fundamentals role, and why are they important?
Full-time
PTO
Posted 18 days ago
Job description
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
The Role:
We are seeking a skilled and motivated Cloud Security Vulnerability Management Program Specialist to support the Cloud Security Assurance (CSA) organization by ensuring enterprise cloud workloads are securely configured, continuously monitored, and protected throughout their runtime lifecycle. This role is focused on identifying workload-level vulnerabilities, insecure configurations, and runtime behaviors that could expose systems to compromise, service disruption, or unauthorized access across hybrid and multi-cloud environments.
The Cloud Security Vulnerability Management Program Specialist is responsible for maintaining visibility into workload security posture across virtual machines, containers, and supporting compute services. This includes vulnerability assessment, configuration validation, and runtime monitoring to detect drift from defined security baselines and identify suspicious or policy-violating activity. The role requires strong understanding of cloud workload architectures, operating system security fundamentals, and shared responsibility models to accurately assess risk and prioritize remediation.
This role partners closely with infrastructure, platform, engineering, and operations teams to ensure vulnerability findings are actionable, risk-assessed, and remediated appropriately. The Cloud Security Vulnerability Management Program Specialist plays a critical role in strengthening workload security maturity by operationalizing Cloud Security tooling, supporting audit and regulatory requirements, and providing leadership with transparent, risk-based reporting on workload security posture.
The Cloud Security Vulnerability Management Program Specialist operates in fast-paced, enterprise-scale environments and contributes to the development and maintenance of workload security standards, baselines, and documentation that support consistent governance and assurance across all in-scope compute platforms.
Job Responsibilities:
- Ensure cloud workloads are protected and monitored in alignment with CSA security standards and defined baselines.
- Maintain continuous visibility into workload security posture across virtual machines, containers, and compute platforms.
- Identify workload vulnerabilities, misconfigurations, and insecure operating system or platform settings.
- Monitor runtime activity to detect suspicious behavior, privilege escalation, policy violations, and drift from security baselines.
- Build, maintain, and tune vulnerability detections aligned to vulnerability management and runtime protection requirements.
- Support onboarding and operationalization of cloud security tooling across environments and workload types.
- Partner with infrastructure, DevOps, and platform teams to drive remediation of workload security risks.
- Triage vulnerability findings, assess risk and impact, and support prioritization of remediation efforts.
- Provide workload security posture reporting, metrics, and risk transparency to CSA leadership.
- Contribute to workload security standards, baseline documentation, and audit readiness activities.
Required Qualifications:
- Understanding of Cloud Native security concepts and runtime security principles.
- Experience identifying and managing workload vulnerabilities and insecure configurations.
- Knowledge of cloud compute services, operating systems, and containerized workloads.
- Familiarity with vulnerability management and runtime detection techniques.
- Strong analytical, documentation, and collaboration skills.
Desired Qualifications
- Experience supporting cloud or workload security assurance programs.
- Hands-on experience with Cloud Security Vulnerability Management tools (e.g., Aqua, Prisma Cloud, Wiz, Defender).
- Familiarity with Linux security fundamentals.
- Experience supporting audit or compliance-driven security reviews.
- Bachelor's degree in a technical or security-related field.
- Relevant cloud or security certifications preferred.
This job will be open and accepting applications for a minimum of seven days from the date it was posted
Shift:
1st shift (United States of America)
Hours Per Week:
40
Pay Transparency details
US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)
Pay and benefits information
Pay range
$100,000.00 - $141,300.00 annualized salary, offers to be determined based on experience, education and skill set.
Discretionary incentive eligible
This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.
Benefits
This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
About Bank of America Business
Sourced by ZipRecruiter
Industry
Finance and insurance
Company size
10,000+ Employees
Headquarters location
Charlotte, NC, US
Year founded
1998