Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Staff Cloud Security Engineer, Risk Management and Loss Control image - Rise Careers
Job details

Staff Cloud Security Engineer, Risk Management and Loss Control

Bring your heart to CVS Health. Every one of us at CVS Health shares a single, clear purpose: Bringing our heart to every moment of your health. This purpose guides our commitment to deliver enhanced human-centric health care for a rapidly changing world. Anchored in our brand - with heart at its center - our purpose sends a personal message that how we deliver our services is just as important as what we deliver.Our Heart At Work Behaviors™ support this purpose. We want everyone who works at CVS Health to feel empowered by the role they play in transforming our culture and accelerating our ability to innovate and deliver solutions to make health care more personal, convenient and affordable. Position Summary The Staff Cloud Security Engineer is a critical member of the Technology Services & Solutions organization, leading the cloud security enforcement capabilities spanning multi-cloud environments across all CVS Health's footprints. This person will partner closely with Information Security, various departments in Technology Services & Solutions and application development teams as well as Enterprise Product and Digital organizations to deliver security control enforcement that are recognized as industry best in class models. The Staff Security Engineer will help to define various guardrails using cloud inbuild capabilities to enforce security controls, foster a culture of innovation to enable secure business solutions, drive operational excellence, optimize operating costs through technology rationalization and standardization and drive workforce strategy with an emphasis on talent development and retention.This role will:• Analyze security controls in all cloud environments for enforcement.• Identity various cloud native solutions to provide enforcement of security requirement.• Define secure system solutions to meet evolving threat landscape and risks while balancing impacts to the CVS technology organizations.• Ability to balance cloud policy controls enforcement requirements against business need and recommend solutions based on risk.• Coordinate comprehensive testing of all controls to ensure efficacy and environmental stability.• Incorporate security into the DevOps and software development lifecycles through consistent communications and software automation.• Ownership and management of cloud native guardrails across various cloud environment.• Thorough understanding of cloud native enforcement structure with a detailed understanding of security best practices, Cloud Security Alliance control architectures and related risks.• Knowledge of automation, governance, identity and access management, logging and monitoring, configurations, compliance methodologies, network solutions, controls and associated risks.• Strategic thinking, ability to develop long term strategic plans for container security programs in a way that scales in conjunction with organizational adoption goals.• Detailed understanding of cloud security, architectures, best practices, and related risks.• Knowledge of industry leading security native tools and applicability to the CVS hybrid ecosystem.Required Qualifications• 7+ years of experience in Public Cloud or related infrastructure technologies..• 5+ years of experience with Azure Cloud Engineering.• 3+ years of experience with either GCP or AWS.• 1+ years of experience with Azure Policy.Preferred Qualifications• Understanding of public cloud concepts across all three public cloud platforms: AWS, Azure & GCP.• Previous experience with Risk and Loss Control in a large enterprise environment.• Security Risk Analysis Procedures & Best Practices.• Front-facing experience with stakeholder and executive communications.• Continuous learner well informed on technology trends, tools, methodologies, and models.• Strong attention to detail and a focus on mobilizing the organization to deliver the strategy.• Comfortable operating within areas of ambiguity to iterate and make progress in a consistent manner.Education• Bachelor's degree or equivalent experience (High School Diploma and 4 years relevant experience)Pay RangeThe typical pay range for this role is:$118,450.00 - $260,590.00This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company's equity award program.In addition to your compensation, enjoy the rewards of an organization that puts our heart into caring for our colleagues and our communities. The Company offers a full range of medical, dental, and vision benefits. Eligible employees may enroll in the Company's 401(k) retirement savings plan, and an Employee Stock Purchase Plan is also available for eligible employees. The Company provides a fully-paid term life insurance plan to eligible employees, and short-term and long term disability benefits. CVS Health also offers numerous well-being programs, education assistance, free development courses, a CVS store discount, and discount programs with participating partners. As for time off, Company employees enjoy Paid Time Off ("PTO") or vacation pay, as well as paid holidays throughout the calendar year. Number of paid holidays, sick time and other time off are provided consistent with relevant state law and Company policies.For more detailed information on available benefits, please visit Benefits | CVS HealthWe anticipate the application window for this opening will close on: 12/29/2024Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.
CVS Health Glassdoor Company Review
3.1 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
CVS Health DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of CVS Health
CVS Health CEO photo
Karen S. Lynch
Approve of CEO

Average salary estimate

$189520 / YEARLY (est.)
min
max
$118450K
$260590K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Staff Cloud Security Engineer, Risk Management and Loss Control, CVS Health

Are you ready to take your career to the next level? Join CVS Health as a Staff Cloud Security Engineer, Risk Management and Loss Control in beautiful Hartford, CT! Here at CVS Health, we put our heart into everything we do, including how we manage cloud security across our multi-cloud environments. As a pivotal member of our Technology Services & Solutions team, you will lead the charge in enforcing security controls and defining innovative solutions that not only meet today’s challenges but also anticipate tomorrow's risks. With over seven years of experience under your belt in public cloud technologies, your expertise will be essential as you partner with various teams to foster a culture of innovation and operational excellence. Your analytical skills will shine as you assess and enforce security controls, balancing the need for robust policy with the business needs of our organization. Whether you are coordinating comprehensive testing of all controls or incorporating security into the DevOps lifecycle, your role will directly impact how CVS Health delivers on its promise to make healthcare more personal and accessible. Plus, you'll find a supportive environment that values talent development and career growth. If you're passionate about cloud security and ready to make a meaningful impact, we'd love to hear from you!

Frequently Asked Questions (FAQs) for Staff Cloud Security Engineer, Risk Management and Loss Control Role at CVS Health
What are the main responsibilities of a Staff Cloud Security Engineer at CVS Health?

As a Staff Cloud Security Engineer at CVS Health, your responsibilities include analyzing security controls across cloud environments, defining secure system solutions based on evolving risks, and coordinating extensive testing to ensure security efficacy. You'll work closely with various stakeholders to balance policy enforcement with business needs, critical for driving successful security initiatives.

Join Rise to see the full answer
What qualifications are needed for the Staff Cloud Security Engineer position at CVS Health?

To qualify for the Staff Cloud Security Engineer role at CVS Health, candidates should have at least 7 years of experience in public cloud technologies, including 5 years specifically in Azure Cloud Engineering. Knowledge of GCP or AWS is also essential, along with the ability to establish secure system solutions and manage cloud-native guardrails.

Join Rise to see the full answer
What is the work environment like for a Staff Cloud Security Engineer at CVS Health?

At CVS Health, the work environment for a Staff Cloud Security Engineer promotes collaboration, innovation, and professional growth. You'll be part of a passionate team focused on delivering best-in-class security in a supportive atmosphere that encourages continuous learning and adaptation to emerging technology trends.

Join Rise to see the full answer
What career advancement opportunities exist for Staff Cloud Security Engineers at CVS Health?

CVS Health provides significant career advancement opportunities for Staff Cloud Security Engineers, including potential pathways to senior leadership roles. The organization places a strong emphasis on talent development, offering resources for further education and training to enhance your skills and leadership capabilities.

Join Rise to see the full answer
How does CVS Health support work-life balance for Staff Cloud Security Engineers?

CVS Health is committed to work-life balance for its employees, including Staff Cloud Security Engineers. With a comprehensive benefits package that includes paid time off, flexible scheduling, and employee well-being programs, working at CVS Health means you can thrive both personally and professionally.

Join Rise to see the full answer
Common Interview Questions for Staff Cloud Security Engineer, Risk Management and Loss Control
What experience do you have with enforcing cloud security controls in a multi-cloud environment?

When answering this question, relate your practical experiences with enforcing security measures in multi-cloud setups. Provide examples of specific controls you implemented and the impact they had on enhancing security posture, showcasing your ability to balance policy requirements with practical business needs.

Join Rise to see the full answer
Can you explain how you incorporate security into the DevOps lifecycle?

Discuss your approach in integrating security from the initial stages of the DevOps process. Highlight specific tools and methodologies you've used, along with the benefits of creating a security-focused culture within development teams, emphasizing real-world outcomes of your contributions.

Join Rise to see the full answer
What strategies do you use for risk assessment in cloud environments?

Outline your methodology for conducting risk assessments, covering aspects like identifying potential threats and vulnerabilities, evaluating existing security controls, and suggesting improvements. Be sure to mention any frameworks or standards you adhere to, demonstrating a comprehensive understanding of security risk analysis.

Join Rise to see the full answer
Describe a challenging cloud security problem you faced and how you resolved it.

Share a detailed narrative of a specific cloud security challenge, including the context, your analysis, the steps you took to resolve it, and the results achieved. This allows you to showcase your problem-solving skills and technical expertise effectively.

Join Rise to see the full answer
How do you stay informed about the latest cloud security trends and technologies?

Discuss your methods for continuous learning, such as following influential industry blogs, participating in webinars, attending seminars or conferences, and engaging with the security community. This demonstrates your commitment to staying up-to-date and proactive in the ever-evolving field of cloud security.

Join Rise to see the full answer
What tools do you prefer for cloud security monitoring and why?

Mention specific cloud security tools you've worked with, and articulate why you prefer them based on your experience. Discuss what features make these tools effective in monitoring and managing security, showcasing your technical knowledge and practical insights on security management.

Join Rise to see the full answer
How do you ensure cloud compliance with relevant regulations?

Explain your approach to ensuring cloud compliance by discussing the frameworks or standards you follow, how you incorporate compliance checks throughout the cloud lifecycle, and any tools you utilize to monitor and maintain compliance, highlighting your understanding of compliance requirements.

Join Rise to see the full answer
What experience do you have with automation in cloud security?

Share specific examples of how you've utilized automation to enhance cloud security practices. Discuss the benefits automated processes brought to your security framework, such as efficiency in monitoring and compliance, and detail any specific tools or scripts you used.

Join Rise to see the full answer
What role does communication play in your position as a cloud security engineer?

Highlight the importance of communication in your role, such as collaborating with stakeholders, reporting to executives, and educating teams about security best practices. Providing specific examples will help illustrate your ability to effectively communicate and advocate for security initiatives.

Join Rise to see the full answer
Can you describe your experience with identity and access management solutions?

Discuss your hands-on experience with identity and access management solutions, outlining the strategies you've employed to manage permissions and user access in cloud environments. Mention any challenges you faced and how you overcame them to showcase your problem-solving capabilities.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 9 days ago
Photo of the Rise User
Posted 7 days ago
Photo of the Rise User
Posted 12 days ago
Posted 11 days ago
Photo of the Rise User
Experian Remote Calle Graham Bell s/n Armilla, Granada, MD, Spain
Posted 7 days ago
Photo of the Rise User
Posted 7 hours ago
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)

We help people with their health wherever and whenever they need us. And we do it with heart. Because our passion is our purpose: Bringing our heart to every moment of your health™.

283 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 15, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!