IT Cloud Security Consulting Director

| Hybrid
Sorry, this job was removed at 10:25 p.m. (CST) on Wednesday, October 27, 2021
Find out who's hiring in Chicago, IL.
See all Cybersecurity + IT jobs in Chicago, IL
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Job Summary
The Consulting Director, IT Cloud Security is an individual contributor role responsible for developing CNA's cloud security strategies, conducting cloud security readiness assessments and for the selection, development and implementation of enterprise cloud security architecture standards. This role leads the design and development of security architectures for protecting data deployed into different types of cloud applications. This position will directly contribute to the overall global enterprise cloud architecture and lead the security vision and strategy around all cloud-based applications (including Infrastructure, Platform, and Software-as-a-Service (IaaS/PaaS/SaaS). This role also will serve as the central point of contact for Cloud Security for other IT and business teams within CNA for all matters related to cloud security.
Essential Duties & Responsibilities
Performs a combination of duties in accordance with departmental guidelines:

  1. Develop and coordinate client Cloud Security strategy and define the transition to and adoption of secure cloud services, communicating with project stakeholders to effectively convey requirements of technical and process improvements.
  2. Design and implement strategies and tactical plans to aid CNA in its move to the Cloud in a secure fashion while keeping the information risk at an acceptable level.
  3. Based on business requirements, design and implement cloud-native security architectures and designs applying defense-in-depth strategies that will allow those requirements to be met with a minimal degree of risk to CNA and with appropriate security controls present.
  4. Comprehensive expert understanding in many areas of IT and information security, with the ability to describe in business terms the impact of IT and cloud security policies, standards, and architecture, and provide cloud security direction to business and IT personnel.
  5. Possess and maintain a firm understanding of the offerings within both Amazon Web Services (AWS) and the Google Cloud platforms for cloud security and their application to CNA.
  6. Recommend tactical and strategic initiatives to eliminate or mitigate risks. Actively monitor and assess new and emerging threats posing risk to cloud computing environments.
  7. Provide guidance and technical leadership in the development of security standards and guidelines for cloud infrastructure to conform to information enterprise architecture, risk profile and policy requirements.
  8. Document and advise on areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation.
  9. In collaboration with Legal, identify current and potential legal and regulatory issues affecting information security and assess their impact on CNA's cloud services.
  10. Participate in Customer Assessment reviews of organization security controls on behalf of the customers when we store, process or transmit the customer's data in cloud environments.


May perform additional duties as assigned.
Reporting Relationship
Typically reports to AVP or above
Skills, Knowledge & Abilities

  1. Expert level knowledge of cloud system architecture and key cloud security concepts.
  2. Preferred experience with the insurance industry, its products and services.
  3. Strong experience with Cloud platforms, especially Amazon Web Services (AWS) and Google Cloud along with experience architecting security solutions within these cloud providers.
  4. Expert knowledge of Cloud methodologies (IaaS, PaaS, SaaS), automation, orchestration, cost frameworks, trends and industry-leading cloud vendor offerings and integrations.
  5. Hands-on experience configuring AWS security services such as IAM, KMS, and CloudTrail and Google Cloud security services with appropriate security certifications.
  6. Experience with DevSecOps and Agile Methodologies along with experience with third party Cloud security tools, and dealing with Cloud Native Application Architectures and their associated security implications.
  7. Ability to assess risks in line with information security objectives and risk tolerance of the institution. Proven conceptual, analytical and evaluation skills.
  8. Strong interpersonal, verbal presentation and written communication skills along with the ability to work independently.
  9. Ability to work well under pressure and to meet tight deadlines. Demonstrates a high level of motivation, confidence, and responsibility.
  10. Excellent project management skills and ability to organize and plan effectively to meet project goals.


Education & Experience

  1. Bachelor's Degree required or equivalent work experience. Master's Degree in Computer Science or technical field preferred.
  2. Typically a minimum of ten years of IT Security experience, with recent cloud security experience.
  3. Deep insurance industry knowledge preferred.
  4. Strong knowledge and experience architecting security solutions within cloud providers - Amazon Web Services (AWS) and Google Cloud preferred.
  5. Experience working with cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies.
  6. IT Security and Cloud certifications preferred.


*LI-KC1

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
    • JavaLanguages
    • JavascriptLanguages
    • KotlinLanguages
    • PerlLanguages
    • PythonLanguages
    • RLanguages
    • SqlLanguages
    • jQueryLibraries
    • jQuery UILibraries
    • ReactLibraries
    • Node.jsFrameworks
    • SpringFrameworks
    • AccessDatabases
    • DB2Databases
    • Microsoft SQL ServerDatabases
    • MySQLDatabases
    • OracleDatabases
    • PostgreSQLDatabases
    • Google AnalyticsAnalytics
    • ConfluenceManagement
    • JIRAManagement
    • Microsoft ProjectManagement
    • SalesforceCRM
    • SendGridEmail
    • MarketoLead Gen

An Insider's view of CNA

How would you describe the company’s work-life balance?

Work-life balance has always been a priority for me. It always will be. CNA’s hybrid working model allows me to not only maximize collaboration with my peers but also take advantage of increased flexibility by combining remote and in-office work. I’m empowered to take control of my schedule based on what works best for me and my team.

Alison Massey

Agile Scrum Master Consultant

How do you collaborate with other teams in the company?

On the Security Advisory team, collaboration is key to what we do. We sit at a unique intersection of security goals and business objectives. By working across nearly every IT team at CNA, we balance the need for maintaining secure initiatives and keeping projects on track. It’s our job to find the best, secure path to ‘Yes’ for business requests.

Zach Jones

Director, Security Advisory

How has your career grown since starting at the company?

I joined CNA as a contractor and became a full-time employee after an eight-year contractor journey. I’m passionate about solving technical challenges and CNA allows me to foster that passion. Every day, I learn about emerging technologies. I’m empowered to develop, grow, and create a career that works for me and my lifestyle.

SenthilKumar Asokan

Applications Engineer Senior Specialist

How do your team's ideas influence the company's direction?

Enterprise Architecture creates foundations for IT expectations across CNA. I’m on a team that builds reusable IT assets, communicates best practices, and decides standards for tooling, and more. I influence CNA outside of my role, too, specifically through CNA’s Employee Resource Groups. I’m empowered to influence both IT and our culture of inclus

Lisa Smith

Architecture Senior Specialist

What does career growth look like on your team?

Career growth can take on many different forms at CNA, and that’s because there are always opportunities to acquire transferrable skills. On my team specifically, we’re encouraged to identify and work toward development opportunities that matter to us. We’re empowered to make a difference while advancing our careers.

Josie Lee

Director, HR Business Partner

What are CNA Perks + Benefits

CNA Benefits Overview

One of the many advantages of working at CNA is the benefits program we offer you and your eligible dependents,
beginning on the first day of your employment. The program features a variety of plans that provide health care
benefits, well-being, disability and survivor protection, and 401(k) savings, among others. Below are highlights
of the offerings.

Culture
Volunteer in local community
Partners with nonprofits
Open door policy
OKR operational model
Open office floor plan
Flexible work schedule
Remote work program
Diversity
Dedicated diversity and inclusion staff
Diversity employee resource groups
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability insurance
Dental insurance
Vision insurance
Health insurance
Life insurance
Pet insurance
Wellness programs
Mental health benefits
Financial & Retirement
401(K)
401(K) matching
Company equity
Employee stock purchase plan
Performance bonus
Charitable contribution matching
Child Care & Parental Leave Benefits
Generous parental leave
Family medical leave
Adoption Assistance
Vacation & Time Off Benefits
Generous PTO
Paid holidays
Paid sick days
Office Perks
Commuter benefits
Some meals provided
Relocation assistance
Onsite gym
Professional Development Benefits
Job training & conferences
Tuition reimbursement
Lunch and learns
Online course subscriptions available
Paid industry certifications

More Jobs at CNA

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about CNAFind similar jobs like this