Senior Technology Manager - Security Operations Platform
Denver, Colorado;Washington, District of Columbia; Chicago, Illinois
To proceed with your application, you must be at least 18 years of age.
Acknowledge
Refer a friend
To proceed with your application, you must be at least 18 years of age.
Acknowledge (https://ghr.wd1.myworkdayjobs.com/Lateral-US/job/Denver/Senior-Technology-Manager---Security-Operations-Platform_25030677)
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description:
Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank's Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects, and responds to cybersecurity incidents
Role Description:
We are seeking a cybersecurity domain expert to lead as a Senior Technology Manager to design, develop, and deploy technology supporting Detection and Response activities for various Cyber Defense and Security Operations Teams. This role requires an innovative leader who can blend enterprise cybersecurity expertise with user to create seamless, scalable, and highly effective security operations platforms.
As the development lead, you will drive the strategic vision for a multi environment platform that integrates security tools, telemetry, automation, and analytics into a unified experience. You will collaborate closely with SOC analysts, threat hunters, incident responders, and security engineers to ensure that the interface meets operational needs while reducing friction and improving response times.
Skills
Deep expertise in cybersecurity operations, threat detection, and incident response workflows.
Proven experience designing and deploying platforms that integrate SIEM, SOAR, TIP, EDR, and cloud-native telemetry
Strong understanding of federated data access, log normalization, and real-time streaming (e.g., Cribl, Kafka)
Familiarity with LLM orchestration frameworks (e.g., LangChain, LlamaIndex) and AI/ML-driven analytics
Experience with advanced SOAR Playbooks and/or AI Agents.
Experience with data modeling, schema mapping, and field correlation across hybrid/multi-cloud environments
Strong interpersonal and executive communication skills; ability to translate technical vision into business value
Demonstrated ability to lead cross-functional teams of engineers, data scientists, and security analysts
Experience with agile development, DevSecOps, and secure software lifecycle practices
Experience developing technology for MDR, or other large scale cybersecurity platform software providers.
Roles & Responsibilities
Partner to lead the development of an AI-augmented threat hunting and security operations platform that unifies telemetry, automation, and analytics
Architect and oversee the integration of federated data sources across cloud, on-prem, and legacy environments
Collaborate with cybersecurity teams and engineering teams to define use cases for LLMs in threat detection, log correlation, and @contextual enrichment
Drive the implementation of a modular, scalable platform that supports real-time streaming, historical search, and AI-assisted investigation
Champion the use of structured data models and field taxonomies (e.g., OCSF, ECS) to enable semantic search and automation
Integrate LLMs to support use cases such as data cataloging, field mapping, log summarization, and hypothesis-driven hunting
Establish performance metrics and feedback loops to continuously improve platform usability, detection efficacy, and analyst productivity
Partner with SOAR teams to develop agent-based playbooks for automated @context gathering and response
Ensure platform security, compliance, and auditability across all integrated components
Required Qualifications:
10+ years of experience in cybersecurity engineering, threat detection, or security platform development
7+ years of leadership experience managing cross-functional technical teams
Strong background in building or integrating security data platforms (e.g., Splunk, Elastic, Chronicle, Snowflake, Anvilogic)
Experience with cloud-native security architectures (AWS, Azure, GCP) and hybrid infrastructure
Familiarity with LLMs, vector databases, and AI/ML pipelines for security use cases
Hands-on experience with log streaming, data normalization, and federated search technologies (e.g., Cribl, Trino, Anvilogic)
Deep understanding of SOC workflows, threat hunting methodologies, and MITRE ATT&CK framework
Experience with API-based integrations, open-source security tooling, and secure platform design
Secure Coding experience.
Managerial Responsibilities:
This position may also have responsibilities for managing associates. At Bank of America, all managers at this level demonstrate the following responsibilities, in addition to those specific to the role, listed above.
Opportunity & Inclusion Champion: Models an inclusive environment for employees and clients, aligned to company Great Place to Work goals.
Manager of Process & Data: Demonstrates deep process knowledge, operational excellence and innovation through a focus on simplicity, data based decision making and continuous improvement.
Enterprise Advocate & Communicator: Communicates enterprise decisions, purpose, and results, and connects to team strategy, priorities and contributions.
Risk Manager: Ensures proper risk discipline, controls and culture are in place to identify, escalate and debate issues.
People Manager & Coach: Provides inspection, coaching and feedback to motivate, differentiate and improve performance.
Financial Steward: Actively manages expenses and budgets in alignment with objectives, making sound financial decisions.
Enterprise Talent Leader: Assesses talent and builds bench strength for roles across the organization.
Driver of Business Outcomes: Delivers results by effectively prioritizing, inspecting and appropriately delegating team work.
Skills:
Influence
Risk Management
Solution Design
Stakeholder Management
Technical Strategy Development
Analytical Thinking
Application Development
Collaboration
Result Orientation
Solution Delivery Process
Agile Practices
Architecture
Automation
Data Management
DevOps Practices
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
Shift:
1st shift (United States of America)
Hours Per Week:
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE (https://www.eeoc.gov/sites/default/files/2023-06/22-088\EEOC\KnowYourRights6.12.pdf) .
View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
To view Bank of America's Drug-free Workplace and Alcohol Policy, CLICK HERE .
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.