Security Engineering Vice President

Goldman Sachs

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
New York, NY
Salary
$150,000–$250,000 / yr
Posted
75 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $183k
This role $200k
$120k most similar roles pay here $264k

This role pays more than 73% of similar roles. Most pay $157,200–$207,825 — the shaded band above. At the midpoint, this role pays about $200k versus about $183k for comparable roles.

Based on 240 similar postings.

Employer

About Goldman Sachs

Goldman Sachs is a leading global investment banking, securities, and investment management firm providing financial services to corporations, financial institutions, governments, and individuals.

Goldman Sachs currently has 134 open roles on FindRole.

Listed pay typically runs $137,000–$250,000 across 55 roles with salary data.

Most-posted roles

View all roles at Goldman Sachs

At a glance

TL;DR · Security Engineering Vice President

Security Engineering - New York - Vice President joins the Technology Risk Advisory team to provide consultative expertise and technical solutions across information security risk domains. This role involves leading a team to manage the vendor technology risk portfolio, where you will conduct deep-dive technical cybersecurity assessments for cloud, mobile, and application environments. You will design security measures, guardrails, and comprehensive architectures using threat modeling techniques like OWASP Top 10 and SANS Top 25. Key responsibilities include performing data flow analysis, negotiating contractual requirements, and assessing risks related to emerging technologies such as AI, machine learning, and zero trust. The position requires expertise in the regulatory landscape, procurement processes, and technical controls for APIs and network infrastructure to mitigate threats within a complex vendor ecosystem while ensuring robust security across various firm-wide platforms.

What you'll do

  • Lead the team assessing and managing the firm's portfolio of vendor Information Security risks.
  • Conduct deep-dive technical cybersecurity assessments for vendor logical controls, cloud systems, mobile platforms, and applications.
  • Design and implement security measures, guardrails, and architectures to protect data, APIs, and network infrastructure.
  • Perform threat modeling and data flow analysis using frameworks like OWASP Top 10 and SANS Top 25.
  • Negotiate and review information and cyber security requirements within vendor contracts.
  • Evaluate the security risks associated with emerging technologies such as cloud computing, AI, and machine learning.
  • Shape the firm's Vendor Technology Risk strategy and manage risk portfolios across various business units.

What we're looking for

  • Be well versed in technical cybersecurity risk assessments and providing security measures or solution technical controls.
  • Develop, evaluate, and document security measures, controls, and guardrails to protect data, applications, APIs, infrastructure, and systems.
  • Design or implement security strategy and architecture through threat modeling and data flow analysis.
  • Negotiate and review Information and Cyber Security contractual requirements.
  • Possess working knowledge of the regulatory landscape as it applies to the vendor ecosystem.
  • Maintain a good understanding of Information Security controls and their alternative implementations.
  • Have working knowledge of new technologies including Cloud computing, AI, ML, and zero trust.
  • Understand the overall Procurement process and the role of Technology Risk within that process.
  • Proficient verbal and written communication skills (preferred).
  • Bachelor of Science in a relevant technical or risk management field (preferred).
  • Prior experience conducting IT/cyber security assessments such as control, design, or configuration reviews (preferred).
  • Hold one or more certifications including CISSP, CCSP, GSEC, CEH, CCNA, CCNP, Solution Architect, Security+, SSCP, or CASP+ (preferred).

More like this

Similar roles

Security Engineer Vice President

Goldman Sachs

Dallas, TX 71 days ago
AWS Application Security Cloud Security Threat Modeling OWASP Top 10 CI/CD Python Terraform CloudFormation AWS CDK REST SAML OAuth OIDC Cryptography Spring Boot React MongoDB MS SQL Sybase JavaScript Shell Scripting PCI DSS
6+ yrs exp

Vice President, Risk Governance

Goldman Sachs

New York, NY 31 days ago $176,000$264,000
Application Security Cybersecurity Risk Management Software Engineering Data Analysis Microsoft Excel Information Security Process Engineering Automation
5+ yrs exp

Business Information Security Officer AVP

State Street

Quincy, MA 9 days ago $90,000$157,500
Cyber Risk Management Network Security SaaS Zero Trust Secure SDLC Vulnerability Management Patch Management Configuration Management Data Protection Threat Intelligence NIST ISO SOC FFIEC Risk Assessment Security Architecture

Vice President Machine Learning Engineer

Goldman Sachs

New York, NY 75 days ago $130,000$250,000
Machine Learning Deep Learning Python PySpark Scala TensorFlow PyTorch Scikit-Learn HuggingFace AWS GCP LLMs Prompt Engineering Big Data Iceberg HDFS Avro Parquet System Design Distributed Systems
10+ yrs exp