Zions Bancorporation logo
Zions Bancorporation

A financial services company headquartered in Salt Lake City, Utah, Zions Bancorporation specializes in Small Business Administration (SBA) lending, agricultura

Manager - Quantum Safe Cybersecurity Program

Location

Utah

Posted

32 days ago

Salary

$160K - $210K / year

Seniority

Lead

Job Description

Manager - Quantum Safe Cybersecurity Program

Zions Bancorporation

Title: Manager - Quantum Safe Cybersecurity Program (Remote) Location: Midvale, Utah, United States Enterprise Technology Operations 069842 Job Description: Zions Bancorporation’s Enterprise Technology and Operations (ETO) team is transforming what it means to work for a financial institution. With a commitment to technology and innovation, we have been providing our community, clients and colleagues with the best experience possible for over 150 years. Help us transform our workforce of the future, today. We are seeking a seasoned cybersecurity leader to build and run our enterprise Quantum‑Safe Program. This role will own the strategy, roadmap, and delivery of post‑quantum cryptography (PQC) and quantum‑safe networking initiatives, partnering closely with Network Engineering, AppSec, Cloud Platform, and Enterprise Architecture. You will drive cryptographic modernization, govern algorithm agility, secure R&D environments, and ensure our controls, standards, and services are future‑ready for quantum threats—balancing business enablement with risk management. Key Responsibilities - Enhance and lead the implementation of a multi‑year quantum‑safe strategy covering PQC migration, algorithm agility, key management modernization, and quantum‑safe networking. - Oversee the partnership between cybersecurity and technology teams to maintain the crypto inventory (protocols, libraries, certificates, keys, HSMs, KMS, embedded/IoT) and a risk‑based prioritization for remediation. - Partner with platform and product teams to upgrade TLS/SSH/IPsec stacks, enable algorithm agility, and adopt vetted PQC libraries and configurations. - Align outcomes with industry best practices and internal cyber/tech controls, lead policy updates for crypto agility, key lifecycles, and certificate governance. - Support documentation and evidence for risk management, control validation, and accreditation efforts in partnership with GRC. - Engage with vendors and partners (HSM/KMS, PKI, networking, cloud) to evaluate quantum‑safe capabilities; run RFPs/POCs and manage deliverables. - Define and oversee a strategy for third-party PQC assurance (vendors and customers) including proof of capability, PQC readiness, and ongoing assessment and validation. - Collaborate with the Cyber Threat Intelligence team to provide regular risk assessment and analysis to management based on the evolving state of quantum computing, threats, capabilities, and risks. - Define and track program KPIs: crypto inventory coverage, PQC adoption rate, TLS posture remediation, key lifecycle compliance, lab audit pass rates, and incident reduction. Required Qualifications, Capabilities, & Skills - 8+ years in cybersecurity, network security, or secure systems engineering; 3+ years in technical leadership or program management. - Proven delivery of technical software/network projects from design through deployment, maintenance, and support. - Technical proficiency with networking protocols and architectures (TLS/SSH/IPsec, routing/segmentation, service mesh/mTLS) and one or more programming languages (Go, Rust, Java, Python). - Solid understanding of cryptography and PKI (certificates, CAs, HSMs/KMS, key lifecycles) and modern cloud security practices. - Experience collaborating with interdisciplinary R&D teams and operating across cross‑functional stakeholders. - Bachelor’s degree in Computer Science, Cybersecurity, Computer/Network Engineering, IT, or related field. Plus - Hands‑on experience implementing PQC (e.g., migration planning, algorithm agility, library selection) and/or quantum key distribution (QKD) solutions or evaluations. - Experience with cryptography‑centric libraries/applications (e.g., OpenSSL/BoringSSL, liboqs), HSM/KMS, and certificate management at enterprise scale. - Background adopting emerging tech (AI, blockchain, quantum) in regulated industries (finance, telecom, high‑tech). - Experience with cloud architecture (AWS/Azure/GCP), key management strategies, and secure deployment pipelines (Kubernetes, service mesh). - Familiarity with secure software development, digital forensics, or penetration testing and associated control frameworks. - Graduate degree in CS/CE/IT or related discipline; certifications such as CISSP, CISM, CCSP, CEH, OSCP (or equivalent) are a plus. Core Competencies - Strategic program leadership; outcome‑oriented delivery. - Deep technical fluency in crypto, PKI, and network security; ability to make pragmatic build/buy decisions. - Strong stakeholder influence and vendor management. - Excellent communication—able to convey complex concepts to varied audiences. - Bias for action in fast‑paced, shifting priorities; thoughtful risk‑taking. - Commitment to inclusive collaboration and talent development. Pay Range: $160,000 - $210,000 $ (Based upon relatable skills/experience) Work Location: This position can be located 100% remote within the United States or fully in office (5 days a week) if you are within 50 miles of the new Zions Technology Center in Midvale, UT. Benefits: - Medical, Dental and Vision Insurance - START DAY ONE! - Life and Disability Insurance, Paid Parental Leave and Adoption Assistance - Health Savings (HSA), Flexible Spending (FSA), and dependent care accounts - Paid Training, Paid Time Off (PTO) and 11 Paid Federal Holidays - 401(k) plan with company match, Profit Sharing, competitive compensation in line with work experience - Mental health benefits including coaching and therapy sessions - Tuition Reimbursement for qualifying employees - Employee Ambassador preferred banking products - Employees may, at the company’s discretion, be eligible to receive a cash bonus award

Related Categories

Related Job Pages

More Security Engineer Jobs

Cognizant logo

Network Security Engineer

Cognizant

Cognizant is an award-winning global provider of information technology and business consulting services. Founded in 1994, the company is headquartered in Teaneck, New Jersey, and

Title: Network Security Engineer CCIE Certified Location: Austin United States ID 00068539721 - Location Austin, TX - 815 Brazos St / United States - Job category IT Infrastructure - Work model Work from Office Job Description: Cognizant is seeking a Network Security Engineer for a full-time remote opportunity. About Cognizant's CIS Practice: Cognizant's CIS (Cognizant Infrastructure Services) Practice is a global leader in providing IT infrastructure services. We deliver innovative solutions to optimize and transform IT infrastructure, ensuring business agility and operational efficiency. Our services include cloud computing, data center management, network services, and cybersecurity. We focus on understanding client needs and delivering customized solutions to drive business success. In this role, you will: - Engineer and maintain site-to-site and remote access VPN solutions (IPsec, SSL/TLS, DMVPN. Troubleshoot VPN client connectivity issues across multiple platforms (Windows, macOS, mobile). - Support firewall and security policy configuration tied to VPN services. - Perform root cause analysis on tunnel failures, latency, and authentication issues. - Collaborate with internal teams on access and security architecture. Qualifications: - CCIE Security (certified, not written-only). - 5+ years of hands-on experience with enterprise VPN technologies. - Strong knowledge of IPsec, IKEv2, SSL VPN, and related protocols. - Experience troubleshooting VPN clients (AnyConnect, GlobalProtect, or equivalent) - Solid understanding of PKI, certificate-based authentication, and MFA integration. - Familiarity with firewall platforms (ASA, Palo Alto, Fortinet). - Experience in large-scale enterprise or service provider environments. - Exposure to Zero Trust / ZTNA frameworks. At Cognizant, we are eager to meet people who believe in our mission and can make an impact in various ways! We strongly encourage you to apply even if you only meet the required skills listed. Consider what transferable experience and skills make you an outstanding applicant and help us see how you would be helpful in this role. Cognizant will only consider applicants for this position who are legally authorized to work in United States without requiring employer sponsorship, now or at any time in the future. At Cognizant, we strive to provide flexibility wherever possible, and we are here to support a healthy work-life balance though our various wellbeing programs. Based on this role's business requirements, this is a remote position. The salary range for this role is between $99,000 and $116,000 will be determined by the skills and experience level of the candidate.

Texas
$99K - $116K / year
Capital.com logo

Network Security Engineer

Capital.com

We are making the world of finance more accessible, engaging, and useful with an award-winning trading platform and app.

Full TimeRemoteTeam 501-1,000H1B No Sponsor

• Design, develop, implement and maintain solutions to protect and monitor the network from threats (firewalls, IDS/IPS, VPN, NAC, etc). • Analyze network traffic to identify anomalies and threats. • Participate in projects to improve network security architecture and posture. • Audit and review network security systems/tools configurations to ensure compliance with security standards. • Integrate network security tools with internal systems and workflows for further handling and response. • Create automation tools for event analysis and operational efficiency. • Support network segmentation policies and enforce security requirements.

Poland
Job Closed
Telnyx logo

Junior Security Operations Engineer

Telnyx

Access an all-in-one communications platform and API with carrier-grade voice, data and messaging capabilities.

ContractRemoteTeam 201-500Since 2015H1B Sponsor

Role Description We’re looking for a Junior Security Operations Engineer who is AI-Forward to help scale and modernize our SecOps program. This is a hands-on, builder role for someone who will design and ship the security tooling that powers our triage, investigations, and response workflows. You’ll report to the Technical Operations Director and work alongside our GRC lead to improve our: - Vulnerability intake - Threat response - Darkweb posture - Internal security tooling A core part of this role is building AI-assisted security tooling: - Triage agents that pre-classify bug bounty reports - Investigation copilots that pull context from logs and SIEM data - Response workflows that draft remediation steps and track them to closure You’ll spend as much time wiring up that tooling as you will reproducing vulnerabilities and working incidents. This role suits someone who thrives in a lean, high-impact environment, has strong opinions on where humans add value versus where tooling should take over, and wants to shape how a modern security team operates. Qualifications - Previous experience in a SecOps, Security Analyst, or Threat Response role - Proven ability to understand and reproduce technical vulnerabilities - Experience with bug bounty triage (HackerOne, Bugcrowd, or similar) - Hands-on exposure to SIEM, EDR, and DLP tools in production environments - A genuine, demonstrated interest in applying AI/LLMs to security work - Scripting and automation skills in Python, Bash, or similar - Comfort working autonomously across time zones and asynchronously - Strong written communication skills Requirements - Triage & Vulnerability Management - Review incoming vulnerability reports from our bug bounty intake; reproduce and document valid issues for engineering teams - Build the tooling that improves signal-to-noise: automate duplicate detection, spam filtering, and abuse flagging - Act on DAST findings: coordinate remediation, verify fixes, and re-test - Track remediation timelines for critical vulnerabilities and keep stakeholders honest on SLAs - Threat Response & Monitoring - Monitor and respond to EDR and cloud security alerts; investigate, contain, and document - Analyze darkweb findings and credential exposures; shape our darkweb monitoring practices and tooling over time - Improve detection coverage: tune noisy rules, close gaps, and enrich alerts with context - Help configure and tune DLP, SIEM, and AI security tooling - Security Tooling (core to this role) - Build AI-assisted triage tooling that pre-classifies bug bounty reports - Build investigation tooling: LLM-backed copilots and Slack bots - Build response tooling: workflows that draft remediation steps and track issues to closure - Evaluate emerging AI security tooling and bring what’s genuinely useful into the stack - Apply a security-minded lens to our own AI usage - Compliance & Cross-Functional - Support audit evidence collection for SOC 2, ISO 27001, and PCI DSS - Partner with ITOps to verify patches, endpoint coverage, and access hygiene Benefits - Full-time contract - Remote-first and async-friendly - Potential to extend or convert based on fit - Reports to the Technical Operations Director; works closely with the GRC lead and IT Operations How We Work We’re a lean, high-trust team. We value people who ship, who can operate independently, and who treat security as an engineering problem rather than a checklist. If you’re someone who sees a repetitive task and immediately thinks “this should be a script, or better yet, an agent,” you’ll fit in here. To Apply Tell us about a time you used AI, automation, or custom tooling to meaningfully change how a security workflow ran. What was manual before, what it looked like after, and what you learned. Links to code, writeups, or demos are welcome.

Worldwide
Prolific logo

Application Security Lead

Prolific

Building a better world with better data.

Full TimeRemoteTeam 51-200Since 2014H1B Sponsor

• You'll own Prolific's application security strategy and be the most senior security engineering voice in the organisation. • Define and drive our Secure Software Development Lifecycle (SSDLC). • Set the standard for how security is embedded into engineering. • Get hands-on with code review, threat modelling, and security testing when it matters. • Manage our Senior Application Security Engineer and continue to own our compliance programme alongside these responsibilities. • Act as the go-to expert for application security, partnering with engineering leadership to balance risk and velocity. • Build the tooling, processes, and culture needed to embed security into how we ship.

United Kingdom