Vulnerability Management and Cloud Security/CNAPP Specialist
Listed on 2026-01-12
-
IT/Tech
Cybersecurity
Select how often (in days) to receive an alert:
Job Title:Vulnerability Management and Cloud Security/CNAPP Specialist
Job Code: 11787
Country: US
Skill Category: IT echnology
The pay range for this position at commencement of employment is expected to be between $95,000 and $120,000 annually.
Company OverviewNomura is an Asia-based financial services group with an integrated global network spanning over 30 countries. By connecting markets East & West, Nomura services the needs of individuals, institutions, corporates and governments through its three business divisions:
Retail, Asset Management, and Wholesale (Global Markets and Investment Banking). Founded in 1925, the firm is built on a tradition of disciplined entrepreneurship, serving clients with creative solutions and considered thought leadership. For further information about Nomura, visit
The Information Technology department at Nomura is at the forefront of innovation, driving technology solutions that empower our business and enhance client experiences. We leverage cutting‑edge technologies to develop and maintain robust systems and infrastructure, ensuring the security, reliability, and efficiency of our operations. Join our team and be part of a dynamic and collaborative environment that embraces technological advancements to deliver value and drive our digital transformation journey.
Role OverviewNomura is seeking a skilled Vulnerability Management and Cloud Security/CNAPP Specialist to join our Information Security team. You will play a crucial role in enhancing our vulnerability program with a strong focus on:
- Vulnerability Management
- Cloud cybersecurity efforts through Cloud Native Application Protection Platform (CNAPP) management,
- Cloud Security Posture Management (CSPM) policy management, and Cloud Security alert investigation
- Demonstrate strong proficiency in Vulnerability Management – identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's IT systems, networks, and applications.
- Perform regular scans, analyze risk levels, coordinate remediation with other teams, and report findings and progress to management.
- Apply knowledge of operating systems, networks, and vulnerability scoring systems, and use vulnerability scanning tools.
- Strong understanding of IaaS (AWS) concepts and services including compute workloads (EC2), machine images (AMIs), storage technologies (S3, EBS, EFS, etc.) and IAM permissions.
- Knowledge of cloud configuration best practices.
- Understanding of public cloud’s shared responsibility model.
- Proficiency in navigating a CNAPP platform (e.g., Prisma Cloud) and investigating resources.
- Proficiency in writing custom CSPM rules for configuration alerting.
- Strong proficiency in programming languages, with a focus on scripting and automation for efficient data handling.
- Strong proficiency in REST APIs and understanding of Cloud Service Provider API endpoints.
- Collaborate with cross‑functional teams—security analysts, SOC, IT professionals—to gather requirements, investigate alerts, and assist with remediation of misconfigurations.
- Collaborate with Architecture teams to custom‑tune policies to the operating environment.
- Assist teams with understanding the cause of alerts to aid in remediation or identifying false positives.
- Drive initiatives to improve the efficiency and effectiveness of reporting processes.
- Effectively communicate findings and insights to both technical and non‑technical stakeholders.
- Present reports and recommendations to leadership for informed decision‑making.
- Bachelor’s degree in a related field.
- Proven experience with Vulnerability Management tooling.
- Proven experience with CNAPP tooling (e.g., Prisma Cloud, Wiz).
- Experience with ITSM and CMDB tooling (e.g., Service Now).
- Strong programming skills (e.g., Python, Power Shell).
- Expertise in Cloud Infrastructure.
- Excellent communication and collaboration skills.
If you are passionate about…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).