Jobs and Careers
AM

Senior Director - Cyber Engineering Cloud Security

AmerisourceBergen
USA - PA - Remote, United States, United StatesRemotefull_timeVerifiedPosted 22 Apr 2026

About the role

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!

Job Details

Summary:


The Senior Director of Cloud Security leads the global strategy, architecture, engineering, and governance of cloud security for an enterprise operating in multi-cloud and hybrid environments. This role is accountable for securing public cloud (IaaS/PaaS), SaaS platforms, containerized workloads, and cloud-native application architectures while enabling business velocity, digital transformation, and regulatory compliance. This role is responsible for building strong partnerships with technology teams, other corporate support functions, and other Information Security organizations to protect the corporate brand, data, and assets and is responsible for the design, implementation, operation, and maintenance of an information security framework, processes, and systems, that protect the business, services, information and systems against unauthorized use, disclosure, modification, damage, and loss.

 

The position partners closely with the CISO, other Information Security Sr. Leaders, and other Technology Leadership teams to establish a vision and strategy required to ensure scalable, measurable, and continuously improving defense capabilities across the applicable security domain in collaboration with other information security domain leaders and partner organizations.


Our employee experience is a strategic priority for our company. Our leaders are accountable for leading with purpose, fairness, and equity. They are responsible for building and developing diverse teams, maintaining a safe and inclusive environment, setting clear priorities, and holding self and team accountable for executing with excellence.

 

Primary Responsibilities:

 

  • Define and execute the enterprise cloud security strategy aligned to corporate risk appetite and regulatory requirements.

  • Establish cloud security reference architectures, guardrails, and design patterns.

  • Lead cloud security governance across AWS, Azure, GCP, and strategic SaaS providers.

  • Own cloud security policy framework and control standards (aligned to NIST,

  • Present cloud risk posture and roadmap to executive leadership and key stakeholders.

Lead cloud security architecture for:

  • Landing zones and platform engineering

  • Identity and access management (including zero trust)

  • Network security and segmentation

  • Encryption and key management

  • Container/Kubernetes security

  • API security

  • Cloud-native application protection

Additional Responsibilities:

  • Establish secure-by-design and DevSecOps integration models in collaboration with Application Security Engineering and Secure SDLC engineers.

  • Drive an automation first infrastructure-as-code and policy-as-code strategy in partnership with Platform Engineering and Application Security Engineering

  • Oversee and partner w/global support partners CSPM, CWPP, CNAPP, DSPM, SSPM and related platforms.

  • Drive critical alignment and integration w/engineering and delivery leaders supporting capabilities such as CIEM, CASB, and SSE

  • Partner with SOC and Cyber Defense Engineering for cloud threat detection and response integration.

  • Oversee cloud logging, telemetry, and SIEM/SOAR integration.

  • Partner with Cyber Defense Engineering on the creation, validation, and testing of cloud incident response engineering playbooks.

  • Partner with Risk Management and other key stakeholders to establish vulnerability management and misconfiguration remediation pipelines.

  • Track and reduce enterprise cloud risk metrics.

  • Secure multi-cloud architectures across AWS, Azure, GCP.

  • Ensure consistent controls across on-prem, private cloud, and SaaS ecosystems.

  • Support M&A integrations and divestitures with cloud security ass

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

AmerisourceBergen

View company profile →