Infrastructure Engineer - Security & Compliance

Bloomberg

Bloomberg

Other Engineering, Compliance / Regulatory

New York, NY, USA

Posted on May 20, 2026
About the Team
The Global Corporate Technology Group is responsible for designing, deploying, and supporting Bloomberg’s enterprise IT systems. This includes our global corporate network plus all hardware, software and enterprise applications used by nearly 27,000 employees in 170 state-of-the-art offices worldwide. We focus on enterprise solutions, productivity tools, and IT systems integration which help move all of Bloomberg's businesses forward.
The Corporate Technology – Finance (BLPF) team designs, implements, and operates security, data protection, and compliance controls that protect sensitive financial and employee data within highly regulated enterprise environment, The BLPF team acts as the engineering owner of the finance secure environment. Our mission is to ensure these systems operate with security and compliance framework while meeting strict regulatory and audit obligations such as SOX and PII. We design and run data protection, access control, monitoring, and audit controls that allow Finance, Accounting, Payroll and Tax teams to function at scale while maintaining the highest standards of confidentiality, integrity, and availability.
The Role:
This is not a traditional security advisory or policy team, BLPF is an engineering driven control function that designs, builds, operates and protects Bloomberg’s core financial operations.
The scope includes: · Automate security application/system platform lifecycle-including provisioning, configuration, observability, testing, troubleshooting, and capacity planning
· Write software utilizing orchestration systems to automate tasks and interact with other systems.
· You will be responsible for implementing innovative technologies, automating workflows, and crafting CI/CD automation pipelines supporting
  • Designing and operating system integrity and configuration and operational controls via Identify and Access management & Network Segmentation
  • Monitoring user data access and user behavior to detect and report misuse or risk
  • Supporting secure file transfer collaboration solution with Digital Rights Management,
  • Manage Data Loss Prevention integration with Proxy, Email gateway and endpoints.
You’ll Need to Have
  • 4+ years of experience supporting enterprise security, compliance, or data protection platforms
  • Degree in Computer Science, Engineering, Mathematics, or a similar field of study, or equivalent work experience.
  • Experience operating controls in regulated compliance or audit driven environments
  • Working knowledge of Github, Powershell or Python automation administration and security
  • Working knowledge with monitoring and logging tools e.g., Grafana, Humio and Sumo Logic · Experience working with EntraID, MFA, SSO, SAML, and PING Federation
  • Experience working with Windows, Linux administration operation
  • Understanding security fundamentals standard control frameworks – NIST CSF, ISO/IEC 27001, SOC 2 and/or CIS controls
  • Clear communication and ownership mindset
We'd love to see
  • Familiarity with security applications e.g., Forcepoint, Varonis, and Tripwire
  • Familiarity with messaging and file sharing applications/systems e.g., Proofpoint, Blackberry Workspaces, MDM Boxer, and Globalscape
  • Experience implementing network protocols, network administration and network security
  • Familiarity with Infrastructure as Code ( IaC) e.g., Ansible, Chef, or Salt,
  • Familiarity with Zero Trust architecture and conditional access models.
  • Excellent written and verbal communication skills and the ability to work independently