Remote job
Senior Security Analyst – Cloud Security
Job details
About this role
Role overview A senior-level security analyst position dedicated to safeguarding multi-cloud environments built on AWS and Azure. The role blends hands-on operational security work—monitoring, triage, and incident response—with strategic responsibilities such as designing controls, shaping standards, and mentoring other engineers. It functions as the primary technical authority on cloud security within the broader infrastructure security organization.
Responsibilities - Own and continuously improve cloud security controls, guardrails, platform settings, and posture management (CSPM) capabilities across AWS and Azure. - Secure cloud identity and access, including privileged accounts, service identities, roles, and secrets, while onboarding new accounts, subscriptions, and workloads safely. - Build and refine cloud monitoring, alerting, and detection telemetry within the SIEM, investigate alerts, lead cloud-related incident response, and maintain playbooks. - Support vulnerability remediation, configuration hardening, and patching efforts in partnership with the vulnerability management function. - Contribute to security architecture reviews for new cloud services and integrations, and embed secure-by-design practices with architecture, platform, infrastructure, and application engineering teams. - Map cloud controls to frameworks such as NIST CSF, SOC 2, and PCI DSS, and provide evidence for audits and regulatory activities.
Requirements - At least five years of experience in cybersecurity, cloud security, systems engineering, or a closely related field. - Hands-on experience securing AWS environments, paired with working knowledge of Microsoft Azure security services and controls. - Strong grasp of cloud identity and access management, networking, logging, encryption, secrets management, and related security fundamentals. - Familiarity with CSPM, SIEM, and EDR/XDR platforms, plus demonstrated experience investigating security events and supporting incident response. - Ability to translate cloud security risks into practical technical controls and remediation guidance, with clear written and verbal communication.
Nice to have - Industry-recognized credentials such as AWS Certified Security – Specialty, Microsoft Certified Azure Security Engineer Associate (AZ-500), CCSP, AWS Certified Solutions Architect, or CISSP. - Experience evaluating or integrating cloud security tools, scripting for automation, and prior insurance or financial services industry exposure.
Benefits and work setup - Base salary range of $95,000 to $120,000, with final compensation based on skills, experience, and geographic market alignment. - Opportunities for professional development and on-the-job learning, supported by a culture that emphasizes mentorship, transparency, and constructive collaboration. - New hires are expected to be onsite at the office during their first week of onboarding; occasional participation in an infrastructure security on-call rotation, including weekends and after-hours, is required.