We are seeking a Cloud Security Analyst with 2โ3 years of hands-on AWS Cloud Engineer or Cloud Operations experience who has moved into (or is moving into) cloud security. This role requires someone who has worked directly in AWS production environments and can apply that operational knowledge to identify, analyze, and remediate security risks using modern cloud security tools.
This is not an entry-level security role and not a penetration testing position. The role is focused on cloud security operations (SOC-style), ownership of findings, and driving remediation.
Key Responsibilities
- Monitor and analyze cloud security posture across AWS environments using:
- Upwind (CSPM)
- AWS Security Hub
- AWS GuardDuty
- AWS Inspector
- Monitor and respond to endpoint and workload security alerts using SentinelOne
- Identify, assess, and track:
- CVEs
- IAM misconfigurations
- Cloud infrastructure security risks
- Logically analyze and triage security alerts/events and determine appropriate response and escalation
- Drive remediation of security findings by working directly with Cloud Engineering, DevOps, and Operations teams
- Apply hands-on AWS operational knowledge to recommend practical, implementable security fixes
- Maintain clear documentation of:
- Security findings
- Risk assessments
- Remediation actions and outcomes
- Communicate security risks, priorities, and remediation status clearly to technical teams and leadership
- Support internal security standards, compliance requirements, and best practices
- Continuously improve cloud security workflows, alerting, and operational processes