- Company Name
- hackajob
- Job Title
- Cloud Security Analyst
- Job Description
-
Job title: Cloud Security Analyst
Role Summary:
Secure and protect cloud infrastructure, applications and services by integrating security into design, deployment, and operation. Lead risk assessment, compliance, incident response and automation initiatives, collaborating with DevOps and development teams to embed robust security controls across Azure, Google Cloud, and Salesforce environments.
Expectations:
- Demonstrate hands‑on expertise securing cloud environments.
- Apply industry standards (NIST, ISO 27001, PCI‑DSS, GDPR) and best practices.
- Deliver timely assessments, incident handling, automation, and continuous improvement.
Key Responsibilities:
- Design and implement cloud security frameworks and best‑practice controls.
- Conduct risk assessments, security audits, and continuous monitoring.
- Support cloud incident response, forensic analysis, root‑cause investigation, and corrective actions.
- Automate security controls and response processes using Terraform, Ansible, CloudFormation, and automation tools.
- Collaborate with development, DevOps, and security teams to integrate security into CI/CD pipelines.
- Communicate security risks, incidents, and resolutions to technical and non‑technical stakeholders.
- Ensure compliance with regulatory and industry standards, aid in audit preparation.
- Stay current on emerging cloud security threats, technologies, and trends, and refine security practices accordingly.
Required Skills:
- Proficient in securing Azure, Google Cloud, and Salesforce environments.
- Deep knowledge of cloud security tools (Shield, Azure Security, SCCP, Wiz, Guard).
- Experience with web application firewalls, encryption, identity & API security.
- Solid automation experience with Terraform, Ansible, CloudFormation.
- Understanding of network security in cloud and hybrid environments.
- Familiarity with DevSecOps, secure coding, and cloud‑native application security.
- Experience with containerization technologies (Docker, Kubernetes) and their security.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Relevant certifications such as Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), or equivalent.