Security Analyst
Overview
As a Security Analyst, you contribute to a growing Security & Compliance team by building security automations, establishing baselines for on-premises and cloud environments, and guiding vulnerability management. You collaborate across DevOps, engineering, and owners to remediate risks and support audits, while enhancing security monitoring and incident response. This role offers hands-on work in multi-cloud and on-premises contexts with a clear path toward broader ownership. You will help shape secure configurations, tooling integrations, and evidence for compliance programs.
Compensation / Benefitscompetitive compensation (175,000–200,000+ USD)equal opportunity employertravel up to 15% for team-building and planning exercises
ResponsibilitiesReview and triage vulnerability, penetration test, and configuration assessment findings to identify risksRemediate vulnerabilities across multi-cloud and on-prem assets with cross-functional teamsMaintain secure baselines for AWS, Azure, and Oracle Cloud resourcesMonitor cloud environments for misconfigurations and suspicious activityAssist IAM policy reviews and privilege auditsWrite scripts (Python, PowerShell, or Bash) to automate detection, reporting, or remediationIntegrate security data into dashboards and workflow systems (e.g., Jira, SIEM)Provide evidence and support for SOC 2, ISO 27001, or customer assessmentsPartner with compliance to map technical controls to framework requirementsAssist incident triage, response, and root cause analysisSupport endpoint protection, log monitoring, and threat intelligence initiatives
Key requirementsBachelor's degree in a related field or equivalent related experienceMinimum of two years in information security, systems administration, or DevOpsProficient in at least one scripting language (Python, PowerShell, or Bash)Strong understanding of OS, networking, and cloud fundamentalsKnowledge of security frameworks such as NISTFamiliarity with vulnerability management tools (Tenable, Qualys, Rapid7, AWS Inspector, or Microsoft Defender)Working knowledge of AWS, Azure, and/or Oracle Cloud security controls and servicesComfortable working cross-functionally with engineering, IT, and other teams as neededStrong communication skills, both verbal and writtenAbility to translate technical concepts for non-technical stakeholdersProblem-solving and contingency planningScripting (Python, PowerShell, Bash)Vulnerability management tools (Tenable, Qualys, Rapid7, AWS Inspector, Microsoft Defender)Cloud security in AWS, Azure, Oracle Cloud