Senior Cyber Security Analyst
Wage
Check with the manager
No resume? Download our questionnaire!
Responsibilities:
- Analyze and continuously improve security controls across infrastructure and production services (identity, network, endpoints, secrets, hardening, vulnerability management).
- Secure CI/CD and the software delivery lifecycle by observing automated security testing and supply-chain controls (e.g., SAST/DAST/SCA, secrets scanning, container/IaC scanning, artifact integrity).
- Operate cloud and container security practices, including Kubernetes security baselines, workload protection, and policy-as-code.
- Own security visibility: Assist in tuning, and automation of detections, improve alert quality and reduce noise, enhance incident triage and investigation workflows.
- Operate and optimize security platforms and tooling (SIEM/SOAR, XDR, CNAPP/CSPM/CWPP) and drive measurable outcomes.
- Support technical incident response activities: detection, containment, eradication, recovery, root-cause analysis, and post-incident improvements.
- Create and maintain security analysis standards, runbooks, and documentation.
Requirements:
- Familiarity with standards and practices like CSA cloud controls matrix, CIS controls and benchmarks, NIST 800 Series, ISO27001 controls, PCI-DSS or similar
- 5+ years of hands-on experience in cybersecurity across at least two of the following domains:
- Infrastructure and cloud security.
- DevSecOps, Secure software development and CI/CD security.
- SecOps, security monitoring/analytics.
- Incident handling and response.
- Container and Kubernetes security.
- Treat & Vulnerability management and security analysis.
Respectively, at least two of the following:
- Strong understanding of securing CI/CD and Secure development practices.
- Solid understanding of Kubernetes and container security.
- Experience with cloud security concepts and services (preferable AWS).
- Hands-on experience with security monitoring and incident detection/response.
- Working knowledge or hands-on experience of security tooling and platforms such as SIEM, CNAPP, vulnerability management, and security automation.
- IaC security knowledge.
Nice to have:
- 10+ years overall experience in technology/engineering.
- Experience with CNAPP ecosystems (CSPM/CWPP/SSPM) and driving remediation at scale.
- Self-driven engineer with a proactive approach to identifying, owning, and solving security challenges.
- Certifications: Cloud security related engineering-level credentials, CCSP, K8s security certification, incident handling or secops credentials.
Contact: Nadezhda — @NadiaGP_HR
Wage
Check with the manager
No resume? Download our questionnaire!
To send a resume