Senior Cyber Security Analyst

Full time
01.04.2026
Wage
Check with the manager


No resume? Download our questionnaire!

Responsibilities:

  • Analyze and continuously improve security controls across infrastructure and production services (identity, network, endpoints, secrets, hardening, vulnerability management).
  • Secure CI/CD and the software delivery lifecycle by observing automated security testing and supply-chain controls (e.g., SAST/DAST/SCA, secrets scanning, container/IaC scanning, artifact integrity).
  • Operate cloud and container security practices, including Kubernetes security baselines, workload protection, and policy-as-code.
  • Own security visibility: Assist in tuning, and automation of detections, improve alert quality and reduce noise, enhance incident triage and investigation workflows.
  • Operate and optimize security platforms and tooling (SIEM/SOAR, XDR, CNAPP/CSPM/CWPP) and drive measurable outcomes.
  • Support technical incident response activities: detection, containment, eradication, recovery, root-cause analysis, and post-incident improvements.
  • Create and maintain security analysis standards, runbooks, and documentation.

Requirements:

  • Familiarity with standards and practices like CSA cloud controls matrix, CIS controls and benchmarks, NIST 800 Series, ISO27001 controls, PCI-DSS or similar
  • 5+ years of hands-on experience in cybersecurity across at least two of the following domains:
  • Infrastructure and cloud security.
  • DevSecOps, Secure software development and CI/CD security.
  • SecOps, security monitoring/analytics.
  • Incident handling and response.
  • Container and Kubernetes security.
  • Treat & Vulnerability management and security analysis.

Respectively, at least two of the following:

  • Strong understanding of securing CI/CD and Secure development practices.
  • Solid understanding of Kubernetes and container security.
  • Experience with cloud security concepts and services (preferable AWS).
  • Hands-on experience with security monitoring and incident detection/response.
  • Working knowledge or hands-on experience of security tooling and platforms such as SIEM, CNAPP, vulnerability management, and security automation.
  • IaC security knowledge.

Nice to have:

  • 10+ years overall experience in technology/engineering.
  • Experience with CNAPP ecosystems (CSPM/CWPP/SSPM) and driving remediation at scale.
  • Self-driven engineer with a proactive approach to identifying, owning, and solving security challenges.
  • Certifications: Cloud security related engineering-level credentials, CCSP, K8s security certification, incident handling or secops credentials.

Contact: Nadezhda — @NadiaGP_HR

Wage
Check with the manager


No resume? Download our questionnaire!