Position Overview
We are seeking a proactive and skilled Cybersecurity Analyst with 3+ years of experience, with a strong focus on securing AWS environments, to join our team. In this role, you will be responsible for continuous monitoring, threat detection, and safeguarding our infrastructure, networks, and digital assets.
You will work closely with our DevOps and engineering teams to ensure our AWS workloads are secure, compliant, and resilient against emerging threats.
Key Responsibilities
- AWS Security Monitoring: Monitor security logs and alerts using AWS-native tools and SIEM systems to identify, investigate, and mitigate potential security incidents.
- Identity & Access Management (IAM): Manage and audit AWS IAM policies, roles, and user permissions, ensuring strict adherence to the principle of least privilege.
- Vulnerability & Threat Management: Conduct regular vulnerability assessments and coordinate with engineering teams to ensure timely patch management and remediation across EC2 instances, containers, and applications.
- Network & Infrastructure Security: Assist in configuring and maintaining secure network architectures, including VPCs, Security Groups, Network ACLs, and AWS WAF (Web Application Firewall).
- Incident Response: Serve as a key responder for security incidents, documenting findings, executing containment strategies, and conducting post-incident reviews.
- Compliance & Auditing: Assist in maintaining security compliance standards (e.g., ISO 27001, SOC 2, or CIS Benchmarks) using automated cloud compliance tools.
Required Skills & Qualifications
- Experience: 3+ years of dedicated experience in an information security role, with at least 1–2 years focused on securing AWS infrastructure.
- Core AWS Security Knowledge:
- Hands-on experience with core AWS security services such as IAM, AWS GuardDuty, AWS Security Hub, and CloudTrail.
- Solid understanding of AWS networking concepts: VPCs, Security Groups, and Route Tables.
- Technical Proficiencies:
- Familiarity with SIEM software (e.g., Splunk, Datadog, or cloud-native aggregators) for centralized log analysis.
- Strong understanding of operating system security (Linux and Windows Server environments).
- Analytical Skills: Strong problem-solving mindset with the ability to analyze complex traffic patterns, system logs, and threat indicators.
Preferred / Bonus Qualifications
- Certifications:
- AWS Certified Security – Specialty or AWS Certified SysOps Administrator.
- Industry standard security certs like CompTIA Security+, CySA+, or CEH.
- Infrastructure as Code (IaC): Basic understanding of securing Infrastructure as Code (e.g., reviewing Terraform or CloudFormation templates for security flaws).
- Automation: Basic scripting skills (Python or Bash) to automate incident response alerts or log parsing.