Descrição
Role: Cloud Security Analyst
Type: Hybrid (Both Perm and Contract possible)
Visa Type: Stamp 1Gs also accepted
Responsibilities**:
Conducting Vulnerability Assessment and Penetration Testing (VAPT) across cloud environments, including SAAS and IAAS platforms, to identify security weaknesses and potential threats.
Performing forensic analysis on laptops, servers, and cloud/service provider environments to investigate security incidents and breaches, and providing detailed reports on findings.
Collaborating with the global security team to manage security incidents and coordinate response efforts, including containment, eradication, and recovery procedures.
Monitoring and ensuring compliance with IT security policies, industry regulations, and best practices related to cloud security, data confidentiality, and privacy (e.g., ISO 27001/27002, GDPR).
Administering and maintaining security-dedicated systems such as software, firewalls, Endpoint Detection and Response (EDR), Network Detection and Response (NDR), log collection, and reporting/analytics tools.
Engaging in security research to stay updated on the latest threats and vulnerabilities affecting cloud-enabled enterprises, and recommending proactive measures to mitigate risks.
Collaborating with cross-functional teams to manage security vulnerabilities, conduct risk assessments, and implement security controls across multiple locations.
Providing technical support and assistance to PC and Mac users experiencing security-related issues, and ensuring timely resolution of incidents.
Qualifications:
Bachelor's or Master's degree in Computer Science, Management Information Systems, Information Security, or related field.
Five or more years of progressive experience in computing and information security, with a focus on cloud security and forensics.
Expertise in networking technologies, protocols, and cloud computing platforms (e.g., AWS, Azure, GCP).
Strong knowledge of laptop operating systems (MacOS, Windows, Linux) and experience with DLP (Data Loss Prevention) solutions.
Relevant certifications such as CISSP, GIAC, or other security certifications are desired.
Ability to work flexible hours, including weekends and evenings, and availability during off-hours for participation in scheduled and unscheduled activities.