Cloud Vulnerability Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

Applied Research Solutions · 1 day ago

Cloud Vulnerability Analyst

Applied Research Solutions (ARS) is seeking a skilled cloud vulnerability analyst to assist in the monitoring and security hardening of a DevSecOps cloud environment. The role involves identifying, validating, and mitigating vulnerabilities across Azure-based infrastructure while ensuring compliance with DoD security requirements.

Business DevelopmentBusiness Information SystemsSmall and Medium Businesses
check
Growth Opportunities
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Conduct recurring vulnerability scans using ACAS, Tenable Nessus, Microsoft Defender for Cloud, and other automated tools to identify security gaps across Azure cloud environments
Analyze and correlate alerts and logs within Microsoft Sentinel to detect threats, suspicious activity, and compliance deviations
Perform vulnerability triage, validation, and prioritization, ensuring remediation aligns with DoD RMF (NIST SP 800-53 r5) and CMMC 2.0 (NIST SP 800-171) requirements
Develop, maintain, and harden secure baseline configurations for Azure services, virtual machines, containers, and DevSecOps tooling
Implement and monitor CI/CD-integrated security controls to ensure early detection of misconfigurations and code-level vulnerabilities
Collaborate with cloud engineers, developers, and ISSO/ISSM personnel to recommend remediation actions and validate corrective measures
Prepare detailed vulnerability reports, dashboards, Plan of Action & Milestones (POA&M) updates, and compliance artifacts for audits and assessments
Support continuous monitoring strategies and security automation initiatives to enhance overall cloud security posture
Conduct threat hunting and security analysis using threat intelligence sources to identify emerging risks relevant to Azure cloud and DoD systems
Promote cybersecurity best practices by providing guidance, training, and technical recommendations to stakeholders across DevSecOps teams
Other duties as assigned

Qualification

Vulnerability scanning toolsMicrosoft AzureDoD RMF complianceSIEM platformsVulnerability managementCloud security best practicesDocumentation skillsCollaboration skills

Required

Must be a US citizen
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related technical field (or equivalent practical experience)
Hands-on experience with vulnerability scanning tools such as ACAS, Tenable Nessus, Microsoft Defender for Cloud, or similar enterprise solutions
Working knowledge of Microsoft Azure, including security architecture, identity management, and cloud configuration best practices
Familiarity with DoD RMF (NIST SP 800-53 r5) and CMMC 2.0 / NIST SP 800-171 security control requirements
Experience analyzing security events using SIEM platforms such as Microsoft Sentinel
Strong understanding of vulnerability management principles, secure configuration baselines, and cybersecurity best practices
Ability to create clear documentation, communicate findings, and collaborate effectively with DevSecOps, engineering, and compliance teams

Benefits

Industry competitive benefits package
Awards and recognition program
Personalized attention from ARS Senior Managers

Company

Applied Research Solutions

twittertwitter
company-logo
ARS is a growing small business company that serving the department of defense and intelligence community.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Gary Wittlinger
Executive Partner
linkedin
leader-logo
Jennifer Landis, MBA
Education and Training Program Manager - AF Cyber Resiliency Office for Weapon Systems (CROWS)
linkedin
Company data provided by crunchbase