Indev · 2 days ago
Senior Security Analyst
Maximize your interview chances
Insider Connection @Indev
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Engage with senior IT leadership and support the CISO by providing proven and effective cloud cybersecurity solutions.
Offer senior-level expertise by combining real-world experience with education-based best practices to provide strategic guidance and actionable solutions.
Collaborate closely with government leads, contractors, and team members to design, implement, and integrate cloud services, ensuring seamless delivery for agency users.
Design and execute a robust cloud security strategy that adheres to AWS best practices and aligns with FedRAMP standards for optimal protection and compliance.
Manage a secure AWS architecture to include VPCs, subnets, and security groups.
You and your team will configure and manage AWS Identity and Access Management (IAM) policies to control user and application access to AWS resources.
Support and advise system administrators regarding encryption for data at rest and data in transit using AWS services like KMS, SSL/TLS, and S3 bucket policies.
Implement continuous security monitoring, log analysis, and alerting using AWS CloudWatch, CloudTrail, and other advanced tools. Ensure AWS environments adhere to security standards such as CIS, NIST, FedRAMP, and GDPR through rigorous compliance checks and regular audits.
Review the annual security assessment package and SOC 2 report from the cloud service provider (CSP), delivering concise executive summaries for leadership.
Analyze the CSP's monthly vulnerability scans and open POA&Ms, delivering a summary of the system's current security posture and actionable insights.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Bachelor’s or Master’s degree in computer science, information technology, cybersecurity, or a related field
Minimum 5 years of experience in cloud security and AWS.
AWS Certified Security (other relevant AWS certifications, such as AWS Certified Solutions Architect or AWS Certified DevOps Engineer, are beneficial).
Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Cloud Security Professional (CCSP).
Deep understanding of AWS services and features related to security, including IAM, KMS, VPC, AWS WAF, AWS Firewall Manager, AWS Security Hub, and more.
Prior experience supporting the following AWS features: GuardDuty, Security Hub, CloudWatch, CloudTrail
Proficiency in scripting and automation using languages such as: Python, PowerShell, or AWS Lambda functions.
Excellent problem-solving skills, with the ability to analyze complex issues and provide effective solutions.
Exceptional communication skills to work seamlessly with technical and non-technical stakeholders.
Preferred
Federal experience, Department of Transportation (DOT) preferred.
An active Public Trust clearance.
Experience with Appian Cloud Service Provider
Benefits
Medical
Dental
Vision
401k with match
Flexible Spending Account
Paid Time Off (PTO)—including vacation and holiday pay