Cloud Security Analyst
New
FranceFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years
- Required Skills
- AWSKubernetesCI/CDCompliance
Requirements
- 5+ years of experience in cloud security, application security, cybersecurity, or a related field.
- Strong hands-on experience securing cloud-based applications and infrastructure throughout the software development lifecycle.
- Deep knowledge of AWS security services and cloud-native security architecture principles.
- Solid understanding of software development practices, secure coding concepts, and common application vulnerabilities such as the OWASP Top 10.
- Experience integrating security controls into DevOps and CI/CD workflows, including SAST, DAST, SCA, secrets scanning, and IaC security testing.
- Practical experience securing containerized environments and Kubernetes platforms.
- Strong knowledge of IAM concepts, access controls, and identity security best practices.
- Familiarity with compliance and regulatory frameworks such as PCI DSS, GDPR, SOC 2, or equivalent standards.
- Excellent communication, collaboration, and stakeholder management skills.
- Strong analytical thinking, risk assessment capabilities, and problem-solving skills.
- Bachelor's degree in Information Security, Computer Science, Information Technology, or a related discipline.
Responsibilities
- Design, implement, and maintain cloud security controls across infrastructure, applications, and development environments.
- Secure cloud-native application stacks throughout their lifecycle, from software development through deployment and operations.
- Integrate security practices into CI/CD pipelines, including static analysis, dynamic testing, dependency scanning, secrets management, and infrastructure-as-code security controls.
- Manage and enforce Identity and Access Management (IAM) policies using least-privilege principles across cloud environments.
- Implement and maintain container and Kubernetes security solutions, including image scanning, runtime protection, and policy enforcement.
- Monitor cloud environments for threats, vulnerabilities, and suspicious activity, investigating and responding to security alerts as needed.
- Conduct vulnerability assessments, penetration testing activities, and remediation initiatives in partnership with engineering teams.
- Support security incident response, forensic investigations, and continuous improvement of security runbooks and response procedures.
- Develop and maintain security documentation, standards, policies, and operational procedures.
- Collaborate with internal stakeholders to support compliance initiatives, security audits, customer security assessments, and risk management activities.
View Full Description & ApplyYou'll be redirected to the employer's site