About The Role
The Senior Security Analyst – Cloud Security will be responsible for securing and continuously improving PURE’s cloud environments, cloud-native security capabilities, and cloud security operations. This role will serve as a senior member of the Infrastructure Security team and the primary technical resource for AWS and Azure security, with responsibility for implementing, operating, and improving cloud security controls across the organization.
The ideal candidate will bring hands-on experience securing cloud platforms, implementing cloud security controls, investigating security events, and partnering with engineering and technology teams to reduce risk. This role will balance strategic cloud security initiatives with day-to-day operational responsibilities, including incident response, ticket and alert triage, and participation in the Infrastructure Security on-call rotation.
What You’ll Do
Cloud Security & Controls
- Own, operate, and maintain cloud security capabilities, controls, guardrails, and platform settings across AWS and Azure environments
- Monitor and improve Cloud Security Posture Management (CSPM) capabilities
- Develop and maintain cloud security standards, baselines, and secure configuration guidance
- Secure cloud identity and access, including privileged access, service accounts, roles, and secrets management
- Support the onboarding of cloud accounts, subscriptions, and workloads to ensure alignment with security requirements
- Evaluate cloud security technologies and support security tool integrations and optimization efforts
- Develop automation using APIs, scripting, and cloud-native tooling to improve control validation, reporting, and security operations
Monitoring & Incident Response
- Build and enhance cloud monitoring, alerting, and detection capabilities, including cloud telemetry within SIEM and security monitoring platforms
- Investigate cloud security alerts, suspicious activity, and potential threats
- Respond to cloud-related security incidents and support containment, remediation, and post-incident reviews
- Develop and maintain cloud-focused incident response procedures and playbooks
- Participate in daily security operations, including reviewing and resolving security-related tickets, alerts, requests, and escalations
- Participate in the Infrastructure Security on-call rotation, including occasional weekend and after-hours work as required
Partnership & Risk Management
- Participate in security architecture reviews and assess cloud designs for new technologies, services, and integrations
- Partner with Enterprise Architecture, Infrastructure Engineering, Platform Engineering, Application Development, and Technology Operations to embed secure-by-design practices
- Support audit, compliance, and regulatory activities by providing cloud control evidence and mapping controls to frameworks such as NIST CSF, SOC 2, and PCI DSS
- Partner with Vulnerability Management to support patching, configuration hardening, and remediation of cloud vulnerabilities and misconfigurations
- Collaborate with Infrastructure Security team members across Endpoint Security, Vulnerability Management, and AI Security
- Serve as a cloud security subject matter expert and help strengthen the broader team through mentoring, knowledge sharing, and documented standards
What You'll Need
- 5+ years of experience in cybersecurity, cloud security, systems engineering, or a related discipline
- Hands-on experience securing AWS environments
- Experience with Microsoft Azure security services and controls
- Strong understanding of cloud identity and access management principles
- Experience with CSPM, SIEM, EDR/XDR, or similar security technologies
- Experience investigating security events and supporting incident response
- Knowledge of cloud networking, logging, monitoring, encryption, and secrets management concepts
- Experience collaborating with infrastructure, architecture, platform, and application engineering teams
- Ability to translate cloud security risks into practical technical controls and remediation guidance
- Strong written and verbal communication skills
What Will Make You Stand Out
- AWS Certified Security – Specialty, Microsoft Certified: Azure Security Engineer Associate (AZ-500), CCSP, AWS Certified Solutions Architect, CISSP, or an equivalent certification
- Experience with CrowdStrike Falcon, Falcon Cloud Security, Microsoft Defender for Cloud, or similar platforms
- Experience with Infrastructure as Code technologies such as Terraform
- Experience securing containerized and serverless workloads, including Kubernetes (EKS/AKS), container image scanning, and runtime protection
- Experience with Python, PowerShell, APIs, or other security automation methods
- Experience developing cloud detections, security analytics, or monitoring use cases
- Financial services, insurance, or other regulated industry experience
The base salary for this role can range from $95,000 to $120,000 based on a full-time work schedule. An individual’s ultimate compensation will vary depending on job-related skills and experience, geographic location, alignment with market data, and equity among other team members with comparable experience.
To ensure a successful onboarding experience, all new hires must work onsite at one of our offices during their first week of employment. Candidates should apply only if they are able to meet this requirement.
Want to Learn More?
[Our Values]
[Our Benefits]
[Our Community Impact]
[Our Leadership]