AI and Cloud Security Analyst
Location
Worldwide
Posted
8 days ago
Salary
0
Seniority
Mid Level
Job Description
AI and Cloud Security Analyst
TD SYNNEX
Role Description As our AI and Cloud Security Analyst, you provide day-to-day L2 coverage of the AI security detection fabric — triaging and supporting investigation of AI-specific detections from runtime defense, behavioral/intent monitoring, model-security, and adversarial-testing platforms. You turn that telemetry into insight through data analytics and produce the OCR (operational, compliance, and risk) reporting that gives leadership, control owners, and auditors a continuous picture of AI and cloud risk. You also help monitor the security posture of our Azure, AWS, and GCP environments. You escalate to a dedicated L3 engineer and work alongside two AI & Cloud Security Architects. Responsibilities - L2 coverage of the AI Security toolset - Monitor AI security detections across the detection fabric — runtime defense/AIDR events, intent and behavioral anomalies, model-level detections, and adversarial-testing signals. - Validate detections, classify severity and impact, propose and implement policy updates, and escalate complex cases to L3 with complete, reusable context. - Investigate AI-specific events across all five AI archetypes: - Embedded SaaS copilots - Low-code/no-code agents - Homegrown agentic pipelines - Device-based coding agents - Homegrown models - Support the AI asset-intelligence layer - Data analytics: Query and correlate AI and security telemetry (KQL), identify anomalies and attack patterns, and build/maintain dashboards tracking the program's key metrics. - OCR reporting (operational, compliance, and risk): Produce recurring dashboards and executive summaries communicating AI-security posture, KPIs, and trends to stakeholders and control owners. - Maintain rigorous case documentation and shift/handover notes. - Build working fluency in the OWASP Top 10 for LLM Applications 2025, the OWASP Top 10 for Agentic Applications, and MITRE ATLAS. - Monitor and triage cloud security alerts across Azure, AWS, and GCP from company CSPM platform. - Support cloud compliance monitoring and reporting against CIS Benchmarks and NIST 800-53 r5 / CSF 2.0 baselines. - Assist with cloud workload vulnerability triage (VMs, containers, images) and with Microsoft 365 / Google Workspace security-signal review. - Partner with the L3 engineer, SOC, cloud teams, and incident responders on investigations and enrichment spanning cloud, identity, endpoint, and AI telemetry. Qualifications - Solid security operations fundamentals: alert monitoring, triage, validation, incident classification, escalation, and case management against SLAs. - Strong data analytics and reporting: KQL (and/or SQL) for querying and correlation; dashboard and report development. - Foundational AI/GenAI security awareness: LLM risks, agentic AI and MCP concepts, AI guardrails, and familiarity with the OWASP LLM Top 10 and MITRE ATLAS. - Working knowledge of cloud security in at least one of Azure/AWS/GCP. - Scripting for automation and enrichment (PowerShell and/or Python). - Familiarity with CIS Benchmarks and NIST (800-53, CSF); awareness of NIST AI RMF and the EU AI Act is beneficial. - Analytical rigor, attention to detail, and clear English communication across a globally distributed team. Requirements - Experience in SOC, security operations, cloud security, or security-analyst role with hands-on monitoring, triage, and investigation experience. - Demonstrable experience producing analytics, dashboards, and reporting from security telemetry for technical and executive audiences. - Experience supporting compliance or audit evidence collection (NIST, CIS, ISO, or similar) is a plus. - Certifications are an advantage, not mandatory: CompTIA Security+, CySA+, SC-200, SC-900, AZ-500, AWS or GCP security/foundational credentials. - Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent practical experience. Working Conditions - Willing to work nonstandard business hours for projects, business impact issues, and incident response. - Some travel required. - Flexible remote work. Benefits - Elective Benefits: Tailored to your country to best accommodate your lifestyle. - Grow Your Career: Accelerate your path to success with formal programs on leadership and professional development. - Elevate Your Personal Well-Being: Boost your financial, physical, and mental well-being through seminars, events, and our global Life Empowerment Assistance Program. - Diversity, Equity & Inclusion: Valuing every voice is how we succeed. - Make the Most of our Global Organization: Network with other new co-workers within your first 30 days through our onboarding program. - Connect with Your Community: Participate in internal, peer-led inclusive communities and activities.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
IT Audit & Compliance Analyst – Federal Cybersecurity Frameworks
GuidehouseSolving big problems, building trust in society, and empowering our clients to shape the future.
• Guidehouse is seeking an IT Audit & Compliance professional to help our client at a large federal agency pursue and maintain compliance with federal cybersecurity frameworks. • Coordinate internal and external audit activities across federal information systems, ensuring teams, schedules, evidence, and documentation remain audit‑ready. • Prepare, maintain, and organize assessor‑ready artifacts including SSPs, control narratives, SOPs, POA&Ms, continuous monitoring reports, and structured evidence packages. • Interpret and apply requirements from federal cybersecurity and audit frameworks, including: NIST SP 800‑53 (security and privacy controls), NIST SP 800‑37 (RMF), NIST SP 800‑171 (CUI), FISMA, FISCAM, OMB Circular A‑123, FedRAMP, and adjacent frameworks such as SOC 1/2, HIPAA, the Privacy Act, and IRS Publication 1075. • Support audit readiness activities by coordinating evidence collection with engineering, ISSO/ISSM, infrastructure, cloud, and application teams. • Track audit findings, maintain POA&M items, and facilitate remediation progress across technical and business teams. • Translate technical implementations into clear, assessor‑ready documentation through strong technical writing and stakeholder coordination. • Draft and refine policies, procedures, and control narratives, and coordinate teams through internal audits, readiness assessments, and corrective action plans.
Senior Analyst, Workday Functional Security
SyscoConnecting the world to share food and care for one another
• Serve as the primary functional security advisor for Workday by providing consultative guidance on access requests, evaluating business requirements, and recommending security approaches aligned to established standards, risk considerations, and business objectives. • Design, maintain, and optimize Workday security roles, access models, and functional security frameworks to support a scalable global operating model. • Conduct access reviews, segregation of duties assessments, and compliance-related security activities to identify and mitigate risk. • Develop and maintain security documentation, standards, procedures, training materials, and knowledge resources. • Create and analyze security reporting, metrics, dashboards, and audit support documentation for leadership, compliance, and business stakeholders. • Support investigation and resolution of complex security-related issues, access concerns, and escalations. • Partner with technical security resources, Workday consultants, and external partners to support security enhancements and continuous improvement initiatives.
Cybersecurity Analyst
Alvaria IncParent of Alvaria CX and Aspect - best-of-breed outbound contact center and workforce engagement management solutions
• Serve as the primary internal point of contact and liaison for our 24/7 Managed Detection and Response (MDR) service provider. • Own the internal response and coordination workflow when our external security partner escalates a validated, high-severity threat. • Routinely review managed security portals, threat hunting reports, and endpoint/XDR coverage status across our remote workforce. • Manage the technical integration of security alerts into internal team communication channels and centralized IT ticketing platforms. • Perform daily triage and manual investigation of cloud productivity suite signals, access logs, and application-layer telemetry not fully covered by external tools. • Gather and package evidence logs from endpoint managers, identity providers, and ticketing systems to support our ongoing SOC 2 compliance frameworks and internal audits.
Analista de Segurança da Informação
Cresol CooperativaFornecendo soluções financeiras com excelência por meio do relacionamento.
• Liderar o ciclo de vida de nossos produtos e iniciativas de proteção digital. • Convertar requisitos complexos de segurança, riscos e conformidade em um backlog técnico e estratégico. • Priorizar a geração de valor e a proteção contínua dos ativos da organização. • Gestão Estratégica do Backlog: Liderar a construção, o refinamento e a priorização do backlog de segurança e da Central de Inteligência. • Cultura Security by Design: Assegurar a integração de requisitos de segurança desde a concepção até a entrega no ciclo de desenvolvimento. • Articulação Multidisciplinar: Facilitar a comunicação com os stakeholders de negócio. • Governança por Dados (KPIs): Definir e monitorar indicadores-chave de performance. • Evangelização de Segurança: Promover a cultura de Segurança da Informação e Privacidade de Dados.




