Analyst, Cloud Security Operations

Responsible for monitoring, managing, and enhancing the security of cloud-based systems and services. Identification of security risks, implementing security controls, and responding to security incidents to ensure the confidentiality, integrity, and availability of cloud resources. Ensures that any initiatives developed or acquired meet stringent standards while enabling rapid innovation to meet customers ever-changing needs. Collects, analyse and implement business rules based on recommendations for optimization in line with trending information and cyber threats. Ensures that all incidents are responded to, actioned, and resolved within the required MTIR. Also ensure that calls are escalated and communicated to the required support area and user.

  • Implement and manage encryption, identity and access management (IAM), and other security controls in cloud platforms (e.g., AWS, Azure, GCP).
  • Manage security tools and technologies such as firewalls, intrusion detection/prevention systems (IDS/IPS), and endpoint protection solutions within cloud environments.
  • Monitor cloud environments for security events and incidents using security information and event management (SIEM) tools.
  • Respond to security incidents, conduct investigations, and implement remediation actions to address threats.
  • Ensure compliance with relevant security standards, regulations, and frameworks (e.g., ISO 27001, NIST, GDPR, HIPAA).
  • Work closely with other stakeholders, DevOps, and other teams to integrate security best practices into the cloud development lifecycle.
  • BSc in computer science, Information Technology, Cybersecurity, or a related field.
  • Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), Azure / AWS Certified Security – Specialty, or equivalent can be an added advantage.

Experience

  • 2-4years hands-on experience with cloud platforms such as AWS, Azure, or Google Cloud Platform (GCP).
  • Extensive knowledge of Security Operation, Endpoint management, Network Security and Vulnerability management. Extensive knowledge of TCP/IP protocol stacks, firewalls (Checkpoint and ASA), switches and routers. Extensive knowledge of Windows and Linux Operating Systems and cloud computing / cloud security

Behavioural Competencies:

  • Adopting Practical Approaches
  • Challenging Ideas
  • Developing Expertise
  • Embracing Change
  • Empowering Individuals
  • Examining Information
  • Exploring Possibilities

Technical Competencies:

  • Application Knowledge for Support
  • Incident and Problem Management
  • Infrastructure and Platforms Support
  • IT Applications
  • IT Programme Management
  • Root Cause Analysis
  • Service Management Processes