[Remote] Senior Cloud Security Analyst/Engineer
Note: The job is a remote job and is open to candidates in USA. CMA is a company focused on cloud security solutions, and they are seeking a Senior Cloud Security Analyst/Engineer to maintain and monitor security systems and respond to incidents. The role involves managing cloud security tools, analyzing security events, and providing recommendations to enhance security measures.ResponsibilitiesMaintain and monitor Network Intrusion Detection/Protection (IDS/IPS) rulesPerform cloud security administration for Firewalls, Endpoint Protection tools, Windows & *nix patching toolsSIEM: ability to create and manage cloud alerting eventsExperience with AI-enabled enterprise products such as Splunk or LogRhythm desiredConfigure or perform security event scanning, detection, and analysis using available tools and platformsReview, collect, analyze, and correlate malware and security events from network security tools and provide results and recommendations to managementCorrelate SIEM events for early warning, alerting, trends and preventionAnalyze event data received to eliminate false positives and identify security eventsConduct trend analysis of security events to identify anomalous malicious activity and related eventsMonitor and review cloud-based LDAP/Active Directory accountsMaintain and update security incident tickets within corporate ITSMReview and update assigned ITSM security tasksOpen tickets for identified security events and incidentsManage assigned tickets by working with appropriate staffAssist with investigations into cloud security intrusions, events, incidents, or suspicious activitiesMonitor the cloud network and supporting systems to detect security compromise eventsProvide reports and updates to management as neededIncorporate input from N/SOC staff and external vendor personnel to validate potential cloud events and incidentsMonitor various cyber security threat portals and other credible sources for cyber threat informationMonitor security group mailbox for email alerts and user requestsProvide reports and attend scheduled and ad-hoc meetings as necessaryProvide network and security operations technical analysis, assessment, and recommendations to CMA staff and management as neededProvide cloud security threat prevention recommendationsProvide enterprise-wide network systems and applications systems security log auditing or audit artifacts as neededAdditional job duties as requiredSkillsCloud SIEM familiarity (GCP SCC, Splunk)BCP/IREndpoint detection & response (EDR) tools (Falcon, Symantec)Cloud Infrastructure security tools (GCP SCC, GCP Cloud Armor, AWS tools, IDS/IPS, FW, DNS)M365 familiarity (Entra, Azure, Email)Security control frameworks (NIST, CIS, OWASP, AI RMF)CISSP or similarApplicable cloud vendor certificationsCompany OverviewAt CMA, we believe in building something bigger than ourselves, every day. It was founded in 1984, and is headquartered in Latham, New York, USA, with a workforce of 201-500 employees. Its website is http://cma.com/.Company H1B SponsorshipCMA has a track record of offering H1B sponsorships, with 4 in 2025, 3 in 2024, 3 in 2023, 2 in 2022, 7 in 2021, 5 in 2020. Please note that this does not guarantee sponsorship for this specific role.