> Markdown version of [/jobs/ext/1183608-senior-security-analyst](https://www.wearedevelopers.com/jobs/ext/1183608-senior-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Analyst - **Company:** Maintainx Inc. - **Location:** Raleigh, NC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** .NET Framework, Amazon Web Services, Software System Penetration Testing, JIRA, Cloud Computing Security, Cyber Security, Computer Programming, DevOps, Log Analysis, Security Information and Event Management, TypeScript, Software Vulnerability Management, Datadog, Scripting, Information Technology, Hardware Infrastructure, Devsecops, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** July 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=1502d1a216d82671 ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience). * 2-4 years of experience in information security, security operations, or related roles. * Hands-on experience with cloud security (mainly AWS) and cloud-native security tools. * Familiarity with security frameworks such as NIST 800-53, SOC 2, ISO 27001, or FedRAMP. * Experience with vulnerability management tools and processes. * Understanding of security monitoring, log analysis, and incident response. * Strong analytical and problem-solving skills with attention to detail. * Excellent written and verbal communication skills. * Ability to work independently and collaboratively in a fast-paced environment. Bonus if you have: * Experience with security tools such as Wiz, Datadog, Jira, vulnerability scanners, password managers, EDRs and SIEM platforms. * Previous experience supporting compliance programs (FedRAMP, SOC 2, ISO 27001, etc.). * Security certifications such as Security+, GSEC, OSCP, CISSP, or equivalent. * Experience with penetration testing methodologies and tools. * Knowledge of DevSecOps practices and security automation. * Scripting or programming experience (typescript, dot net) for security automation. ## Description We're looking for a Senior Security Analyst to support our security program across both regulated (FedRAMP) and non-regulated environments. This role focuses on security operations, vulnerability management, and compliance support. You will work with tools like Datadog, Wiz, and AWS to protect our infrastructure and data across multiple environments., * Monitor and triage security alerts using tools like Datadog, SIEM platforms, and other security monitoring solutions. * Manage vulnerability assessment programs, tracking remediation efforts across cloud and on-premise infrastructure. * Conduct security control assessments and prepare technical documentation and evidence for audits. * Support penetration testing initiatives and security assessments on internal products and infrastructure. * Investigate security incidents, document findings, and support incident response activities. * Collaborate with DevOps, IT, Product, and other teams to implement and verify security controls. * Develop tooling for the security team * Participate in internal and external audits across multiple compliance frameworks (FedRAMP, SOC 2, ISO 27001, etc.). * Contribute to security policy development, documentation, and awareness training initiatives. * Stay current with emerging threats, security best practices, and compliance requirements. ## Related Videos - [Debugging in the Dark](https://www.wearedevelopers.com/videos/1658-debugging-in-the-dark) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Software Engineering Social Connection: Yubo’s lean approach to scaling an 80M-user infrastructure](https://www.wearedevelopers.com/videos/1583-software-engineering-social-connection-yubo-s-lean-approach-to-scaling-an-80m-user-infrastructure) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)