> Markdown version of [/jobs/ext/1353164-senior-cyber-security-analyst-cloud-devsecops-ai-security](https://www.wearedevelopers.com/jobs/ext/1353164-senior-cyber-security-analyst-cloud-devsecops-ai-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cyber Security Analyst - Cloud, DevSecOps & AI Security - **Company:** ISO New England - **Location:** Springfield, MA, United States - **Experience:** Expert - **Salary:** $127,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Training Data, Kubernetes Security, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Configuration Management, Cyber Security, Continuous Integration, Data Governance, Information Leak Prevention, Monitoring of Systems, Network Topologies, Identity and Access Management, Phishing, Security Information and Event Management, Software Engineering, Software Vulnerability Management, Data Logging, Enterprise Software Applications, Cloud Platform System, Data Classification, Large Language Models, Generative AI, HybridCloud, AI Platforms, Kubernetes, Information Technology, Machine Learning Operations, Terraform, Devsecops, Vulnerability Analysis - **Published:** July 20, 2026 - **Apply:** https://www.careerjet.com/job/us6598f41ff1148ca332bf706c43ad4e1c/eaa ## About the Role * Experience in cybersecurity, cloud security, security engineering, or AI security roles. * Experience with AWS and/or Azure cloud platforms. * Experience with container orchestration technologies including Amazon ECS and Amazon EKS. * Experience implementing security controls within CI/CD and DevSecOps environments. * Knowledge of AI security concepts, including securing generative AI applications, LLMs, AI governance, and AI risk management. * Familiarity with AI threats such as prompt injection, data leakage, model poisoning, model theft, and insecure AI APIs. * Knowledge of vulnerability management, cloud security, IAM, CSPM, and configuration management practices. * Experience with security monitoring and logging platforms. * Familiarity with Terraform, infrastructure-as-code, and policy governance frameworks such as OPA. * Understanding of data governance, data protection, and responsible AI principles. * Strong analytical, troubleshooting, communication, and collaboration skills. * Self-starter with the ability to work independently in a fast-paced environment. Desired not required * Bachelor's degree in information technology, Cybersecurity, Computer Science, or related field. * Advanced degree such as a Master's in Cybersecurity Management, Information Assurance, Artificial Intelligence, or related fields. * Industry cybersecurity, cloud security, and AI security certifications preferred, including ## Description ISO New England is seeking an experienced Cyber Security Analyst to support and enhance enterprise cloud, infrastructure, AI, and DevSecOps security initiatives. This role is responsible for proactively identifying vulnerabilities, compliance gaps, misconfigurations, and security risks across enterprise systems, cloud platforms, AI/ML environments, CI/CD pipelines, and regulated CIP environments. The ideal candidate will have strong experience in cloud security, vulnerability management, DevSecOps, AI security, and security compliance, with the ability to collaborate across technical teams to implement and maintain enterprise security standards. What we offer you: * A stable, mission-driven workplace where your impact truly matters * A highly engaged work environment that values inclusion, collaboration, and employee safety and wellbeing, * Conduct cloud security assessments across AWS and Azure environments, including CSPM, CIEM, IAM, and container security reviews. * Integrate and support security controls within CI/CD pipelines and DevSecOps environments. * Assess and secure AI/ML systems, generative AI applications, and AI-enabled business solutions throughout their lifecycle. * Evaluate risks associated with AI model usage, training data, third-party AI services, and Large Language Model (LLM) integrations. * Implement AI governance controls to protect sensitive data and prevent unauthorized disclosure through AI platforms. * Develop security guardrails for AI adoption, including data classification, access controls, prompt security, and responsible AI usage. * Perform AI threat modeling to identify risks such as prompt injection, data poisoning, model manipulation, model theft, and insecure AI integrations. * Perform vulnerability assessments, configuration reviews, and remediation tracking across enterprise and CIP systems. * Review and validate baseline configurations, logging requirements, and compliance controls. * Evaluate network topology and infrastructure changes to determine CIP impact and SOC visibility requirements. * Partner with application development, cloud platform engineering, infrastructure, enterprise architecture, IAM, network, SOC, and business teams to integrate security into system design, projects, and operational processes. * Support phishing simulations, security awareness initiatives, AI security awareness training, and audit evidence collection. * Provide security recommendations and risk mitigation strategies for cloud, AI, and enterprise environments. * Support and maintain enterprise security platforms including CNAPP, EDR, vulnerability management, SIEM, DSPM, and cloud security monitoring tools. * Monitor evolving AI security risks, industry standards, and regulatory requirements. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [The New AI Security Stack: Observe, Detect, Protect](https://www.wearedevelopers.com/videos/100302-the-new-ai-security-stack-observe-detect-protect) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Dev Digest 162: AI careers, MCP, AWS best practices & floppy sweaters](https://www.wearedevelopers.com/magazine/571-dev-digest-162-ai-careers-mcp-aws-best-practices-floppy-sweaters)