> Markdown version of [/jobs/ext/2421538-senior-cyber-security-analyst](https://www.wearedevelopers.com/jobs/ext/2421538-senior-cyber-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cyber Security Analyst - **Company:** Trinnex Inc. - **Location:** Vancouver, WA, United States - **Experience:** Expert - **Salary:** $102,170.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cloud Computing, Cloud Computing Security, Configuration Management, Cyber Security, Continuous Integration, Intrusion Detection and Prevention, Open Source Technology, Systems Development Life Cycle, Secure Coding, Software Engineering, Software Systems, Software Vulnerability Management, Google Cloud, Spring Cloud, Delivery Pipeline, Infrastructure as Code (IaC), Kubernetes, Terraform, Devsecops, Vulnerability Analysis - **Published:** August 19, 2026 - **Apply:** https://dejobs.org/x/x/E9F54A4FE3CF40B4BCCCEE1FFB554068/job/ ## About the Role * Strong analytical, problem-solving, and critical-thinking skills. * Proven ability to communicate complex technical concepts to non-technical stakeholders. * Deep understanding of security frameworks, incident response processes, and regulatory environments. * Demonstrated ability to work independently and cross-functionally in a dynamic environment. * Strong collaboration skills with both infrastructure and software engineering teams. * Passion for innovation and continuous improvement in cybersecurity practices. * Strong skills with Infrastructure as Code (IaC) as it relates to securing the software development life cycle. * Demonstrated ability to secure cloud-native workflows. Qualifications * Bachelor's Degree * 6 years of relevant cybersecurity experience Equivalent additional directly related experience will be considered in lieu of a college degree. Domestic and/or international travel may be required. The frequency of travel is contingent on specific duties, responsibilities, and the essential functions of the position, which may vary depending on workload and project demands., * Hands-on experience with Mend for software composition analysis (SCA), open-source risk management, and vulnerability remediation * Experience working within Google Cloud Platform (GCP) and Kubernetes including securing cloud-native applications, infrastructure, and CI/CD pipelines * Experience with Terraform and other IaC, including automated provisioning, configuration management, and security of cloud infrastructure and deployment pipelines. ## Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity and DevSecOps to protect critical software systems that support water utilities and infrastructure. In this role, you'll focus on securing the software development lifecycle-embedding security controls, identifying vulnerabilities, and ensuring that applications deployed in water environments are resilient against evolving threats. You will work closely with engineering and development teams to safeguard systems that communities depend on, applying advanced threat detection, vulnerability management, and secure development practices. This position offers the opportunity to directly impact the reliability and security of essential services while driving modern DevSecOps practices and strengthening the organization's overall security posture. * Conduct advanced security monitoring, analyzing complex alerts and traffic anomalies; develop custom monitoring rules to detect emerging threats. * Lead response efforts for complex incidents (e.g., APTs, data breaches), including forensic analysis and root cause determination. * Design and execute vulnerability assessments, penetration tests, and simulated attack scenarios across infrastructure and applications. * Partner with IT and software development teams to remediate vulnerabilities and strengthen secure coding practices within the SDLC. * Perform detailed reviews of security controls and compliance with regulatory and security frameworks; lead remediation efforts. * Research advanced threat actors and develop forward-looking threat intelligence and defense strategies. * Mentor junior analysts and contribute to team capability development. * Support development and execution of enterprise security strategies aligned with business objectives., CDM Smith Inc. and its divisions and subsidiaries (hereafter collectively referred to as "CDM Smith") reserves the right to require background checks including criminal, employment, education, licensure, etc. as well as credit and motor vehicle when applicable for certain positions. In addition, CDM Smith may conduct drug testing for designated positions. Background checks are conducted after an offer of employment has been made in the United States. The timing of when background checks will be conducted on candidates for positions outside the United States will vary based on country statutory law but in no case, will the background check precede an interview. CDM Smith will conduct interviews of qualified individuals prior to requesting a criminal background check, and no job application submitted prior to such interview shall inquire into an applicant's criminal history. If this position is subject to a background check for any convictions related to its responsibilities and requirements, employment will be contingent upon successful completion of a background investigation including criminal history. Criminal history will not automatically disqualify a candidate. In addition, during employment individuals may be required by CDM Smith or a CDM Smith client to successfully complete additional background checks, including motor vehicle record as well as drug testing., CDM Smith is committed to fair and equitable compensation practices. This pay range is a good faith estimate representative of all experience levels for the geographic location assigned to the position. In addition to geographic location, a candidate's salary is determined by several other factors including, but not limited to, the role, function and associated responsibilities, relevant work experience, skills, required certifications, and education/training. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)