> Markdown version of [/jobs/ext/2705728-it-security-analyst](https://www.wearedevelopers.com/jobs/ext/2705728-it-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Analyst - **Company:** Epicor Incorporated - **Location:** Minneapolis, MN, United States - **Experience:** Experienced - **Salary:** $94,000.0 - $151,000.0 - **Contract:** Permanent contract - **Skills:** Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Cloud Services - **Published:** September 4, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88231550/1 ## About the Role * 3-5 years of experience in cybersecurity, information security, technology risk, cloud security, security compliance, or a related discipline. * Practical understanding of cloud technologies and security concepts. * Experience identifying security gaps or risks and working with stakeholders to address them. * Familiarity with common security frameworks, standards, and controls. * Experience in a SaaS, software, cloud, or enterprise technology environment preferred. * Relevant security or cloud certifications are beneficial but not required. ## Description The Security Analyst will work across Security, Engineering, Product, Cloud Operations, IT, Compliance, and other business teams to assess systems, processes, applications, and cloud environments against security requirements, standards, and best practices. The role will perform gap and risk assessments, analyze security findings and data, document security requirements, and translate identified risks into clear remediation actions. The Security Analyst will work with stakeholders to prioritize and track remediation, validate supporting evidence, and escalate material risks or blockers where appropriate. The Security Analyst will also support security reporting, documentation, standards, and continuous improvement activities, while providing practical, risk-based guidance to both technical and non-technical stakeholders. What You Will Be Doing: * Works effectively across Security and cross-functional teams. * Produces accurate, high-quality security analysis with minimal supervision. * Identifies security gaps and recommends practical, risk-based solutions. * Communicates security risks and requirements clearly. * Builds strong relationships with technical and business stakeholders. * Manages competing priorities and drives identified actions through completion. * Continuously develops technical and security knowledge. What You Will Likely Bring: * Performs security gap assessments and risk analysis across applications, cloud services, infrastructure, and processes. * Analyzes security data, findings, and evidence to identify risks and control weaknesses. * Documents security requirements, findings, remediation actions, priorities, and acceptance criteria. * Translates security requirements into clear, actionable tasks for technical teams. * Tracks remediation activities and validates completion evidence. * Supports security metrics, reporting, standards, procedures, and documentation. * Collaborates with Engineering, Product, IT, Cloud Operations, Compliance, and Security teams. * Communicates effectively with both technical and non-technical audiences. ## Related Videos - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cloud-nativeApplications- What’s the buzz about](https://www.wearedevelopers.com/videos/55-cloud-nativeapplications-what-s-the-buzz-about) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)