> Markdown version of [/jobs/ext/2989796-cyber-security-operations-specialist](https://www.wearedevelopers.com/jobs/ext/2989796-cyber-security-operations-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Operations Specialist - **Company:** Wissen Infotech - **Location:** Pittsburgh, PA, United States - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Cloud Engineering, Static Program Analysis, Cyber Security, DevOps, Identity and Access Management, Intrusion Detection and Prevention, Virtual Private Networks (VPN), Python (Programming Language), Log Analysis, Windows PowerShell, Role-Based Access Control, Kusto Query Language, Zero Trust Network Access, Security Support Provider Interface, Security Information and Event Management, Software Vulnerability Management, Policy as Code, Google Cloud, Mitre Att&ck, Firewalls (Computer Science), Azure Security Center, Cybercrime, Microsoft Sentinel, CIS Benchmarks, Oracle Cloud Infrastructure, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** September 18, 2026 - **Apply:** https://www.dice.com/job-detail/376de9b6-5efe-4882-9438-2c81eadb0d1c ## About the Role Technical Skills * Strong experience with Microsoft Azure, AWS, or Google Cloud Platform. * Hands-on experience with: * Microsoft Sentinel * Microsoft Defender for Cloud * Microsoft Defender XDR * AWS Security Hub * CrowdStrike Knowledge of cloud networking, firewalls, VPNs, WAF, and Zero Trust architecture. Experience with Identity and Access Management (IAM), SSO, MFA, and RBAC. Familiarity with Vulnerability Management and CSPM solutions. Working knowledge of PowerShell, Python, Bash, or KQL. CSPM, KSPM, SSPM Security Knowledge * Security Operations Center (SOC) processes. * Incident Response and Threat Hunting. * Security Monitoring and Log Analysis. * Cloud Security Best Practices. * MITRE ATT&CK Framework. * NIST Cybersecurity Framework. * CIS Benchmarks. * ISO 27001 ## Description The role will work closely with Security Operations Centre (SOC), Infrastructure, Cloud Engineering, DevOps, and Compliance teams to maintain a secure cloud ecosystem and strengthen the organization's cybersecurity posture., Security Monitoring & Incident Response * Monitor cloud environments for security threats, suspicious activities, and policy violations. * Investigate security alerts and incidents generated by SIEM, XDR, and cloud-native security tools. * Lead incident triage, containment, eradication, and recovery activities. * Perform root cause analysis and document incident findings and remediation actions. * Develop and maintain cloud security incident response playbooks. Cloud Security Operations * Manage and improve cloud security posture across Azure, AWS, and Google Cloud Platform. * Identify and remediate cloud misconfigurations, vulnerabilities, and security gaps. * Monitor compliance with cloud security baselines, policies, and regulatory requirements. * Conduct cloud security risk assessments and security reviews. Identity & Access Security * Monitor privileged access and enforce least-privilege principles. * Manage and review IAM policies, RBAC roles, MFA, Conditional Access, and Privileged Identity Management (PIM). * Investigate identity-based threats and unauthorized access attempts. Threat Hunting & Detection Engineering * Perform proactive threat hunting across cloud workloads and services. * Develop detection use cases and custom analytics rules. * Leverage MITRE ATT&CK framework to enhance detection capabilities. * Identify emerging cloud threats and recommend security improvements. Security Automation & Reporting * Support security automation initiatives using SOAR and scripting. * Develop dashboards, reports, and security metrics for management review. * Participate in cloud security governance and operational reviews. * Recommend process improvements to enhance cloud security operations efficiency. Cloud security responsibilities * Understand and use corporate information security frameworks, policies, implementation, and support tools * Translate and evolve corporate security policies into cloud requirements * Identify compliance standards, craft policies and controls in support of standards, and implement Policy as Code (e.g. SOC-2 NIST 800-53, ISO 27001) * Use Policy as Code to enforce pre-deployment compliance on IaC scripts (e.g. static code analysis of TF, Helm) * Use Policy as Code to implement compliance and configuration monitoring of the running state of cloud environment. * Use Policy as Code to prevent out of band (bypassing pipeline) misconfiguration via cloud vendor policy engine (Azure, GCO, OCI Policy) * Evaluate and identify suite of security tooling to be used in partnership with product teams & Information Security for vulnerability scanning, alerting, & reporting (e.g. Azure Monitor, Azure Sentinel (SIEM), Azure Policy (policy enforcement), and Azure Security Center, CGP Security center, OCI cloud guard, CSPM etc) * Establish security support processes in partnership with product teams and Information. * Security for vulnerability scanning, alerting, and reporting, leveraging automated incident response and self-service tools, when possible * Provide resolution support to address security and compliance infrastructure exposures identified through monitoring and alerts. * Establish preventative procedures to resolve newly identified security exposures prior to impact. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)