> Markdown version of [/jobs/ext/3044306-cloud-security-analyst](https://www.wearedevelopers.com/jobs/ext/3044306-cloud-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Analyst - **Company:** Accenture - **Location:** Barcelona, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Software System Penetration Testing, Software as a Service, Cloud Computing, Cloud Computing Security, Static Program Analysis, CompTIA Security+, Cyber Security, Continuous Integration, DevOps, Identity and Access Management, Key Management, Open Web Application Security, PCI Data Security Standards, Secure Coding, Software Engineering, Scripting, Cloud Platform System, Software Security, Containerization, Kubernetes, Infrastructure Automation Frameworks, Information Technology, Security Orchestration, Automation & Response, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** September 24, 2026 - **Apply:** https://www.adzuna.es/contact-us.html ## About the Role 5+ years of experience in cloud security, application security, cybersecurity, or a related field. Strong hands-on experience securing cloud-based applications and infrastructure throughout the software development lifecycle. Deep knowledge of AWS security services and cloud-native security architecture principles. Solid understanding of software development practices, secure coding concepts, and common application vulnerabilities such as the OWASP Top 10. Experience integrating security controls into DevOps and CI/CD workflows, including SAST, DAST, SCA, secrets scanning, and IaC security testing. Practical experience securing containerized environments and Kubernetes platforms. Strong knowledge of IAM concepts, access controls, and identity security best practices. Familiarity with compliance and regulatory frameworks such as PCI DSS, GDPR, SOC 2, or equivalent standards. Excellent communication, collaboration, and stakeholder management skills with the ability to influence security initiatives across technical and non-technical teams. Strong analytical thinking, risk assessment capabilities, and problem-solving skills. Bachelor's degree in Information Security, Computer Science, Information Technology, or a related discipline. Experience with security automation, scripting, infrastructure as code, or cloud security orchestration is considered a plus. Relevant certifications such as AWS Certified Security - Specialty, AWS Solutions Architect, CCSP, CompTIA Security+, or Cloud+ are advantageous. ## Description Join a globally distributed technology team dedicated to building secure, scalable, and reliable cloud-based products used by customers around the world. In this role, you will play a key part in protecting cloud infrastructure, applications, and sensitive data while supporting security initiatives across engineering, operations, and business functions. You'll work with modern cloud technologies, security frameworks, and compliance standards to strengthen security posture and enable innovation at scale. This position offers the opportunity to collaborate with cross-functional teams, influence security best practices, and contribute to a security-first culture in a remote-first environment. If you are passionate about cloud security, application protection, and risk management, this role provides the chance to make a meaningful impact on a rapidly evolving technology platform. Accountabilities Design, implement, and maintain cloud security controls across infrastructure, applications, and development environments. Secure cloud-native application stacks throughout their lifecycle, from software development through deployment and operations. Integrate security practices into CI/CD pipelines, including static analysis, dynamic testing, dependency scanning, secrets management, and infrastructure-as-code security controls. Manage and enforce Identity and Access Management (IAM) policies using least-privilege principles across cloud environments. Implement and maintain container and Kubernetes security solutions, including image scanning, runtime protection, and policy enforcement. Monitor cloud environments for threats, vulnerabilities, and suspicious activity, investigating and responding to security alerts as needed. Conduct vulnerability assessments, penetration testing activities, and remediation initiatives in partnership with engineering teams. Support security incident response, forensic investigations, and continuous improvement of security runbooks and response procedures. Develop and maintain security documentation, standards, policies, and operational procedures. Collaborate with internal stakeholders to support compliance initiatives, security audits, customer security assessments, and risk management activities. ## Related Videos - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)