> Markdown version of [/jobs/ext/3075645-senior-security-analyst](https://www.wearedevelopers.com/jobs/ext/3075645-senior-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Analyst - **Company:** Abby Care - **Location:** San Francisco, CA, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Bash Shell, Cloud Computing Security, Cyber Security, Information Systems, Information Leak Prevention, Identity and Access Management, Python (Programming Language), PCI Data Security Standards, Role-Based Access Control, Security Information and Event Management, Software Vulnerability Management, Scripting, Okta, Large Language Models, Information Technology, Cybercrime, Casper Suite, Machine Learning Operations, Gsuite, Terraform, SentinelOne Expertise, Vulnerability Analysis - **Published:** September 25, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=94b4025c3c41f526 ## About the Role * 8+ years of experience in security operations, leading incident response end-to-end from detection through remediation. * Associate's or Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field, or equivalent practical experience * Hands-on experience with SIEMs, EDR/XDR (e.g., SentinelOne), vulnerability scanners, cloud security, and core IAM concepts (SSO, MFA, RBAC). * Working knowledge of security frameworks (SOC 2, ISO 27001, NIST, CIS) with strong analytical skills to translate technical risk to business stakeholders. * Familiarity with emerging AI/LLM risks and an interest in evaluating AI capabilities for security use cases. * Excellent communication skills with the ability to prioritize competing incidents and operate calmly under pressure. Nice to have: * Hands-on experience with Okta, JAMF, or Google Workspace, alongside Infrastructure as Code (Terraform) for access/security policy management. * Scripting experience (Python, Bash), SOAR exposure, and familiarity with CSPM tools or native cloud security platforms (AWS/GCP/Azure). * Practical experience securing AI/ML pipelines and GenAI deployments, or operating AI-driven security tools. * Relevant credentials such as CISSP, GCIH, GCIA, OSCP, or Security+. ## Description * Lead end-to-end incident response, threat hunting, and root cause analysis across SIEM, EDR (SentinelOne), and cloud security tooling. * Develop and maintain incident response playbooks, runbooks, and tabletop exercises. Vulnerability & Risk Management * Own the vulnerability management lifecycle, partnering with IT and Engineering to remediate scan, pen test, and audit findings. * Maintain the risk register, conduct third-party/vendor risk assessments, and communicate technical risks to business stakeholders. Identity, Endpoint & Compliance Oversight * Partner with IT to audit and enforce security controls across Okta (RBAC/MFA), Google Workspace (DLP/logs), JAMF, and SentinelOne. * Drive evidence collection and remediation for compliance audits (SOC 2, ISO 27001, HIPAA, PCI DSS) while aligning policies with NIST CSF and CIS frameworks. Security Engineering & Automation * Automate detection, response, and reporting workflows via SOAR, scripting, and APIs to improve alert quality and efficiency. * Mentor team members and contribute to cross-functional security knowledge sharing. AI Security & Governance * Establish guardrails and acceptable-use policies for enterprise AI tools (e.g., GenAI, Claude), mitigating shadow AI, data leakage, and third-party vendor risks alongside IT, Legal, and Compliance. * Partner with Product and Engineering to assess and remediate AI/LLM-specific vulnerabilities, including prompt injection, model abuse, and data exposure. * Pilot and evaluate AI-powered security capabilities (e.g., AI-assisted SIEM/EDR triage and anomaly detection) to boost response speed and operational efficiency. ## Related Videos - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Oops! Stories of supply chain shenanigans](https://www.wearedevelopers.com/videos/245-oops-stories-of-supply-chain-shenanigans) ## Related Articles - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)