> Markdown version of [/jobs/ext/3385338-r0119880-cloud-info-security-analyst-intermediate-level](https://www.wearedevelopers.com/jobs/ext/3385338-r0119880-cloud-info-security-analyst-intermediate-level). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # R0119880 Cloud Info Security Analyst - Intermediate Level - **Company:** USAA - **Location:** Colorado Springs, CO, United States - **Experience:** Experienced - **Salary:** $77,120.0 - $147,390.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Amazon Web Services, Microsoft Azure, Software as a Service, Cloud Computing, Cloud Computing Security, CompTIA Security+, Cyber Security, Identity and Access Management, Network Security, Cloud Services, Security Information and Event Management, Software Engineering, Data Logging, Google Cloud, Mitre Att&ck, Falcon Platform, Information Technology, Prisma Cloud Platform, Splunk, Network Server - **Published:** September 18, 2026 - **Apply:** https://dejobs.org/x/x/54B1E19945EB46BE84C0C4AF24D72AB3/job/ ## About the Role * Bachelor's degree; OR 4 years of relevant education and/or experience. * 2 years of related experience in Information Security, Cybersecurity and/or Information Technology with a security focus to include accountability for moderately complex tasks and/or projects. * 1 year of related experience in one of the following domains: Security and Risk Management, Asset Security, Security Architecture and Engineering, Communications and Network Security, Identity and Access Management, Security Assessment and Testing, Security Operations, Software Development Security. * Developing level of business acumen in the areas of business operations, risk management, industry practices and emerging trends. What sets you apart: * Experience investigating cloud security incidents across AWS, Azure, GCP, and SaaS platforms. * Strong understanding of IAM, cloud networking, logging, and cloud native services. * Ability to analyze security events, determine root cause, and drive remediation efforts. * Experience with SIEM, EDR, and cloud security tools such as CrowdStrike, Sentinel, Splunk, Elastic, Wiz, or Prisma Cloud. * Knowledge of cloud threats including credential compromise, privilege escalation, API abuse, and misconfigurations. * Strong communication, collaboration, and problem solving skills. * Experience developing detections, automations, playbooks, or response workflows to improve incident response efficiency. * Knowledge of cloud security frameworks and MITRE ATT&CK framework * Relevant certifications such as Security+, AWS, Azure, Google Cloud, CrowdStrike, GCIH, GCFA, CCSP, or CISSP are highly preferred. ## Description * Maintains awareness of the latest critical information security vulnerabilities, threats, and exploits. * Independently investigates and responds to moderately complex security events, leveraging root cause analysis to identify threats, contain risk, and improve detection and response capabilities. * Monitors internal and external networks, systems, and applications for security anomalies, suspicious activity, attacks, and potential security incidents while collaborating across teams to strengthen the organization's security posture. * Respond to cyber incidents, performing moderately complex analysis using security tools. * Builds a broad range of knowledge, understanding, and experience (e.g. forensics, networking, servers, coding, etc.) to determine a malicious actor's tactics, techniques, and procedures. * Use the discoveries from the incident response process to make basic improvements to the existing detection capabilities and security controls. * Documents findings of completed alerts and assists with incident documentation. * Serves as a resource to team members on escalated issues of a routine nature. * Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.