Senior Cloud Security Analyst - 2 Year Contract (Renewable)
Posted Aug 27, 2026
About the Role
Immediate joiner required. This is a two-year contract, with the possibility of renewal.
A hands-on senior technical role securing cloud, SaaS, data and AI environments. You will support the Cybersecurity Architecture team by implementing, monitoring and continuously improving cloud security controls across Azure, OCI, GCP, Microsoft 365 and Snowflake.
The role focuses on risk assessments for new solutions, operational excellence, cloud security governance, automation, threat detection and risk reduction - ensuring secure configuration, compliance alignment and rapid remediation of findings while embedding Zero Trust principles across the cloud estate.
Key focus areas: cloud security operations (Azure, OCI, GCP) · CSPM, CNAPP and misconfiguration management · IAM governance and Zero Trust · SaaS and M365 posture management · Snowflake hardening and monitoring · security automation and dashboard reporting · AI/GenAI risk assessments · enterprise security tooling integration.
Responsibilities
Cloud Security Operations
- Implement and maintain security controls across Azure, OCI and GCP.
- Monitor cloud environments for misconfigurations, risks and policy violations.
- Configure and manage CSPM tooling to detect and remediate risk.
- Support secure onboarding of SaaS platforms.
Identity & Access Management
- Enforce least-privilege access models.
- Implement conditional access and Zero Trust policies.
- Review privileged access and support periodic access recertification.
- Support identity integrations using SAML, OAuth and OpenID.
Security Monitoring & Incident Support
- Investigate cloud security alerts and recommend remediation.
- Support cloud-related incidents and root cause analysis.
- Contribute to threat modelling and proactive risk mitigation.
Enterprise Security Tools
- Support and optimise integrations across Palo Alto and FortiGate firewalls, Proofpoint email security, Netskope CASB / Web Proxy / Private Access, CrowdStrike endpoint protection, Qualys VAPT tooling and Snowflake security controls.
- Ensure correct configuration, logging and policy enforcement.
Data & AI Security
- Support security reviews for Snowflake and other data platforms.
- Assist in GenAI risk assessments and governance initiatives.
- Identify data exposure risks across cloud workloads.
Automation & Reporting
- Automate routine security tasks using PowerShell, Python or Bash.
- Build Power BI dashboards covering security posture, risk trends, cloud usage and compliance metrics.
- Track and report key security KPIs.
Governance & Compliance
- Support vendor cybersecurity due diligence.
- Contribute to audit readiness and compliance reviews.
- Maintain documentation aligned to ITIL practice and follow change management for security infrastructure updates.
Collaboration
- Work closely with Cybersecurity Architects, Infrastructure, DevOps, and Data and AI teams.
- Ensure security is embedded into project lifecycles and promote secure-by-design practice.
Requirements
- Bachelor's degree in Computer Science, Information Security, Engineering or a related discipline.
- Around 8-12 years of experience in cybersecurity.
- Minimum 5 years of hands-on cloud security experience.
- Strong operational experience securing Azure environments.
- Experience with Microsoft 365 security and identity governance.
- Hands-on experience securing Snowflake environments.
- Exposure to AI/GenAI security risk concepts.
- Experience in security automation and scripting (PowerShell, Python or Bash).
- Familiarity with SecDevOps practices.
- Strong knowledge of Azure, OCI and GCP security controls; deep understanding of IAM, conditional access and Zero Trust.
- Experience with CSPM / CNAPP tooling and authentication protocols (SAML, OAuth, OpenID).
- Experience with endpoint, email, firewall and CASB technologies; secure cloud networking; Linux and virtualised environments.
- Available to join immediately and open to a two-year fixed-term contract.
Qualifications
Certifications (preferred, not required)
- Azure Security Engineer Associate (AZ-500)
- Microsoft SC-200 or SC-100
- CCSP or CISSP (advantage)
- Palo Alto or Fortinet certifications
- SnowPro (advantage)
- OCI or GCP security certifications (nice to have)
Business orientation
- Align cloud security controls with business and risk objectives.
- Provide practical recommendations, balancing security, usability and cost.
- Support secure digital transformation initiatives.