Sr. Cyber Security Analyst

Madison-Davis

Waltham, MA

JOB DETAILS
SKILLS
Amazon Web Services (AWS), Analysis Skills, Applications Security, Artificial Intelligence (AI), Artificial Intelligence (AI) Programming Languages, Auditing, Automation, Bash Scripting, CCSP - Cisco Certified Security Professional, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Applications, Cloud Computing, Code Reviews, Communication Skills, Computer Security, Continuous Improvement, Corrective Action, Cross-Functional, Cryptography, Documentation, Endpoint Security, Establish Priorities, External Audit, Financial Services, GSEC - GIAC Security Essentials Certification, Healthcare, ISO (International Organization for Standardization), Identity Data Management, Incident Response, Information/Data Security (InfoSec), Internal Audit, Internet Security, Leadership, Legal, Machine Tool, Maintain Compliance, Microsoft Windows Azure, Network Security, Operational Improvement, Operational Strategy, Operations Processes, Presentation/Verbal Skills, Process Improvement, Python Programming/Scripting Language, Risk, Risk Analysis, Risk Management, Root Cause Analysis, Scripting (Scripting Languages), Security Analysis, Security Architecture, Security Compliance, Software Administration, Software as a Service (SaaS), Systems Analysis, Team Player, Threat Modeling, U.S. National Institute of Standards and Technology (NIST), Windows PowerShell, Writing Skills
LOCATION
Waltham, MA
POSTED
1 day ago

Our client is seeking a Senior Cybersecurity Analyst to join a growing Information Security organization supporting a highly regulated, cloud-first environment. This role will partner closely with security leadership, engineering teams, operations, and compliance stakeholders to strengthen security posture, drive remediation efforts, support incident response activities, and advance governance initiatives. This position is ideal for a hands-on cybersecurity professional who enjoys operating across multiple security domains, influencing technical teams, and helping mature security programs in a fast-paced environment.

RESPONSIBILITIES
  • Partner with infrastructure, cloud, and application teams to drive remediation of identified vulnerabilities.
  • Prioritize findings based on risk, business impact, and remediation timelines.
  • Monitor remediation progress and ensure adherence to established service level objectives.
  • Validate corrective actions and support ongoing vulnerability lifecycle management.
  • Participate in the investigation and resolution of cybersecurity and privacy incidents.
  • Collaborate with security operations, legal, technology, and business stakeholders throughout incident lifecycles.
  • Support root cause analysis, evidence collection, containment activities, and post-incident reporting.
  • Assist with continuous improvement of incident response processes and playbooks.
  • Conduct security reviews and risk assessments for systems, applications, and business initiatives.
  • Develop and maintain security policies, standards, procedures, and operational documentation.
  • Document security recommendations and support risk acceptance and exception management processes.
  • Assist with security awareness initiatives and internal communications.
  • Support internal and external audit activities through evidence collection, control validation, and auditor engagement.
  • Contribute to ongoing compliance initiatives aligned with frameworks such as ISO 27001, SOC 2, NIST CSF, and CIS Controls.
  • Assist with emerging governance programs focused on artificial intelligence and responsible technology adoption.
  • Review cloud security findings and recommend risk reduction strategies.
  • Evaluate identity, access, logging, monitoring, and encryption controls within cloud environments.
  • Support secure configuration reviews across infrastructure and edge security technologies.
  • Utilize scripting, automation, and AI-assisted technologies to improve operational efficiency.
  • Implement solutions that streamline investigations, reporting, evidence gathering, and recurring security workflows.
  • Identify opportunities to reduce manual effort and enhance overall security operations.

QUALIFICATIONS
  • 5+ years of experience in cybersecurity, information security, or related disciplines.
  • Experience leading vulnerability remediation efforts across engineering and infrastructure teams.
  • Hands-on experience supporting incident response investigations and security operations activities.
  • Strong understanding of security frameworks including ISO 27001, SOC 2, NIST CSF, and CIS Controls.
  • Experience supporting audits from the practitioner or control-owner perspective.
  • Knowledge of cloud security principles within AWS and/or Azure environments.
  • Familiarity with vulnerability management, endpoint security, identity management, and network security technologies.
  • Experience developing security documentation including policies, standards, procedures, and technical recommendations.
  • Strong written and verbal communication skills with the ability to communicate technical risk to diverse audiences.
  • Experience with scripting or automation using Python, PowerShell, Bash, or similar technologies.
  • Exposure to AI-enabled security tooling and automation workflows.
  • Experience within financial services, SaaS, technology, healthcare, or other regulated industries.
  • Security certifications such as CISSP, CISM, CCSP, GSEC, or equivalent.
  • Experience supporting application security initiatives, secure development practices, or cloud-native environments.
  • Familiarity with threat modeling, security architecture reviews, and software security assessments.
  • Exposure to AI governance, responsible AI frameworks, or emerging AI security controls.
  • Experience working within highly collaborative, cross-functional environments.

About the Company

M

Madison-Davis