2

Entry Level Cloud Security Analyst Jobs (NOW HIRING)

Security Analyst

Minneapolis, MN · Hybrid

$95K - $125K/yr

Cloud Security: You will be responsible for managing and securing our cloud infrastructure ... Strong analytical and problem-solving skills. * Demonstrated ability of analytical expertise, close ...

Security Analyst

Minneapolis, MN · Hybrid

$95K - $125K/yr

Cloud Security: You will be responsible for managing and securing our cloud infrastructure ... Strong analytical and problem-solving skills. * Demonstrated ability of analytical expertise, close ...

Security Analyst

Minneapolis, MN · Hybrid

$95K - $125K/yr

Cloud Security: You will be responsible for managing and securing our cloud infrastructure ... Strong analytical and problem-solving skills. * Demonstrated ability of analytical expertise, close ...

Familiarity with cloud platforms such as Azure and AWS. * Familiarity with CI/CD platforms such as ... Ability to analyze security findings, assess risk, and communicate remediation recommendations ...

Security Analyst

Mountain View, CA · Remote

$90K - $120K/yr

... cloud security principles and best practices (e.g., AWS, Azure, GCP). \t \t \tExperience with cloud security tools and technologies. \t \t \tExperience in vulnerability management, including ...

Cloud Security Engineer

Lake Mary, FL · Hybrid

$48.75 - $65.25/hr

Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams. * Develop and maintain technical documentation ...

Cloud Security Engineer

Philadelphia, PA · Hybrid

$56.25 - $75.25/hr

Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams. * Develop and maintain technical documentation ...

Cloud Security Engineer

Dallas, TX · Hybrid

$55.25 - $73.75/hr

Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams. * Develop and maintain technical documentation ...

Cloud Security Engineer

Mechanicsburg, PA · Hybrid

$52.75 - $70.50/hr

Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams. * Develop and maintain technical documentation ...

Cloud Security Engineer

Gilbert, AZ · Hybrid

$55.50 - $74.25/hr

Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams. * Develop and maintain technical documentation ...

Cloud Security Engineer

Atlanta, GA · On-site

$53.50 - $71.75/hr

Investigate cloud security events and findings, analyze root causes, and support remediation ... Professional development From entry-level employees to senior leaders, we believe there's always ...

Cloud Security Engineer

Houston, TX · Hybrid

$53.25 - $71.25/hr

Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams. * Develop and maintain technical documentation ...

Cloud Security Engineer

Atlanta, GA · Hybrid

$53.50 - $71.75/hr

Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams. * Develop and maintain technical documentation ...

Cloud Security Developer

Sunnyvale, CA · On-site

$150K - $183K/yr

... analytical skills and the ability to work efficiently in a distributed team environment - Experience in data mining, anomaly detection, or predictive analytics, preferably in security or cloud ...

Showing results 21-40

Entry Level Cloud Security Analyst information

See salary details

$14

$38

$68

How much do entry level cloud security analyst jobs pay per hour?

As of Jul 25, 2026, the average hourly pay for entry level cloud security analyst in the United States is $38.63, according to ZipRecruiter salary data. Most workers in this role earn between $25.96 and $48.32 per hour, depending on experience, location, and employer.

What is an Entry Level Cloud Security Analyst?

An Entry Level Cloud Security Analyst is a professional who helps protect an organization’s cloud-based systems and data from security threats. They monitor cloud environments, investigate potential security incidents, and assist in implementing security policies. These analysts often work with more experienced security professionals to ensure cloud infrastructure is safe and compliant with regulations. Their responsibilities can include reviewing security alerts, assessing vulnerabilities, and helping to maintain secure cloud configurations.

What is the difference between Entry Level Cloud Security Analyst vs Cloud Security Engineer?

AspectEntry Level Cloud Security AnalystCloud Security Engineer
CertificationsCompTIA Security+, AWS Certified Cloud PractitionerCertified Cloud Security Professional (CCSP), AWS Security Specialty
Work EnvironmentSupport teams, monitoring, basic security tasksDesigning, implementing, and managing security solutions
ResponsibilitiesMonitoring cloud security, assisting with auditsDeveloping security architecture, deploying security tools

The Entry Level Cloud Security Analyst typically focuses on monitoring and supporting cloud security operations, requiring foundational certifications. In contrast, a Cloud Security Engineer handles designing and implementing security measures, often with advanced certifications. The analyst role is ideal for those starting in cloud security, while the engineer role involves more technical expertise and responsibility.

What are some common challenges faced by entry-level cloud security analysts, and how can I prepare for them?

Entry-level cloud security analysts often encounter challenges such as staying current with rapidly evolving cloud technologies, understanding complex security configurations, and responding to security incidents in real time. To prepare, it's helpful to build a strong foundation in cloud platforms (like AWS, Azure, or Google Cloud), familiarize yourself with security best practices, and gain hands-on experience through labs or internships. Additionally, collaborating closely with IT, DevOps, and senior security team members can accelerate your learning and help you navigate these challenges more effectively.

What are the key skills and qualifications needed to thrive as an Entry Level Cloud Security Analyst, and why are they important?

To thrive as an Entry Level Cloud Security Analyst, you need a foundational understanding of cybersecurity principles, cloud computing concepts, and a degree in computer science or a related field. Familiarity with cloud platforms like AWS, Azure, or Google Cloud, and certifications such as CompTIA Security+ or AWS Certified Cloud Practitioner, are commonly required. Strong analytical thinking, attention to detail, and effective communication are vital soft skills for this role. These skills and qualifications enable analysts to identify vulnerabilities, implement security measures, and collaborate with teams to protect cloud-based assets.
More about Entry Level Cloud Security Analyst jobs
What cities are hiring for Entry Level Cloud Security Analyst jobs? Cities with the most Entry Level Cloud Security Analyst job openings:
What are the most commonly searched types of Cloud Security Analyst jobs? The most popular types of Cloud Security Analyst jobs are:
What states have the most Entry Level Cloud Security Analyst jobs? States with the most job openings for Entry Level Cloud Security Analyst jobs include:
What job categories do people searching Entry Level Cloud Security Analyst jobs look for? The top searched job categories for Entry Level Cloud Security Analyst jobs are:
Infographic showing various Entry Level Cloud Security Analyst job openings in the United States as of July 2026, with employment types broken down into 89% Full Time, 6% Part Time, 1% Temporary, and 4% Contract. Highlights an 83% Physical, 7% Hybrid, and 10% Remote job distribution, with an average salary of $80,350 per year, or $38.6 per hour.
Senior Cloud Application Security Analyst

Senior Cloud Application Security Analyst

PowerPlan, Inc

Atlanta, GA

$91K - $119K/yr

Other

Posted 15 days ago


Job description

Overview

PowerPlan is looking for every opportunity to help our customers and prospects gain more value from our suite of software solutions. We are seeking a Senior Security Analyst / AppSec Specialist to join our Information Security & Compliance team. This is a hands-on, high-impact role responsible for strengthening our application security posture, driving vulnerability management maturity, and supporting security operations across our cloud-hosted SaaS environment. The successful candidate will serve as a technical security practitioner embedded within our engineering and operations ecosystem, partnering closely with DevOps, product, and compliance teams.

To be successful in this role, you should have extensive experience with CrowdStrike Falcon, including its Next-Gen SIEM, Data Protection, CSPM, and Threat Intelligence capabilities, as well as experience coordinating penetration tests and running vulnerability assessments with Qualys. You should have hands-on experience with Rapid7, CI/CD pipeline hardening, cloud security in AWS and/or Azure, and security architecture. Experience implementing process improvements and driving program maturity aligned with NIST CSF 2.0 is essential. You should also have excellent communication, problem-solving, and analytical skills, as well as the ability to work independently and as part of a team.

COMPANY

PowerPlan specializes in enterprise software solutions used by organizations with complex financial, regulatory, and operational needs. We deliver secure, cloudhosted SaaS products that help customers manage critical workflows with accuracy, transparency, and compliance.

The security team plays a central role in protecting customer trust, enabling rapid product innovation, and ensuring alignment with frameworks such as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values technical depth, continuous improvement, and responsible innovation.

Responsibilities

KEY PERFORMANCE OBJECTIVES (First 12 Months)

OBJECTIVE 1: Implement a Centralized Application Vulnerability Management Platform (First 120 Days)

Outcome:Deploy a consolidated platform (e.g., DefectDojo) that aggregates SAST, DAST, SCA, penetrationtesting, and manualreview findings within 120 days. Ensure all engineering teams have visibility into normalized, prioritized findings, with assignment and SLA workflows in place. Produce monthly reports showing coverage, SLA adherence, and remediation progress.

Impact:Provides a "single pane of glass" that enables consistent prioritization, eliminates fragmented tooling silos, and measurably reduces MTTR for application vulnerabilities. Improves audit readiness and strengthens engineering alignment by creating a unified source of truth for risk decisions.

How:Evaluate and implement the platform, integrate scanning tools and pentest reports, configure crossteam workflows, onboard engineering groups, define remediation SLAs, and publish monthly dashboards to engineering and security leadership.

OBJECTIVE 2: Lead the Annual Application + Cloud Penetration Testing Program (Annual Cycle)

Outcome:Coordinate annual penetration testing for web applications, APIs, and cloud environments; ensure final reports are processed within 30 days. Track remediation and retesting and ensure all critical/highrisk findings are addressed within SLA. Maintain auditready documentation for compliance teams.

Impact:Ensures independent validation of application and cloud security posture, reduces exploitable weaknesses, and directly supports SOC 2 and ISO 27001 evidence requirements. Builds leadership confidence through measurable remediation accountability.

How:Manage vendor selection and scoping, coordinate technical access and test data, review findings, facilitate engineering remediation, validate fixes, capture evidence, and update Confluence with all required artifacts and timelines.

OBJECTIVE 3: Implement a Standardized Security Architecture Review Process (First 120 Days)

Outcome:Establish and operationalize a designreview process for all major new product features and thirdparty integrations within 120 days. Produce documented review artifacts, identified risks, and required remediation actions for development teams. Ensure findings are incorporated before release.

Impact:Reduces latecycle rework, prevents designlevel security gaps, and embeds security as a natural part of the product development lifecycle. Improves release confidence and accelerates secure deployment across the SaaS platform.

How:Create templates, facilitate threatmodel discussions (e.g., STRIDE), review integration risks, track remediation items, collaborate with engineering leads, and maintain documented review outcomes in shared repositories.

OBJECTIVE 4: Drive Measurable Maturity Improvements Aligned to NIST CSF 2.0 (First 12 Months)

Outcome:Deliver measurable improvements across NIST CSF functions through documented workflows, baseline control assessments, performance metrics, and quarterly KPI reporting. Create repeatable processes and auditready artifacts across Identify, Protect, Detect, Respond, and Recover.

Impact:Strengthens the formal structure and reliability of the security program, reduces operational and compliance risk, and enhances readiness for SOC 2 and ISO 27001 by demonstrating consistent, evidencebased maturity growth.

How:Assess current control gaps, standardize repeatable workflows, document runbooks and procedures, collaborate with engineering and compliance, automate where practical, and present quarterly maturity dashboards.

OBJECTIVE 5: Strengthen CrossFunctional Collaboration Across Dev, CloudOps, IT & Compliance (First 6-9 Months)

Outcome:Implement recurring crossteam security syncs, remediation checkpoints, and shared KPI dashboards. Drive measurable improvements in SLA adherence, cloud misconfiguration reduction, recurringvulnerability prevention, and overall operational alignment.

Impact:Builds unified, organizationwide ownership of security responsibilities, accelerates remediation cycles, and reduces risk introduced by siloed decisions or inconsistent practices.

How:Establish communication cadences, run joint review sessions, align remediation expectations, publish shared dashboards, and deliver clear visibility to leadership on crossteam security performance.

Qualifications

WHAT YOU BRING

  • Hands on experience with application security scanning (SAST/DAST/SCA), pentesting coordination, and vulnerability management platforms.
  • Strong working knowledge of CrowdStrike, Qualys, and/or Rapid7.
  • Cloud security experience in AWS and/or Azure, including IAM, logging, and posture management.
  • Experience performing or facilitating threat modeling and architecture reviews.
  • Familiarity with SOC 2, ISO 27001, and NIST CSF 2.0.
  • Strong analytical, communication, and documentation skills.
  • Ability to partner effectively across engineering, DevOps, CloudOps, IT, and compliance teams.
  • Demonstrated ability to drive process maturity and measurable improvements.

PowerPlan is an EOE"

Applicant and Candidate Privacy Notice

Please note that this is a hybrid role that involves a combination of onsite work from our corporate office as well as work from home. While we strive to accommodate flexible working arrangements when sensible, there will be times when onsite work is required. This could include scheduled office days, team meetings, client meetings, or special events.

Employment Type: OTHER