Senior Security Analyst

Posted 2 Days Ago
Be an Early Applicant
Hiring Remotely in Punehu, Northland, NZL
Remote
Senior level
Information Technology • Software • Database
The Role
Lead SOC operations: monitor, triage, and respond to alerts; investigate incidents; perform threat hunting and vulnerability management; secure cloud and hybrid environments (AWS/Azure/GCP); support SOC 2/ISO27001 audits; develop playbooks and automation; mentor junior analysts; report to senior leadership.
Summary Generated by Built In
About Nexus

You don't have an AI story if you don't have your data story. That's where NexusOne comes in.


We're the converged data platform for the AI era — composable by design, built on an open-source foundation, and AI-native from the ground up. One identity, one governance envelope, one operational layer across every mainframe, data lake, warehouse, and streaming system in the business. For the first time, enterprises can bring their existing stack along instead of rebuilding it — and still give AI agents full context across the estate.


What we stand for is simple: sovereign data, interoperable systems, decoupled intelligence — delivered the way modern software should be. No rip-and-replace. No multi-year transformation. Our CEO Anu Jain puts it well: we turn the "ball of yarn" of data integrations into a unified engine — less like assembling car parts, more like buying the car ready to drive. 85+ open-source tools pre-integrated. AI-native automations that deploy and self-heal the stack without human toil. Forward-deployed engineers who build shoulder-to-shoulder with customer teams — hands on keyboards, not just on decks.


It's working, and fast. We're tripling revenue year over year, backed by Insight Partners, and running in production in environments most vendors won't touch. Our platform processes credit risk data for 90%+ of US small businesses — 40M+ — every month. Intent signals for 300M+ subscribers monthly for Africa's largest telco. The data and AI layer for a Top 3 US bank.


We're 100+ people across the US and India, headquartered in Atlanta. We think big, move fast, and don't mistake activity for progress. We hire people who'd rather ship the rocket than brief someone on it.

Check out this podcast of Anu talking about our solution here: https://www.youtube.com/watch?v=g8g50sv5GhQ

What You’ll Do

Security Operations & Incident Response

  • Monitor, triage, and respond to security alerts generated by SIEM platforms (Datadog, Microsoft Defender) and other detection tooling.

  • Lead investigations into security incidents and breaches, conducting thorough root-cause analysis and recommending appropriate remediation actions.

  • Develop, refine, and execute incident response playbooks to ensure timely containment and resolution of cyber threats.

  • Perform threat hunting activities to proactively identify indicators of compromise (IOCs) across cloud and on-premise environments.

  • Continuously optimize threat detection capabilities through tuning of EDR, IDS/IPS, firewall rules, and SIEM correlation rules.

Vulnerability & Risk Management

  • Identify, assess, and prioritize vulnerabilities across internal and external applications, systems, and services using VM tools and best-practice methodologies.

  • Conduct security assessments and provide remediation guidance in line with industry frameworks (NIST, ISO 27001, CIS).

  • Contribute to threat modeling activities for the company’s diverse cloud environments (AWS/Azure/GCP).

  • Act as a security consultant to cross-functional teams, providing guidance across all domains of information security and risk management.

Cloud & Infrastructure Security

  • Apply deep expertise in AWS and Azure security services (IAM, Security Hub, Defender for Cloud, GuardDuty) to secure cloud-native and hybrid architectures.

  • Collaborate with security engineering and IT teams to ensure effective integration and configuration of SOC technologies, including SIEM, EDR, IDS/IPS, firewalls, and vulnerability management tools.

  • Engage with partners to secure cloud offerings based on industry best and standard practices.

Compliance & Governance

  • Support SOC 2 and ISO 27001 audit activities, ensuring adherence to compliance standards and facilitating external audits.

  • Maintain working knowledge of regulatory requirements (GDPR, HIPAA, PCI-DSS) and apply them to operational security controls.

  • Contribute to the development and maintenance of security standards, guidelines, policies, and documentation.

  • Collaborate with the GRC (Governance, Risk, and Compliance) function to drive a cohesive security program.

Reporting & Stakeholder Communication

  • Prepare reports and presentations for senior management detailing the current security landscape, recent incidents, and their resolution.

  • Manage and report on periodic KPIs and SLA adherence related to SOC operations and platform performance.

  • Participate in project and scrum planning prioritization alongside the broader security team.

  • Mentor junior analysts and contribute to improving team knowledge through knowledge sharing and hands-on training.

Who You Are

Experience

  • 10-12 years of relevant technical experience in information security, with at least 5 years in a SOC or security operations role.

  • Demonstrated hands-on experience with security tools: SIEM (Datadog, Splunk, Microsoft Sentinel), EDR, IDS/IPS, and vulnerability management platforms.

  • Proven experience troubleshooting and responding to security events and incidents in cloud environments.

  • Hands-on experience supporting security audits (SOC 2, ISO 27001) and working with external auditors.

Technical Skills

  • Strong hands-on AWS security depth (IAM, Security Hub, GuardDuty) and Azure security depth (Defender for Cloud, Sentinel/Defender).

  • Strong Kubernetes and container security experience (cluster hardening, workload identity, runtime controls, image scanning).

  • Proven Security Operations automation: triage and response automation, detection engineering, and playbook automation (SOAR/workflows/scripts).

  • Strong hands-on Datadog (SIEM/security monitoring), dashboards, alert tuning, and investigation workflows; Splunk/Sentinel familiarity a plus.

  • Practical AI/ML skills for SecOps (alert enrichment, correlation, anomaly detection, summarization) and responsible use of AI tools to improve analyst productivity.

  • Strong Google Workspace security administration and identity protections (admin controls, audit logs, OAuth app governance).

  • Vulnerability management expertise end-to-end (asset discovery, prioritization, remediation verification) and risk-based reporting.

  • Strong understanding of networking concepts: VPN, DNS, Routing, Firewalls, and Load Balancing.

  • Working knowledge of access control, directory services, and authentication protocols (OAuth, SAML, OpenID).

  • Scripting skills in Bash, Python, Terraform, AWS CloudFormation, and API/REST integrations are a strong plus.

  • Strong Palo Alto firewall knowledge (policy design, threat prevention, logging, troubleshooting) is a plus.

Education & Certifications

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience).

  • One or more professional certifications preferred: CISSP, CISM, CompTIA Security+, GCIA, GCIH, or equivalent offensive security certifications.

Soft Skills

  • Strong problem-solving skills, attention to detail, and a self-learning mindset.

  • Excellent communication skills with the ability to translate technical findings for non-technical stakeholders.

  • Ability to own end-to-end incident management (detection → triage → containment → eradication → recovery → post-incident review) and drive stakeholders to closure.

  • Experience running tabletop exercises, leading incident drills, and performing attack simulations/purple team activities to validate controls and response readiness.

  • Ability to lead, prioritize, and execute complex projects across multiple, geographically diverse groups with competing priorities.

  • Strong customer service orientation and experience adhering to support SLAs.

  • Willingness to work in a fast-paced, dynamic environment with 24/7 SOC coverage requirements.

Why You’ll Love Working at Nexus

At Nexus, we value people who want to grow — and support each other while doing so.

You can expect:

  • A collaborative team culture built on curiosity and respect

  • Challenging work where your contributions clearly matter

  • A leadership team that invests in learning and development

  • The opportunity to work at the intersection of cloud, data, and AI innovation

Ready to Apply?

If this role sounds like a great fit — or even close to one — we’d love to hear from you. We know that no candidate checks every single box, and we’re excited to meet people who bring curiosity, talent, and a desire to build meaningful work together.

Skills Required

  • 10-12 years of information security experience with at least 5 years in a SOC or security operations role
  • Hands-on experience with SIEM (Datadog, Splunk, Microsoft Sentinel), EDR, IDS/IPS, and vulnerability management platforms
  • Experience troubleshooting and responding to security events and incidents in cloud environments (AWS/Azure/GCP)
  • Hands-on AWS security (IAM, Security Hub, GuardDuty) and Azure security (Defender for Cloud, Sentinel/Defender)
  • Kubernetes and container security (cluster hardening, workload identity, runtime controls, image scanning)
  • Security operations automation, detection engineering, and SOAR/workflows/scripts
  • Strong Datadog experience for SIEM/security monitoring, dashboards, alert tuning, and investigations
  • Practical AI/ML skills for SecOps (alert enrichment, correlation, anomaly detection, summarization)
  • Google Workspace security administration and identity protection expertise
  • Vulnerability management expertise end-to-end (asset discovery, prioritization, remediation verification)
  • Strong understanding of networking concepts: VPN, DNS, routing, firewalls, and load balancing
  • Working knowledge of access control, directory services, and authentication protocols (OAuth, SAML, OpenID)
  • Experience supporting SOC 2 and ISO 27001 audits and working with external auditors
  • Ability to own end-to-end incident management and run tabletop exercises/purple team activities
  • Willingness to work in a fast-paced environment with 24/7 SOC coverage requirements
  • Bachelor's degree in Cybersecurity, IT, Computer Science, or equivalent experience
  • Scripting experience (Bash, Python), Infrastructure-as-Code (Terraform, AWS CloudFormation), and API/REST integrations
  • Strong Palo Alto firewall knowledge (policy design, threat prevention, logging)
  • Professional certifications (CISSP, CISM, GCIA, GCIH, CompTIA Security+ or equivalent)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Addison, TX
80 Employees
Year Founded: 2018

What We Do

Nexus Cognitive takes enterprises from data to outcomes at unprecedented speed and scale. We’ve revolutionized the way enterprises get value from their data with a composable, agnostic framework that enables you to rapidly build new solutions with modular, pre-integrated data components. Built with open standards, we give you the freedom to work with the data, systems, and toolsets of your choice, while our universal data catalog provides robust governance to ensure compliance and cut risks. Through close customer collaboration, we design solutions that connect data pipelines and increase data access from on-prem to multi-cloud, with complete visibility across the data ecosystem. Cut data complexity, get AI-ready, and prove ROI in weeks, not months with the fully managed data framework and outcomes from Nexus Cognitive.

Similar Jobs

Deepgram Logo Deepgram

Senior Solutions Architect

Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
Remote
3 Locations
150 Employees

Pfizer Logo Pfizer

HCE

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
5 Locations
121990 Employees

Zapier Logo Zapier

Back-end Engineer

Artificial Intelligence • Productivity • Software • Automation
Remote
32 Locations
800 Employees
211K-316K Annually

Halter Logo Halter

Senior Territory Manager (Relocate to Australia)

Greentech • Hardware • Internet of Things • Machine Learning • Software • Business Intelligence • Agriculture
In-Office or Remote
7 Locations
350 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account