CTEM Cloud and Hardening Analyst/Governance

Tricascade Tech

United States

On-site

USD 140,000 - 210,000

Full time

11 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Berkley Technology Services (BTS) seeks a CTEM Cloud and Hardening Analyst to secure and govern a growing multi-cloud footprint. The role sits at the intersection of cloud engineering, vulnerability management, and regulatory compliance, shaping how we measure and improve global cloud security posture.

The candidate will work on hardening monitoring, control mapping to frameworks, risk remediation, and automation across cloud and on-prem environments, engaging with global engineering and

Qualifications

  • 10+ years in Information Security, IT audit, cloud security, or related field
  • Experience mapping controls to frameworks (NIST, CIS) and supporting audit cycles
  • Hands-on with at least one major cloud provider (AWS/Azure) and IAM, networking, logging, encryption management

Responsibilities

  • Operate and tune cloud security posture management to assess multi-cloud environments
  • Translate regulatory requirements into enforceable cloud and on-premise configuration standards
  • Rank findings with business context and drive remediation with teams
  • Code controls into CI/CD pipelines and automate evidence collection
  • Provide reporting on coverage, SLAs, and residual risk to stakeholders

Skills

Cloud security
Vulnerability management
Regulatory compliance
Stakeholder engagement
Cloud governance

Education

Bachelor’s degree in Computer Science/Information Security/Networking

Tools

Wiz
Prisma Cloud
Microsoft Defender for Cloud
AWS Security Hub

Job description

Role-CTEM Cloud and Hardening Analyst/Governance
Duration- 1 year+

CTEM Cloud and Hardening Analyst within our Exposure Management organization. We are looking for a motivated and technically strong Cybersecurity professional to help secure and govern our expanding multi-cloud footprint. This role sits at the intersection of cloud engineering, vulnerability management, and regulatory compliance, and offers the opportunity to directly shape how we measure and improve our global cloud security posture. Candidates must have a Minimum of 10+ years in Information Security, IT audit, cloud security, or a related field, with demonstrated focus on cloud compliance and configuration risk.

Candidates need to have experience with Cloud security posture management and compliance scanning tools (e.g., Wiz, Prisma Cloud, Microsoft Defender for Cloud, AWS Security Hub),

Job Description:

Berkley Technology Services (BTS) is excited to announce an opening for a CTEM Cloud and Hardening Analyst within our Exposure Management organization. We are looking for a motivated and technically strong Cybersecurity professional to help secure and govern our expanding multi-cloud footprint. This role sits at the intersection of cloud engineering, vulnerability management, and regulatory compliance, and offers the opportunity to directly shape how we measure and improve our global cloud security posture.

Key Responsibilities:
  • Hardening Monitoring: Operate and tune our cloud security posture management platform to continuously assess on Premise (Windows and *Nix) AWS and Azure environments against approved configuration baselines and industry benchmarks.
  • Control Mapping: Translate regulatory and internal control requirements into enforceable configuration standards (For both Cloud and on Premise), and maintain the mapping between technical controls and frameworks such as NIST, CIS, etc.
  • Risk Prioritization and Remediation: Validate and risk-rank findings using business context, drive remediation to closure with cloud platform and application teams, and administer the exception and risk-acceptance process.
  • Automation and Prevention: Codify controls as preventive guardrails and shift detection into infrastructure-as-code and CI/CD pipelines, automating recurring assessment and evidence collection wherever possible.
  • Stakeholder Communication: Provide clear reporting on control coverage, remediation SLAs, and residual risk to global engineering, business operating units, security management, and senior leadership teams.
Qualifications:
  • Experience: Minimum of 10+ years in Information Security, IT audit, cloud security, or a related field, with demonstrated focus on cloud compliance and configuration risk.
  • Cloud Expertise: Hands-on working knowledge of at least one major cloud provider (AWS, Azure, etc.), including identity and access management, network architecture, logging, and encryption and key management.
  • Hardening Knowledge: Proven experience mapping technical controls to recognized frameworks and supporting a formal audit or assessment cycle from evidence gathering through issue closure.
  • Technical Proficiency: Skilled in cloud security posture management and compliance scanning tools (e.g., Wiz, Prisma Cloud, Microsoft Defender for Cloud, AWS Security Hub), as well as experience with standard Operating Systems.
  • Education: Bachelor’s degree in Computer Science, Information Security, Network Engineering, or a related technical discipline (or equivalent experience).
  • Certifications: CCSK, CCSP, CISA, CISSP, or a cloud provider security specialty certification is preferred.
  • Stakeholder Engagement: Proven ability to explain findings and secure remediation commitments from business, technical, and executive stakeholders.
Why Join Us?
  • Innovative Environment: Be part of a team that values automation, prevention, and continuous improvement over manual checklists.
  • Impactful Work: Your contributions will directly strengthen the security and compliance posture of our global cloud environments.
  • Professional Growth: Opportunities for career advancement, certification support, and professional development.
  • Collaborative Culture: Work alongside talented professionals in a supportive and inclusive environment.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cloud Security & Automation Engineer
Cloud Security & Automation Engineer

careers-berkley • Wilmington (DE)

On-site
USD 110,000 - 150,000
Cloud Security & Governance Analyst: Hardening & Compliance
Cloud Security & Governance Analyst: Hardening & Compliance

Tricascade Tech • United States

On-site
USD 140,000 - 210,000
Cloud Security & Automation Engineer
Cloud Security & Automation Engineer

Berkley Small Business Solutions (a Berkley Company) • Wilmington (DE)

On-site
USD 107,000 - 198,000
Cloud Security Engineering Manager
Cloud Security Engineering Manager

CIBR Warriors • United States

On-site
USD 140,000 - 210,000
Cloud Security Engineer
Cloud Security Engineer

Merci Technologies, Inc. • Miami (FL), Northern (KY)

Hybrid
USD 140,000 - 180,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Covenant HR • Boston (MA)

On-site
USD 160,000 - 240,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Avantdigitalnow • San Francisco (CA)

On-site
USD 120,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

OneImaging • Bellevue (WA)

On-site
USD 100,000 - 130,000
Health Care Plan
Retirement Plan
Paid Time Off
+2
Sr. Cyber Security Engineer, Exposure Management
Sr. Cyber Security Engineer, Exposure Management

Community Health Systems • United States

On-site
USD 120,000 - 150,000
Cloud Security Engineer
Cloud Security Engineer

Fabergent • Miami (FL)

On-site
USD 100,000 - 130,000