We are looking for a highly skilled Security Operations Analyst to strengthen our security posture across applications, cloud platforms, and infrastructure. This role combines hands‑on security engineering with leadership responsibilities—ideal for someone who thrives in fast‑paced environments, loves solving complex security challenges, and can drive collaboration across development, DevOps, and infrastructure teams.
Key Responsibilities
1. Application Security Operations
- Lead and optimize the use of AppSec tools including DAST, SAST, and SCA.
- Integrate security testing into the CI/CD pipeline in collaboration with Development and DevOps teams.
- Ensure identified vulnerabilities are triaged, prioritized, and remediated effectively.
- Provide expert guidance on interpreting scan results and defining remediation strategies.
- Oversee container security, ensuring secure base images and container configurations.
2. Cloud Security (Microsoft Azure)
- Manage and enhance security across Azure using Microsoft Defender for Cloud, Entra ID, and Azure Sentinel (SIEM/SOAR).
- Assess, harden, and secure IaaS, PaaS, and Azure network configurations.
- Define, review, and enforce secure configuration policies for Terraform, ARM templates, or Bicep.
- Provide cloud security best practices and guidance to engineering and platform teams.
3. Infrastructure Vulnerability Management
- Perform continuous vulnerability assessments using Microsoft Defender for Cloud.
- Ensure proactive identification of misconfigurations and security gaps across cloud and hybrid environments.
- Collaborate with relevant stakeholders to prioritize and implement security controls, patches, and configuration improvements.
- Maintain robust reporting and ensure progress on remediation activities.
Requirements Must-Have Skills
- 5–8 years of experience in Application Security, Infrastructure Security, or Security Operations.
- Strong hands‑on experience with DAST, SAST, SCA tools
- Azure Security (Defender for Cloud, Entra ID, Sentinel)
- CI/CD security integrations
- Vulnerability management in cloud environments
- Solid understanding of security frameworks, best practices, and risk management.
ITC Infotech is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion, or sexual orientation. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. ITC infotech is committed to providing veteran employment opportunities to our service men and women.