Senior Cloud Security Operations Analyst
Listed on 2026-03-05
-
IT/Tech
Cybersecurity, Security Manager, Network Security, Data Security
Pega is The Enterprise Transformation Company that helps organizations build for change with enterprise AI decisioning and workflow automation. We offer a commercial SaaS version of our industry-leading platform to our global clients. Pega was recently recognized as a Top 10 Tech Winner For The AI Revolution and has joined the S&P Mid Cap 400. Our Cloud Security Operations Center (CSOC) protects Pega’s commercial cloud assets and offerings by deterring, detecting, denying, delaying, and defending against internal and external security threats.
PictureYourself at Pega
As a Senior Cloud Security Operations Analyst, you will play a critical role ensuring the confidentiality, integrity, and availability of Pega’s commercial cloud infrastructure and assets. You will continuously monitor and protect all global cloud security operations, actively participate in incident response, and help develop processes that drive proactive, automated detection and incident response tactics to support quick resolution of security events.
You will collaborate with cross‑functional teams—including security analysts, threat detection engineers, vulnerability analysts, security engineers, system administrators, and developers—to identify potential security risks and vulnerabilities within our cloud environment. Your efforts will directly impact the security and trust our clients place in us.
TransparencyThis role is subject to additional regulatory requirements in the UK, including a potential need for a specific clearance.
Daily- Perform security monitoring of Pega Cloud commercial environments using multiple security tools/dashboards including our SIEM platform.
- Investigate indicators of compromise (IOCs) and protect Pega Cloud and our clients from unauthorized or malicious activity.
- Actively contribute to incident response activities – identify, contain, eradicate, recover, and learn.
- Contribute to SOPs and policy development for CSOC detection and analysis tools and methodologies.
- Assist in developing playbooks for analysts to investigate high‑confidence and anomalous activity.
- Perform threat hunts for adversarial activities within Pega Cloud to identify evidence of attacker presence not detected by existing mechanisms.
- Assist the threat detection team in developing high‑confidence Splunk notables focused on known and emerging threats.
- Create dashboards, reports, and other content to maintain and improve situational awareness of Pega Cloud’s security posture.
- Enhance security incident response plans (IRPs), conduct thorough investigations, and recommend remediation measures to prevent future incidents.
You are curious, tenacious, and experienced in the security trenches with a deep understanding of how an efficient security operations center operates. You have conducted in-depth analyses of security events/alerts, contributed to incident response, and developed new detection and mitigation methods, bringing a wealth of cloud security experience to Pega Cloud.
Accolades may include:
- SANS, Offensive Security, or other top‑tier industry‑recognized technical security certifications focused on analysis, detection, and/or incident response.
- Industry recognition for identifying security gaps to secure applications or products.
- 4+ years of industry‑relevant experience with cloud architecture, infrastructure, and resources, and associated services, threats, and mitigations.
- 3+ years in operational SIEM roles, focusing on analysis, investigations, and incident response, especially with Splunk Enterprise Security (ES) and Google Chronicle/Sec Ops.
- 3+ years in operational EDR/XDR platforms and related analysis and response techniques.
- 2+ years of operational cloud security experience—preferably AWS and/or GCP—including analysis of cloud logs such as Cloud Trail, Cloud Audit, Guard Duty, Security Command Center, VPCFlow, and WAF logs.
- Strong knowledge of UK cybersecurity and data protection laws and regulations (e.g., GDPR, UKCE).
- Solid foundational understanding of computer, OS (Linux/Windows), network architecture concepts, and related exploits/attacks.
- Excellent written and verbal communication…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: