What You Need To KnownnOpen the door to a groundbreaking tech career with an industry leader. Southern Glazer’s Wine & Spirits is North America’s preeminent wine and spirits distributor, as well as a family-owned, privately held company with a 50+ year legacy of success. To create a new era in alcohol beverage sales and service, we’re heavily invested in the most transformative new technologies – and the most brilliant tech professionals. Southern Glazer’s was named by Newsweek as a Most Loved Workplace and is included on the Forbes lists for Largest Private Companies and Best Employers for Diversity.nnAs a full-time employee, you can choose from a full menu of our Top Shelf Benefits, including comprehensive medical and prescription drug coverage, dental and vision plans, tax-saving Flexible Spending Accounts, disability coverage, life insurance plans, and a 401(k) plan. We also offer tuition reimbursement, a wellness program, parental leave, vacation accrual, paid sick leave, and more.nnWe offer continuous learning and career growth in a fast-paced environment where you are respected, your voice is heard, and technology is part of our strategy for success. If you’re looking to fill your glass with opportunity, come join our FAMILY.nnOverviewnnThe Cloud Security Analyst is responsible for supporting the security and improvement of cloud infrastructure, applications, and data. This role involves monitoring changes to existing cloud infrastructure to ensure the confidentiality, integrity, and availability of cloud resources while identifying vulnerabilities and mitigating risks. The analyst will work closely with cross-functional teams to embed security into cloud projects and address security challenges.nnSpecialized Skills and TechnologiesnnSolid knowledge of current and emerging technologiesnnProficient in monitoring tools, access control and threat detectionnnHands on management of a WAF in an enterprise environmentnnIn-depth understanding and extensive hands-on management of major cloud platforms such as Microsoft Azure, Amazon AWS, and Google Cloud PlatformnnWillingness to mentor, train, and share knowledge with peersnnExcellent teaching and problem solvingnnDeep understanding of security frameworks such as NIST, ISO 27001, etc.nnAn understanding of practices integrating security into the continuous integration and continuous deployment (CI/CD) pipeline.nnKnowledge of containerization technologies, such as Dockers and/or Kubernetes, and how to secure applications within those environmentsnnAble to perform incident response within cloud platformsnnAbility and desire to lead combined with the flexibility to share the duties of the technical teamnnPrimary ResponsibilitiesnnConducts assessments of all cloud environments to identify vulnerabilities and security risksnnMakes recommendations on where improvements can be made to continue strengthening our security posturennWorks with outside teams to develop cloud-specific security policies, procedures, and standardsnnMonitor and respond to security events related to cloud environmentsnnWorks with outside teams to assess third-party cloud service providers to ensure alignment with our security standardsnnCollaborates with cross-functional teams to integrate security into the CI/CD pipeline and ensure continuous security throughout the software development lifecyclennUtilize a Cloud Security Posture Management (CSPM) solution to monitor and manage the configuration of infrastructure-as-code (IaC) frameworks, ensuring strict adherence to established security standards and policiesnnRegularly review CSPM findings to identify and address security vulnerabilities proactivelynnProduces and maintains documentation of all cloud-related security controlsnnAnalyzes activities and documented resolutionsnnImplementing, managing, and maintaining a WAF to protect web applications from a variety of online threatsnnParticipates in Information Security projects and supports team efforts for day-to-day operationsnnRemains current on cloud-security trends while integrating best practices into our security strategynnCommunicates and acts as liaison with a variety of teamsnnServes as a subject matter expert inside of SGWS and assists with complex issues pertaining to cloud security as needednnOccasional after-hours participation may be required in the event of emergencies or critical situationsnnPreferred QualificationsnnBachelor’s DegreennActive CISSP or other relevant security-related certificationnnMinimum QualificationsnnBachelor’s Degreenn2 or more years of work experience in ITnn1 or more years of hands-on experience in developing and maintaining cloud environmentsnnRelevant industry experience with a technical backgroundnnAdaptability and ability to manage changennFamiliarity with cloud platforms such as AWS, Azure, or Google CloudnnAbility to assess security risks associated with cloud environmentsnnAbility to analyze complex security issues, troubleshoot, and develop solutionsnnSuperior interpersonal, communication and presentation skillsnnCritical, creative, and strategic thinkernnProblem SolvernnExcellent presentation and facilitation skillsnnExcellent customer service skills in all interactions with internal and external customers, including but not limited to partners from other divisions, vendors, and suppliers across all areas of the businessnnStrong planning and organizational skills to work in a fast-paced environment and manage multiple prioritiesnnAgile Delivery ValuesnnOpenness – Team and stakeholders agree to be open about all work and challengesnnCommitment – Personally commit to achieving the goals of the teamnnRespect – Respect your team members to be capable and independentnnCourage – You have courage to do the right thing and work on tough problemsnnFocus – Everyone focus on the work in the sprint and the goal of the scrum team. Rise and fall as a teamnnPhysical DemandsnnPhysical demands include a considerable amount of time sitting and typing/keyboarding, using a computer (e.g., keyboard, mouse, and monitor), or mobile devicennPhysical demands with activity or condition may occasionally include walking, bending, reaching, standing, squatting, and stoopingnnMay require occasional lifting/lowering, pushing, carrying, or pulling up to 20lbsnnEEO StatementnnSouthern Glazer's Wine and Spirits, an Affirmative Action/EEO employer, prohibits discrimination and harassment of any type and provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. SGWS complies with all federal, state and local laws concerning consideration of a qualified applicant's arrest and/or criminal conviction records. Southern Glazer's Wine and Spirits provides competitive compensation based on estimated performance level consistent with the past relevant experience, knowledge, skills, abilities and education of employees. Unless otherwise expressly stated, any pay ranges posted here are estimates from outside of Southern Glazer's Wine and Spirits and do not reflect Southern Glazer's pay bands or ranges.nnSouthern Glazer's Wine and Spirits provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.