Senior Cyber Security Analyst – Cloud, DevSecOps & AI Security
Listed on 2026-07-24
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Senior Cyber Security Analyst – Cloud, Dev Sec Ops & AI Security
ISO New England Inc., One Sullivan Road, Holyoke, Massachusetts, United States of America
Job DescriptionISO New England is the independent system operator responsible for ensuring the safe and reliable flow of electricity in our region and planning for the future of the electric grid. We are at the forefront of New England’s ongoing transition to clean energy.
ISO New England is seeking an experienced Cyber Security Analyst to support and enhance enterprise cloud, infrastructure, AI, and Dev Sec Ops security initiatives. This role is responsible for proactively identifying vulnerabilities, compliance gaps, misconfigurations, and security risks across enterprise systems, cloud platforms, AI/ML environments, CI/CD pipelines, and regulated CIP environments.
The ideal candidate will have strong experience in cloud security, vulnerability management, Dev Sec Ops , AI security, and security compliance, with the ability to collaborate across technical teams to implement and maintain enterprise security standards.
What we offer you:
- A stable, mission-driven workplace where your impact truly matters
- A highly engaged work environment that values inclusion, collaboration, and employee safety and wellbeing
- Competitive compensation with a base salary + performance bonus
- Robust benefits package, including:
- Enhanced 401(k) and financial planning support
- Tuition reimbursement and professional development
- Wellness programs, including an onsite gym
- Employee Business Networks
- Free coffee at our onsite café
- Hybrid work environment (3 days/week onsite)
- Distance-based relocation assistance available
- 5/6 person paid on-call rotation
How you will make an Impact
- Conduct cloud security assessments across AWS and Azure environments, including CSPM, CIEM, IAM, and container security reviews.
- Integrate and support security controls within CI/CD pipelines and Dev Sec Ops environments.
- Assess and secure AI/ML systems, generative AI applications, and AI-enabled business solutions throughout their lifecycle.
- Evaluate risks associated with AI model usage, training data, third-party AI services, and Large Language Model (LLM) integrations.
- Implement AI governance controls to protect sensitive data and prevent unauthorized disclosure through AI platforms.
- Develop security guardrails for AI adoption, including data classification, access controls, prompt security, and responsible AI usage.
- Perform AI threat modeling to identify risks such as prompt injection, data poisoning, model manipulation, model theft, and insecure AI integrations.
- Perform vulnerability assessments, configuration reviews, and remediation tracking across enterprise and CIP systems.
- Review and validate baseline configurations, logging requirements, and compliance controls.
- Evaluate network topology and infrastructure changes to determine CIP impact and SOC visibility requirements.
- Partner with application development, cloud platform engineering, infrastructure, enterprise architecture, IAM, network, SOC, and business teams to integrate security into system design, projects, and operational processes.
- Support phishing simulations, security awareness initiatives, AI security awareness training, and audit evidence collection.
- Provide security recommendations and risk mitigation strategies for cloud, AI, and enterprise environments.
- Support and maintain enterprise security platforms including CNAPP, EDR, vulnerability management, SIEM, DSPM, and cloud security monitoring tools.
- Monitor evolving AI security risks, industry standards, and regulatory requirements.
What we are looking for
- Experience in cybersecurity, cloud security, security engineering, or AI security roles.
- Experience with AWS and/or Azure cloud platforms.
- Experience with container orchestration technologies including Amazon ECS and Amazon EKS.
- Experience implementing security controls within CI/CD and Dev Sec Ops environments.
- Knowledge of AI security concepts, including securing generative AI applications, LLMs, AI governance, and AI risk management.
- Familiarity with AI threats such as prompt injection, data leakage, model poisoning, model theft, and insecure AI…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).