Exposure Intelligence Analyst – Cloud Platforms; AWS/Azure/GCP/Cloud Posture
South Naperville Area, Will County, Illinois, 60564, USA
Listed on 2026-07-03
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations
Job Title
Exposure Intelligence Analyst – Cloud Platforms (AWS / Azure / GCP / Cloud Posture)
Job DescriptionLead consultant in the Exposure Management function of the cybersecurity organization, focused on modernizing how the enterprise identifies, prioritizes, and mitigates security vulnerabilities by moving from patch-based approaches to a business‑risk–centric focus on exploitability. The analyst serves as the subject‑matter expert for identifying and prioritizing exposure risk across cloud services (AWS, Azure, GCP), including IAM, posture misconfigurations, insecure architectures, and cloud‑native control gaps.
Key Responsibilities- Correlate vulnerability and posture signals into actionable exposure intelligence (Exposure Intelligence).
- Identify attack paths spanning cloud control planes, identity privileges, and data access pathways.
- Create clear prioritization and remediation guidance and track closure outcomes.
- Own SME coverage for cloud exposure: IAM misconfigurations, excessive privileges, insecure storage, network exposure, workload security, and posture drift (Cloud Platforms).
- Identify systemic patterns such as role sprawl, weak guardrails, misconfigured service endpoints, risky trust relationships, and insecure defaults.
- Partner with cloud platform teams to validate fixes and reduce repeated exposure creation.
- 3+ years in cloud security, cloud engineering, security operations, or exposure management.
- Experience with at least one major cloud provider (AWS, Azure, or GCP) and cloud security fundamentals.
- Ability to translate technical cloud findings into business‑risk prioritization.
- Hands‑on experience with cloud posture management, cloud IAM security, and cloud logging/telemetry.
- Experience evaluating cloud attack paths and privilege escalation scenarios.
- Proficiency in scripting/query languages (Python, KQL, SQL) for validation.
Annual salary range: $ - $, based on experience and qualifications.
Additional InformationBackground investigation required for all selected candidates.
EEO and Employment PoliciesAllstate generally does not sponsor individuals for employment‑based visas for this position. Effective July1,2014, under Indiana House Enrolled Act (HEA)1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a reserve component.
The Company’s policy prohibits discriminatory action based on ancestry, age, color, disability, genetic information, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, military or veteran status, national origin, race, religion, or sex, and applies to all aspects of the employment relationship.
Allstate provides a comprehensive technology setup for remote work. Employees eligible to work from home receive a monthly connectivity reimbursement to help offset internet costs. Reliable high‑speed internet is required for remote work.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).