Cloud Security Analyst II

CongaHouston, MA
Hybrid

About The Position

As a Cloud Security Analyst II at Conga, you will play a critical role in protecting our cloud ecosystem, applications, and services through vulnerability management, cloud security operations, automation, and emerging AI-enabled security capabilities. This role is designed for an early-career security professional who has already demonstrated hands-on experience through internships, co-ops, research projects, or practical security work. You'll move quickly beyond observation into ownership, helping manage real vulnerabilities, support security operations, automate workflows, and contribute to AI-driven security initiatives that improve efficiency and strengthen our security posture. Working as part of Conga's Security Enablement, Applications, and Services (SEAS) team, you'll partner closely with security engineers, platform teams, and business stakeholders to identify risks, improve visibility, and help secure critical cloud infrastructure and services. This is not simply a ticket-processing role. It's an opportunity to build foundational expertise in enterprise cloud security while helping shape the future of intelligent security operations through automation and agentic AI.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, Engineering, Information Technology, or a related field.
  • Experience through internships, co-ops, research assistantships, or hands-on projects involving security, cloud technologies, automation, or infrastructure.
  • Hands-on experience working with large language models, AI agents, prompting techniques, or tool/function-calling integrations.
  • Familiarity with at least one AI agent framework or protocol such as MCP, LangChain, LlamaIndex, AutoGen, CrewAI, or similar technologies.
  • Experience evaluating AI-generated outputs for accuracy, reliability, and business appropriateness.
  • Strong analytical and problem-solving skills with exceptional attention to detail.
  • Comfort working in Linux environments and using command-line tools.
  • Programming or scripting experience with Python preferred.
  • Understanding of networking fundamentals including DNS, HTTP/S, TLS, and firewalls.
  • Familiarity with Git and modern version control practices.
  • Strong written and verbal communication skills.
  • Demonstrated passion for cloud security and continuous learning.

Nice To Haves

  • Internship or project experience with AWS, Microsoft Azure, or Google Cloud Platform (GCP).
  • Master's degree (completed or in progress) in Cybersecurity, Information Technology, Engineering, Data Analytics, or a related field.
  • Experience deploying, monitoring, or maintaining production AI agents or automation workflows.
  • Exposure to retrieval-augmented generation (RAG), vector databases, agent observability, or monitoring platforms.
  • Familiarity with vulnerability management tools, CNAPP, CSPM, CWPP, or SIEM technologies.
  • Security certifications such as Security+, SC-900, AZ-900, CCSK, or related credentials.
  • Experience with Terraform, Kubernetes, CI/CD pipelines, or DevSecOps practices.
  • Understanding of data protection concepts including encryption, access management, and data loss prevention.
  • Experience integrating APIs across business and security platforms.
  • Familiarity with reporting, analytics, or data visualization tools.

Responsibilities

  • Run and maintain credentialed vulnerability scans across cloud, infrastructure, and containerized environments.
  • Validate findings, assess risk severity, and prioritize remediation efforts using industry frameworks such as CVSS and CISA Known Exploited Vulnerabilities (KEV).
  • Route findings to appropriate engineering teams and track remediation progress against established service level agreements.
  • Document vulnerabilities, business impact, and remediation guidance clearly for technical teams and auditors.
  • Support security exception and risk acceptance processes by gathering evidence and documenting compensating controls.
  • Monitor cloud environments for security configuration drift and compliance against internal security standards.
  • Support Infrastructure-as-Code security reviews for security-owned resources under the guidance of senior security engineers.
  • Assist with the administration and operation of security technologies, including CNAPP, WAF, DNS security, Zero Trust, and related services.
  • Evaluate cloud configurations using core security principles such as encryption, access controls, and data protection.
  • Apply threat modeling concepts to identify risks, detection opportunities, and response requirements for new infrastructure and services.
  • Develop automation scripts and workflows using Python, Bash, or similar technologies to reduce manual security work.
  • Leverage AI-assisted security tooling to improve vulnerability triage, analysis, and enrichment activities.
  • Contribute to the development of internal automation frameworks, reusable security workflows, and AI agent capabilities.
  • Design, build, deploy, and maintain AI agents that integrate with cloud platforms, ticketing systems, security tools, and operational processes.
  • Validate agent outputs and workflows to ensure reliability, accuracy, auditability, and business alignment.
  • Monitor and continuously improve deployed automation and AI solutions as systems and business processes evolve.
  • Build dashboards, reports, and security metrics that provide visibility into risks, remediation progress, and operational effectiveness.
  • Assist with security investigations by collecting logs, gathering evidence, documenting findings, and supporting forensic analysis efforts.
  • Collaborate with senior incident responders during active security events and post-incident reviews.
  • Contribute to security documentation and lessons learned that improve detection and response capabilities.
  • Partner with Engineering, Infrastructure, Cloud Operations, Compliance, and Product teams to improve security outcomes.
  • Support security initiatives that reduce risk while enabling business growth and operational efficiency.
  • Help improve security processes through data-driven insights and automation.
  • Promote a security-first mindset by providing clear guidance and actionable recommendations across the organization.

Benefits

  • medical and dental insurance
  • flexible work options
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service