Skip to main content
Back to jobs

Exposure Intelligence Analyst - Cloud Platforms (AWS / Azure / GCP / Cloud Posture)

External
Allstate logoAllstate · Remote
ContractRemoteToday
Application SecurityAWSAzureCloud SecurityComplianceGCP
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


Requirements

  • Cloud posture management and architecture security
  • Hands-on experience with cloud posture management, cloud IAM security, and cloud logging/telemetry.
  • Experience evaluating cloud attack paths and privilege escalation scenarios.
  • Scripting/query skills for validation (Python/KQL/SQL).
  • Cloud Application Security, Cloud Security, Cyber Incident Response, Exposure Management, IT Security Operations, Penetration Testing, Root Cause Analysis (RCA), Threat Assessment

Benefits

Compensation offered for this role is 100,000.00 - 170,500.00 annually and is based on experience and qualifications.The candidate(s) offered this position will be required to submit to a background investigation.Allstate generally does not sponsor individuals for employment-based visas for this position.

Additional Information

At Allstate, great things happen when our people work together to protect families and their belongings from life's uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers' evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. Job Description Exposure Intelligence Analyst - Cloud Platforms (AWS / Azure / GCP / Cloud Posture) Business Title: Lead Consultant- Threat & Incident Response Team and overall work scope The team operates within a newly established Exposure Management function in the broader cybersecurity organization, focused on modernizing how the enterprise identifies, prioritizes, and mitigates security vulnerabilities shifting from traditional patch approaches to a more strategic focus on true business risk and exploitability Individual Contributor/ Lead Consultant roles are designed to bring in deep domain expertise (network, endpoint, cloud, identity, infrastructure, etc.) to bridge the gap between security insights and practical remediation strategies The Exposure Intelligence Analyst - Cloud Platforms is the SME responsible for identifying and prioritizing exposure risk across cloud services (AWS, Azure, GCP), including cloud IAM, posture misconfigurations, insecure architectures, and cloud-native control gaps. The role applies CTEM principles to identify exploitable conditions and collaborate with cloud engineering teams to drive rapid and durable exposure reduction. What's exciting about this role: Help secure modern cloud environments by identifying exploitable misconfigurations and attack paths across AWS, Azure, and GCP, using AI‑enhanced insights to prioritize and remediate the exposures that matter most. Ideal Candidate: Experienced cloud security or engineering professional with deep expertise across AWS, Azure, or GCP environments. Has spent years building or securing cloud platforms and understands identity, misconfigurations, and cloud architecture risks, able to identify, validate, and reduce high-impact cloud exposures. Success Measures Reduced cloud misconfiguration-driven exposure and improved guardrail compliance. Faster closure of exploitable cloud attack paths. Improved signal quality and prioritization accuracy for cloud findings. Key Responsibilities (Core + Domain) Exposure Intelligence (Core) Correlate vulnerability and posture signals into actionable exposure intelligence. Identify attack paths spanning cloud control planes, identity privileges, and data access pathways. Create clear prioritization and remediation guidance; track closure outcomes. Cloud Platforms (Domain) Own SME coverage for cloud exposure: IAM misconfigurations, excessive privileges, insecure storage, network exposure, workload security, and posture drift. Identify systemic patterns: role sprawl, weak guardrails, misconfigured service endpoints, risky trust relationships, insecure defaults. Partner with cloud platform teams to validate fixes and reduce repeated exposure creation. Required Qualifications 3+ years in cloud security, cloud engineering, security operations, or exposure management. Experience with at least one major cloud provider (AWS/Azure/GCP) and cloud security fundamentals. Ability to translate technical cloud findings into business risk prioritization.


Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at Allstate? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect