Senior Cybersecurity Analyst
Juno Beach, FL, US, 33408
NextEra Energy
Requisition ID: 83778
Florida Power & Light Company is America’s largest electric company, providing clean, affordable, and reliable electricity to more than 12 million people in Florida. We operate one of the cleanest power generation fleets in the U.S. and our reliability is among the best in the nation. Our goal is to achieve Real Zero carbon emissions from our operations by 2045 by expanding our solar capacity, increasing battery storage and bringing new renewable energy opportunities to Florida, while improving customer affordability and reliability. Are you interested in becoming a game-changer in the energy industry? Join our world-class team today!
Position Specific Description
NextEra’s cyber risk team assesses third-party risk for IT/OT/CT procurements via our Governance, Risk, and Compliance (GRC) platform. Our mission is to deliver third-party cybersecurity risk analysis to business units (BUs) and enterprise customers. We are seeking a Senior Cybersecurity Analyst with a strong focus on Third-Party Risk Management (TPRM) to join our dynamic team.
The successful candidate will conduct comprehensive risk assessments, communicate risk remediation requirements, and ensure robust security practices with third-party vendors and partners. This position requires close collaboration with various departments, internal stakeholders, and external vendors to enhance our cybersecurity posture. The selected individual will identify and deploy IT technical controls to meet specific security requirements and contribute to building and maintaining processes and standards to ensure ongoing compliance with security requirements.
Highly Desired Qualifications:
- Extensive experience working with Governance, Risk, and Compliance (GRC) platforms.
- Proven track record of successfully assessing third-party risk in a large, complex organization.
- Experience with IT/OT/CT procurement processes and associated risk assessments.
- In-depth experience in cybersecurity risk evaluations for both new and existing technologies and services, while supporting various cybersecurity projects
- Strong communication abilities both written and verbal.
- Proficient process control experience – Six Sigma Yellow Belt
Job Overview
This job performs ongoing cybersecurity risk reviews for new and existing technologies and services and supports ongoing and new cybersecurity projects. Individuals develop requirements for and implement technical security projects and tools, as well as define the company’s cybersecurity policies and control framework. This position collaborates with the company’s IT department and business units to identify the need for, select, and deploy technical controls to meet specific security requirements. Employees in this role build processes and standards to ensure security requirements continue to be met.
Job Duties & Responsibilities
- Administers, operates and monitors NextEra Energy (NEE) information security sensors, logging, alerting and other detection mechanisms to identify and respond to threats
- Acts as subject matter expert for one or multiple assigned cybersecurity technology stacks (e.g., identity and access management, network intrusion detection and prevention, host based security tools)
- Collaborates with security architecture to identify, evaluate and recommend new security technologies for suitability within NEE’s environment and security posture
- Communicates ongoing cybersecurity activities, priorities and risk measurements or mitigations at multiple organizational levels
- Provides guidance for security activities and requirements in the system development life cycle (SDLC) and application development efforts. Participates in organizational projects, as required
- Performs other job-related duties as assigned
Required Qualifications
- High School Grad / GED
- Bachelor's or Equivalent Experience
- Experience: 4+ years
Preferred Qualifications
- Certified Information Systems Aud (CISA) certification
NextEra Energy offers a wide range of benefits to support our employees and their eligible family members. Click here to learn more.
Employee Group: Exempt
Employee Type: Full Time
Job Category: Information Technology
Organization: Florida Power & Light Company
Relocation Provided: No
NextEra Energy is an Equal Opportunity Employer. Qualified applicants are considered for employment without regard to race, color, age, national origin, religion, marital status, sex, sexual orientation, gender identity, gender expression, genetics, disability, protected veteran status or any other basis prohibited by law. We are committed to a diverse and inclusive workplace.
NextEra Energy provides reasonable accommodation in its application and selection process for qualified individuals, including accommodations related to compliance with conditional job offer requirements, consistent with federal, state, and local laws. Supporting medical or religious documentation will be required where applicable and permitted by applicable law. To request a reasonable accommodation, please send an e-mail to recruiting-coordinator.sharedmailbox@nexteraenergy.com, providing your name, telephone number and the best time for us to reach you. Alternatively, you may call 1-844-694-4748. Please do not use this line to inquire about your application status.
NextEra Energy will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.
NextEra Energy does not accept any unsolicited resumes or referrals from any third-party recruiting firms or agencies. Please see our policy for more information.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: C CISA Compliance Governance IAM Intrusion detection Risk analysis Risk assessment Risk management SDLC
Perks/benefits: Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.