Principal Cybersecurity Analyst
Juno Beach, FL, US, 33408
NextEra Energy
Requisition ID: 87417
Florida Power & Light Company is the largest electric utility in the U.S., delivering clean, affordable, and reliable electricity to approximately 12 million Floridians. With one of the nation’s cleanest power generation fleets and top-tier reliability, we are setting new standards in the energy industry. Ready to make an impact? Join our exceptional team today and help shape the future of energy!
Position Specific Description
We are seeking a Principal IT Business Analyst to join our team of World-Class Cyber professionals. This specific position resides in the Identity & Access Management (IAM) team, a functional team under the Cyber Identity and Architecture (CIA) group within Information Technology. The CIA group is responsible for cybersecurity and business unit technology strategy and introduction, while managing NextEra Energy’s core identity, access and data platforms.
Key Responsibilities:
Be the primary point of contact for gathering business requirement from business stakeholders, making a tangible impact on our operations.
Develop and maintain functional requirements, customized business processes and best practices to ensure consistency and efficiency. Prioritize, update & manage functional requirements, delivering timely and accurate insights that drive business decisions.
Responsible for creating and executing the test plan, test scenarios & scripts testing and processes to continually improve our capabilities.
Responsible for planning and executing regression testing, connectivity testing and bug testing related to product version upgrades & capability enhancements.
Execute test scenarios in QA environment, providing actionable insights to the development team that enhance customer experiences.
Collaborate with business analyst teams, testers & interfacing application SMEs for planning, documenting test results, ensuring comprehensive and accurate test results.
Communicate effectively with stakeholders throughout the request lifecycle, ensuring clarity and transparency.
Participate in all the prescribed Safe Agile Ceremonies – aligning to the Project Management Office.
Take on additional responsibilities as needed to support the team's objectives and business goals, contributing to a culture of continuous improvement.
Preferred Qualifications:
Experience with functional implementation and testing of SailPoint IIQ 8.3 (on prem) or higher version of the product.
Experience with creating and executing test strategy, test scenarios, test scripts & process flows for IAM functions. Experience with testing tools for automating regression testing.
Familiar with the CIP-004 standard for access management
Agile Product Planning Experience
Experience working with testing & troubleshooting application connectors and API
Job Overview
This job performs ongoing cybersecurity risk reviews for new and existing technologies and services and supports ongoing and new cybersecurity projects. Individuals develop requirements for and implement technical security projects and tools, as well as define the company’s cybersecurity policies and control framework. This position collaborates with the company’s IT department and business units to identify the need for, select, and deploy technical controls to meet specific security requirements. Employees in this role build processes and standards to ensure security requirements continue to be met.
Job Duties & Responsibilities
- Administers, operates and monitors NextEra Energy (NEE) information security sensors, logging, alerting and other detection mechanisms to identify and respond to threats
- Acts as subject matter expert for one or multiple assigned cybersecurity technology stacks (e.g., identity and access management, network intrusion detection and prevention, host based security tools)
- Collaborates with security architecture to identify, evaluate and recommend new security technologies for suitability within NEE’s environment and security posture
- Communicates ongoing cybersecurity activities, priorities and risk measurements or mitigations at multiple organizational levels
- Provides guidance for security activities and requirements in the system development life cycle (SDLC) and application development efforts. Participates in organizational projects, as required
- Performs other job-related duties as assigned
Required Qualifications
- High School Grad / GED
- Bachelor’s or Equivalent Experience
- Experience: 7+ years
Preferred Qualifications
- Certified Information Systems Aud (CISA) certification
NextEra Energy offers a wide range of benefits to support our employees and their eligible family members. Click here to learn more.
Employee Group: Exempt
Employee Type: Full Time
Job Category: Information Technology
Organization: Florida Power & Light Company
Relocation Provided: Yes, if applicable
NextEra Energy is an Equal Opportunity Employer. Qualified applicants are considered for employment without regard to race, color, age, national origin, religion, marital status, sex, sexual orientation, gender identity, gender expression, genetics, disability, protected veteran status or any other basis prohibited by law.
NextEra Energy provides reasonable accommodation in its application and selection process for qualified individuals, including accommodations related to compliance with conditional job offer requirements, consistent with federal, state, and local laws. Supporting medical or religious documentation will be required where applicable and permitted by applicable law. To request a reasonable accommodation, please send an e-mail to recruiting-coordinator.sharedmailbox@nexteraenergy.com, providing your name, telephone number and the best time for us to reach you. Alternatively, you may call 1-844-694-4748. Please do not use this line to inquire about your application status.
NextEra Energy will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.
NextEra Energy does not accept any unsolicited resumes or referrals from any third-party recruiting firms or agencies. Please see our policy for more information.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile APIs C CIA CISA Compliance IAM Intrusion detection SailPoint SDLC Strategy
Perks/benefits: Relocation support
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.