Talent.com
Cyber Security Analyst Progression

Cyber Security Analyst Progression

APN Software Services IncTampa, Florida, USA
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Helpful key words : ICS / DCS / Scada

  • Check updates and install packages work w / plant maintenance

Diff network within power plant

  • Vulnerability - HP patching applicable to laptop systems
  • database outdated possibly - update and maintain
  • documentation updating OT standards set of rules to comply with
  • 4 major controls systems used / security platforms

    Vendor side (tool / asset deploy updates) :

  • Emerson ovation
  • GE mark 60
  • ABB
  • Allen Bradley
  • Cyber Security Analyst Progression

    Cyber Security Analyst Level 1 :

    POSITION CONCEPT :

    The Cyber Security Analyst Operational Technology (OT) is responsible for maintaining the security and integrity of operational technology systems through routine cybersecurity maintenance activities. Manages and continuously improves the asset inventory database to ensure accurate visibility and tracking of the operational technology. Supports the development and implementation of the organizations OT Cybersecurity program and framework aligning activities with industry standards and regulatory requirements. Collaboration with cross-functional teams ensures consistent application of security controls and continuous improvement of cybersecurity posture.

    Cyber Security Analyst Sr Level 2 :

    POSITION CONCEPT :

    The Cyber Security Analyst Sr is responsible for addressing Operation Technology (OT) vulnerabilities by taking the appropriate corrective action or following the appropriate escalation procedures assessing threat landscape confirming for secure configuration of Tampa Electrics OT assets identifying vulnerabilities applicable to the OT components and developing the remediation plans. Develop cybersecurity maintenance procedures and enforce OT cybersecurity framework and standards evaluate IT related needs of OT environment and team members and identify cybersecurity awareness gaps. Evaluate OT cyber assets and assign criticality rating to cyber assets and develop remediation plan for gaps in compliance of the systems with the OT cybersecurity program. Has increased responsibilities in security intelligence monitoring incident response and development of cybersecurity maintenance procedures. May serve as a project lead and mentor Cyber Security Analyst. Works under general supervision.

    Cyber Security Analyst Lead Level 3 :

    POSITION CONCEPT :

    The Cyber Security Analyst Lead is responsible for maintaining and improving OT cybersecurity framework and standards reviewing cybersecurity maintenance procedures and threat landscape assessment implementing vulnerability management technologies and vulnerability remediation plans. Lead will facilitate asset criticality evaluation process maintain cybersecurity maintenance schedule and train staff. Lead will maintain and improve the OT cybersecurity program ensuring its alignment with the latest industry standards (NERC NIST) build cross departmental ITOT collaboration educate team members the latest cybersecurity industry trends. Has increased responsibilities in evaluating industry standards and adopting them into cybersecurity controls. May serve as a project lead and mentor to other department team members.

    Level 1 :

    DUTIES AND RESPONSIBILITIES :

    Identifies cybers assets examines and extracts asset configuration updates the OT cyber asset database to protect operational technology. Installs security patches updates antivirus definitions and creates system backups. Collects maintains updates baselines of the operational systems updates cybersecurity SharePoint site for stakeholder engagement.

    Reviews the releases of new CVEs from external sources for applicability to operational assets regularly.

    Assists OT team l with IT-related work : software and hardware of HMIs and network appliances remote connectivity.

    Level 2 :

    DUTIES AND RESPONSIBILITIES :

    Evaluates network architecture system configuration and external connection layout to ensure compliance of operational technology systems with cybersecurity program. Reviews vendor manuals training materials industry standards and develops cybersecurity maintenance procedures.

    Provides activities planning guidance feedback on work completed and training to Cybersecurity Analysts.

    Evaluates new CVEs for applicability to OT cyber assets.

    Level 3 :

    DUTIES AND RESPONSIBILITIES :

    Translate all applicable standards (NERC CIP NIST CSF NIST 800-53 etc.) into appropriate systemic and procedural solutions. Review revise and update Energy Supplys operational technology cybersecurity standards and procedures.

    Evaluate the Energy Supplys operational technology systems and coordinate necessary actions to maintain compliance with applicable internal and regulatory standards.

    Develop management responses to internal and external government and regulatory audits and data requests with respective management and team members.

    Review operational technology cyber asset management process. Train and educate team members and facilitate ITOT collaboration.

    EDUCATION : Level 1 2 and 3

    Required : High School Diploma or equivalent.

    Preferred : Bachelors Degree in Computer Science Information Systems or other IT related discipline.

    LISCENSES / CERTIFICATIONS : Level 1 2 and 3

    Required : From the list of certification vendors one related Information Security professional certification or ability to obtain via self-study within one year of hire date

    (ex : CISCO (ISC)2 GIAC ISA ISACA CompTIA e-Council etc.).

    Preferred : three or more of the following or similar Information Security professional certifications (ex : ACE CCE CAP CEH CCNA CCNP CISA CISM CISSP CRISC EnCE GCCC GCDA GCED GCFA GCFE GCIA GCIH GCWN GICSP GMON GNFA GPEN GPPA GREM GWAPT GXPN OSCP SSCP).

    EXPERIENCE :

    Level 1 : Required : 5 years of related Cyber Security industrial automation IT OT or Technical (hands-on networking telecommunications radios satellites communications etc. hardware software) experience.

    May consider 2 years related experience with an Associates Degree or 1 year related experience with a Bachelors Degree in Computer Engineering / Science Cybersecurity Information Systems or other IT related discipline.

    Level 2 : Required : 6 years of related Cyber Security industrial automation IT OT or Technical (hands-on networking telecommunications radios satellites communications etc. hardware software) experience.

    May consider 4 years related experience with an Associates Degree or 3 year related experience with a Bachelors Degree in Computer Science Information Systems or other IT related discipline.

    Level 3 : Required : 8 years of related Cyber Security industrial automation IT OT or Technical (hands-on networking telecommunications radios satellites communications etc. hardware software) experience.

    May consider 4 years related experience with an Associates Degree or 2 years related experience with a Bachelors Degree in Computer Science Information Systems or other IT related discipline.

    Level 1 :

    KNOWLEDGE / SKILLS / ABILITIES :

    Required :

    Basic knowledge of industrial automation (ABB Allen Bradley Emerson GE Siemens) or basic knowledge of major operating system security (Windows Mac OS Linux / Unix) endpoint server and network security.

    Basic knowledge of major security systems and functions for incident response monitoring and forensic activities : Firewalls IDS / IPS Antivirus / Antimalware SIEM Incident Response Threat Prevention Web / Application Control Filtering Email Filtering NetFlow Analysis Endpoint Security Configuration and Change Management File Integrity Monitoring and DLP.

    Basic knowledge of log network and system forensic investigation techniques.

    Basic working knowledge of networking protocols and systems administration.

    Basic working knowledge of identifying and capturing indicators of compromise and methods for detecting them within incidents.

    Basic working knowledge with packet analysis and malware analysis.

    Basic working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP SOX and PCI.

    Good analytical and risk assessment skills and strong listening written and computer communication skills for reporting and auditing purposes.

    Preferred :

    Performing cybersecurity maintenance activities : applying patches updating antivirus signatures creating system network appliances

    Troubleshooting network communications

    Supporting compliance audits

    Designing implementing and supporting industrial automation systems

    Designing and implementing a standard network architecture

    Level 2 :

    KNOWLEDGE / SKILLS / ABILITIES :

    Required :

    Advanced working knowledge of major operating system security (Windows Mac OS Linux / Unix) web server security and network security.

    Advanced working knowledge of major security systems and functions for incident response monitoring and forensic activities : Firewalls IDS / IPS Antivirus / Antimalware SIEM Incident Response Threat Prevention Web / Application Control Filtering Email Filtering NetFlow Analysis Endpoint Security Configuration and Change Management File Integrity Monitoring and DLP.

    Advanced working knowledge of log network and system forensic investigation techniques.

    Advanced working knowledge of networking protocols and systems administration.

    Advanced working knowledge of identifying and capturing indicators of compromise and methods for detecting them within incidents.

    Advanced working knowledge with packet analysis and malware analysis.

    Advanced working knowledge (hands-on experience) of scripting in languages such as Python Bash or PowerShell.

    Advanced working knowledge of penetration testing technologies and procedures.

    Advanced working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP SOX and PCI.

    Strong analytical and risk assessment skills as well as strong listening written and computer communication skills for reporting and auditing purposes.

    Level 3 :

    KNOWLEDGE / SKILLS / ABILITIES :

    Required :

    Developing and implementing OT Cybersecurity program.

    Evaluating and adopting cybersecurity controls to the OT environment.

    Thorough working knowledge of major operating system security (Windows Mac OS Linux / Unix) web server security and network security.

    Thorough working knowledge of major security systems and functions : Firewalls IDS / IPS Antivirus / Antimalware SIEM Incident Response Threat Prevention Web / Application Control Filtering Email Filtering NetFlow Analysis Endpoint Security Configuration and Change Management File Integrity Monitoring and DLP.

    Expert working knowledge of log network and system forensic investigation techniques.

    Expert working knowledge of networking protocols and systems administration.

    Thorough working knowledge of identifying and capturing indicators of compromise and methods for detecting them within incidents.

    Expert working knowledge with packet analysis and malware analysis.

    Expert working knowledge (hands-on experience) of scripting in languages such as Python Bash or PowerShell.

    Expert working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP SOX and PCI.

    Strong analytical and risk assessment skills as well as strong listening written and computer communication skills for reporting and auditing purposes.

    Preferred :

    Thorough working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP SOX and PCI.

    Expert working knowledge of reverse engineering malware.

    Key Skills

    Council,Downstream,Laboratory,Bakery,Corporate Development

    Employment Type : Full-time

    Experience : years

    Vacancy : 1

    serp_jobs.job_alerts.create_a_job

    Cyber Security Analyst • Tampa, Florida, USA

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Security Analyst

    Security Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Analyst.Key Responsibilities Prepares documentation such as System Security Plans (SSPs) and Risk Assessment Reports in compliance with NIST standards Impleme...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Cyber Risk Analyst

    Senior Cyber Risk Analyst

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Cyber Risk Analyst to provide cybersecurity risk management and expert support across the organization. Key Responsibilities Lead and execute cybersecurity risk a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Application Security Analyst

    Application Security Analyst

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for an Application Security Analyst to provide security guidance to application development teams.Key Responsibilities Provide application security guidance and educate devel...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    IT Security Compliance Analyst

    IT Security Compliance Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT Security and Compliance Analyst responsible for managing IT security and privacy compliance requests. Key Responsibilities Manage customer security questionnaires, c...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Threat Analyst

    Threat Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Threat Analyst.Key Responsibilities Monitor, investigate, and respond to alerts generated by security systems Lead and mentor Tier I Analysts through escalated cases ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Security Analyst

    Senior Security Analyst

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Analyst Sr.Key Responsibilities Conduct penetration testing to identify system vulnerabilities Monitor and analyze incidents to protect against malicious acti...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Compliance Analyst

    Security Compliance Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Governance Risk & Compliance (GRC) Analyst.Key Responsibilities Manage and implement complex controls frameworks for large systems, including Cloud infrastruct...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior SOC Analyst

    Senior SOC Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    Key Responsibilities Oversee the monitoring of security alerts and events from various security tools Lead investigations of security incidents and develop remediation strategies Collaborate wi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cyber Security Manager

    Cyber Security Manager

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Security Manager (Remote).Key Responsibilities Manage the Information Security Program, overseeing the evaluation, development, and implementation of security ini...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Application Analyst II - Cerner Security

    Application Analyst II - Cerner Security

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for an Application Analyst II - Cerner Core Security.Key Responsibilities Design, build, document, test, and troubleshoot Core Security components and applications Provide s...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Governance Risk Compliance Analyst

    Governance Risk Compliance Analyst

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Governance Risk and Compliance (GRC) Analyst.Key Responsibilities Enforce cybersecurity Process Risk and Control frameworks in line with applicable laws and standards ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Technology Analyst

    Senior Technology Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Technology Analyst - Audit and Automation.Key Responsibilities Execute technology-focused audits in cybersecurity, IT infrastructure, software development, and d...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Campus Security Analyst

    Campus Security Analyst

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Campus Security Analyst to monitor, respond to, and mitigate security threats in a Managed Service Provider environment. Key Responsibilities Monitor for security breach...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    IT Security Analyst

    IT Security Analyst

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT Security Analyst to ensure the confidentiality, integrity, and availability of its systems. Key Responsibilities Participate in the planning and design of enterprise...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Security Business Systems Analyst

    Security Business Systems Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Business Systems Analyst (Security) to support business objectives and optimize security systems. Key Responsibilities Gather and analyze business requirements, and assi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    IT Security Operations Analyst

    IT Security Operations Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Analyst, IT Security Operations.Key Responsibilities Investigate and respond to security alerts and incidents, performing root cause analysis Lead and support i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Information Security Engagement Lead

    Information Security Engagement Lead

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Engagement Lead for the Americas.Key Responsibilities Partner with business leaders to integrate cybersecurity into transformation initiatives Co...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Senior AML Analyst

    Senior AML Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior AML Analyst (Transaction Monitoring) to join their Compliance and Risk team.Key Responsibilities : Monitor and review financial transactions for suspicious or unu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Information Security Analyst

    Information Security Analyst

    VirtualVocationsSaint Petersburg, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Analyst to expand security operations and capabilities.Key Responsibilities : Develop, implement, and monitor the information security program for ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    SAP Application Security Analyst

    SAP Application Security Analyst

    VirtualVocationsTampa, Florida, United States
    serp_jobs.job_card.full_time
    A company is looking for an SAP Application Security Analyst to support a high-impact federal project.Key Responsibilities Manage user access requests, role assignments, and troubleshoot security...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days