Principal Cybersecurity Analyst
NextEra Energy Palm Beach Gardens, Florida, United States
Utilities · 5,001-10,000 employees
About the role
The role involves performing comprehensive penetration testing and red team operations to emulate adversary tactics against enterprise systems. You will also collaborate with internal teams to prioritize remediation efforts and develop automated security strategies.
What they look for
Requirements
The position requires an experienced professional with strong hands-on technical skills in offensive security and red team toolsets. Candidates must be capable of conducting tactical operations and developing custom tools for Windows environments.
Full description
Requisition ID: 97093
Florida Power & Light Company is the largest electric utility in the U.S., providing reliable energy to nearly 12 million Floridians. With one of the nation’s most fuel-efficient, cost-effective power generation fleets and industry-leading reliability, we’re redefining what’s possible in energy. Want to be part of something powerful? Join our outstanding team and help shape the future of energy.
Position Specific Description
NextEra Energy is seeking an experienced Offensive Security Analyst with exceptional hands-on technical skills and a strong background in utilizing red team toolsets. This role is crucial for conducting tactical offensive operations and adapting to evolving tools and methods. You will complement our existing team, recognized for their strategic planning and intelligence analysis capabilities, by providing practical, on-keyboard expertise in offensive security and threat emulation.
Job Duties & Responsibilities:
Penetration Testing: Perform comprehensive tests on enterprise systems, including on-premises and cloud environments (AWS/Azure).
Red Team Operations: Emulate adversary tactics to test organizational defenses, develop and use custom tools for Windows environments, and provide detailed post-exploitation reporting.
Collaboration & Coordination:
Work closely with the Vulnerability Management team to contextualize risks and prioritize remediation efforts.
Partner with the Threat Hunting Team to investigate signs of further exploitation following red team operations.
Participate in purple team exercises to enhance organizational detection and response capabilities.
Automation & Tool Development: Automate security tasks, manage product security testing, and create scripts or utilities to streamline repeatable processes.
Detection Strategies: Develop strategies to identify and respond to security threats using the kill chain model, leveraging both manual and automated approaches.
Similar roles
-
Staff Security Engineer
Robots and Pencils United States · $116K–$160K/yr
-
Cybersecurity Awareness Volunteer
CyberUp St. Louis, Missouri, United States
-
Senior Security Engineer
Latitude IT Solutions $119K–$137K/yr
-
Security Engineer
Latitude IT Solutions $102K–$118K/yr
-
System Security Engineer, AVP
State Street Bengaluru, Karnataka, India
-
2027 Internal Audit - Information Technology & Cybersecurity Summer Internship
Brown Brothers Harriman New York, New York, United States · $52K/yr