Principal Cybersecurity Analyst
NextEra Energy Palm Beach Gardens, Florida, United States
Utilities · 5,001-10,000 employees
About the role
The role involves performing comprehensive penetration testing and red team operations to emulate adversary tactics against enterprise systems. You will also collaborate with internal teams to prioritize remediation, develop detection strategies, and automate security processes.
What they look for
Requirements
The position requires an experienced Offensive Security Analyst with strong hands-on technical skills and expertise in red team toolsets. Candidates must be proficient in conducting tactical offensive operations and developing custom tools for Windows environments.
Full description
Requisition ID: 97093
Florida Power & Light Company is the largest electric utility in the U.S., providing reliable energy to nearly 12 million Floridians. With one of the nation’s most fuel-efficient, cost-effective power generation fleets and industry-leading reliability, we’re redefining what’s possible in energy. Want to be part of something powerful? Join our outstanding team and help shape the future of energy.
Position Specific Description
NextEra Energy is seeking an experienced Offensive Security Analyst with exceptional hands-on technical skills and a strong background in utilizing red team toolsets. This role is crucial for conducting tactical offensive operations and adapting to evolving tools and methods. You will complement our existing team, recognized for their strategic planning and intelligence analysis capabilities, by providing practical, on-keyboard expertise in offensive security and threat emulation.
Job Duties & Responsibilities:
Penetration Testing: Perform comprehensive tests on enterprise systems, including on-premises and cloud environments (AWS/Azure).
Red Team Operations: Emulate adversary tactics to test organizational defenses, develop and use custom tools for Windows environments, and provide detailed post-exploitation reporting.
Collaboration & Coordination:
Work closely with the Vulnerability Management team to contextualize risks and prioritize remediation efforts.
Partner with the Threat Hunting Team to investigate signs of further exploitation following red team operations.
Participate in purple team exercises to enhance organizational detection and response capabilities.
Automation & Tool Development: Automate security tasks, manage product security testing, and create scripts or utilities to streamline repeatable processes.
Detection Strategies: Develop strategies to identify and respond to security threats using the kill chain model, leveraging both manual and automated approaches.
Similar roles
-
Senior Cyber Security Engineer
Westpac New Zealand
-
Associate - Cybersecurity
PwC Kuala Lumpur, Kuala Lumpur, Malaysia
-
Security Engineer (OAMD)
BeVera Solutions LLC Atlanta, Georgia, United States
-
Director, Application Security
Zeta Global United States · $275K–$315K/yr
-
Senior Security Engineer
Motive Toronto, Ontario, Canada · CA$146K–CA$184K/yr
-
SR Information Security Engineer
Mayo Clinic Rochester, Minnesota, United States · $134K–$195K/yr