NextEra Energy

Principal Cybersecurity Analyst

NextEra Energy Palm Beach Gardens, Florida, United States

Utilities · 5,001-10,000 employees

Yesterday Closes in 7d
security Senior (5-10 yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The role involves performing comprehensive penetration testing and red team operations to emulate adversary tactics against enterprise systems. You will also collaborate with internal teams to prioritize remediation, develop detection strategies, and automate security processes.

What they look for

Penetration Testing Red Team Operations Offensive Security Threat Emulation Vulnerability Management Threat Hunting Purple Team Exercises Automation Scripting AWS Azure Windows Environment Kill Chain Model Post-exploitation Reporting Security Testing

Requirements

The position requires an experienced Offensive Security Analyst with strong hands-on technical skills and expertise in red team toolsets. Candidates must be proficient in conducting tactical offensive operations and developing custom tools for Windows environments.

Full description

Requisition ID: 97093

Florida Power & Light Company is the largest electric utility in the U.S., providing reliable energy to nearly 12 million Floridians. With one of the nation’s most fuel-efficient, cost-effective power generation fleets and industry-leading reliability, we’re redefining what’s possible in energy. Want to be part of something powerful? Join our outstanding team and help shape the future of energy.

Position Specific Description

NextEra Energy is seeking an experienced Offensive Security Analyst with exceptional hands-on technical skills and a strong background in utilizing red team toolsets. This role is crucial for conducting tactical offensive operations and adapting to evolving tools and methods. You will complement our existing team, recognized for their strategic planning and intelligence analysis capabilities, by providing practical, on-keyboard expertise in offensive security and threat emulation.

Job Duties & Responsibilities:

Penetration Testing: Perform comprehensive tests on enterprise systems, including on-premises and cloud environments (AWS/Azure).

Red Team Operations: Emulate adversary tactics to test organizational defenses, develop and use custom tools for Windows environments, and provide detailed post-exploitation reporting.

Collaboration & Coordination:

Work closely with the Vulnerability Management team to contextualize risks and prioritize remediation efforts.

Partner with the Threat Hunting Team to investigate signs of further exploitation following red team operations.

Participate in purple team exercises to enhance organizational detection and response capabilities.

Automation & Tool Development: Automate security tasks, manage product security testing, and create scripts or utilities to streamline repeatable processes.

Detection Strategies: Develop strategies to identify and respond to security threats using the kill chain model, leveraging both manual and automated approaches.

Similar roles