ERCOT

Cyber Security Analyst

ERCOT$90K — $124K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Cyber Security, Computer Science, MIS, or related discipline (preferred)
  • 2 years of experience in IT analysis or IT security administration for Level 2; 5 years for Senior Level
  • Knowledge of multidisciplinary security concepts and practices
  • Certifications: CISSP preferred, with Security+, GSEC, GCIH, GCIA, or GREM as alternatives
  • Familiarity with security software solutions and IT incident response

Responsibilities

  • Implement, monitor, and maintain preventive and detective controls
  • Analyze computing resources for evidence of compromise and report on security incidents
  • Develop and implement mitigation strategies to reduce threats
  • Research and test new security software solutions
  • Assist in developing technical security standards and incident procedures
  • Support the documentation and maintenance of information security policies
  • Mentor junior security teammates (Senior Level)

Benefits

  • Hybrid work schedule with 2 days in the office
  • Opportunity for professional growth and mentorship
  • Exposure to a range of security issues in a large CIS program
  • Access to professional development resources and training opportunities
  • Collaboration with a dedicated Incident Response Team
Full Job Description
JOB SUMMARY

Provides support in solving all phases of a large and complex Critical Infrastructure Security (CIS) program. Provides a full range of analytic duties using knowledge of multidisciplinary security concepts, principles and practices applicable to security administration. Responds to, and reports on, IT security incidents, providing initial assessment of impact severity and types of incidents being addressed. Performs periodic operating system and application security assessments of simple-to-moderate complexity and review for evidence of vulnerability or compromise and assisting with the implementation of resolution. Monitors computing resources for evidence of compromise and report security incidents.

JOB DUTIES

Level 2:
  • Implements, monitors and maintains preventive and detective controls
  • Monitors computing resources for evidence of compromise and report security incidents
  • Analyzes compromised computing resources of routine to moderate complexity, to assist in improving security design and policy compliance, and to understand and document new threat profiles
  • Develops and implements mitigation strategies for threat reduction based on monitoring of IT systems
  • Researches, analyzes, designs, tests and implements new or vendor supplied security software solutions
  • Provides up to date documentation and procedures on security software product administration
  • Assists in the development of technical security standards to support policies, including creating, coordinating and monitoring standards and incident investigation procedures
  • Works as a member of the Incident Response Team and perform analysis of security breaches
  • Studies and grows current knowledge of security issues
  • Supports the development, documentation, deployment, review and maintenance of information security policies
  • Communicates information security requirements and principle
  • Ensures compliance with security related regulatory and corporate requirements
  • Uses software tools to gather system configuration information and vulnerabilities
  • Promotes and delivers security-related material promoting security awareness.
  • Maintains current knowledge of security trends, vulnerabilities, threats, and mitigation methods
  • Produces and presents compelling security-related training content
  • Creates and consistently delivers awareness material promoting security awareness


Senior Level:
  • All of the above tasks, and
  • Implements, monitors and maintains preventive and detective controls
  • Monitors computing resources for evidence of compromise and report security incidents
  • Analyzes compromised computing resources of routine to moderate complexity, to assist in improving security design and policy
  • compliance, and to understand and document new threat profiles
  • Develops and implements mitigation strategies for threat reduction based on monitoring of IT systems
  • Researches, analyzes, designs, tests and implements new or vendor supplied security software solutions
  • Provides up to date documentation and procedures on security software product administration
  • Assists in the development of technical security standards to support policies, including creating, coordinating and monitoring
  • standards and incident investigation procedures
  • Works as a member of the Incident Response Team and perform analysis of security breaches
  • Studies and grows current knowledge of security issues
  • Supports the development, documentation, deployment, review and maintenance of information security policies
  • Communicates information security requirements and principle
  • Ensures compliance with security related regulatory and corporate requirements
  • Designs cyber security monitoring program, including technologies and processes
  • Investigates and analyzes computing resources for evidence of compromise and reports security incidents
  • Enforces security policies and procedures by administering and monitoring security profiles, reviews security violation reports and investigates possible security exceptions, updates, and maintains and documents security controls
  • Functions as a member in the security group's Incident Response Team
  • Analyzes complex compromised computing resources to improve security design and policy compliance, and to anticipate and prevent new threat profiles
  • Develops and defends new technical security standards to support policies, including creating, coordinating and monitoring standards and incident investigation procedures
  • Performs periodic and complex operating system and application security assessments to determine the likelihood of vulnerability or compromise, and prepares possible resolutions for implementation
  • Analyzes security breaches
  • Expands expert knowledge of security issues
  • Reports issues to the department personnel responsible for the resource
  • Serves as a mentor for junior security teammates


EXPERIENCE

Level 2 Requirements:
  • Minimum of two years (in excess of degree requirements stated above) of progressively responsible experience in IT analysis or IT security administration.


Senior Level Requirements:
  • Requires minimum 5 years related work experience in excess of degree requirements


EDUCATION
  • Bachelor's Degree : Cyber Security, Computer Science, MIS, or related discipline (Preferred)
  • or a combination of education and experience that provides equivalent knowledge to a major in such fields is required


CERTIFICATIONS
  • CISSP Certified Information Systems Security Professional (Preferred)
  • Other Preferred Certs: Security+, GSEC, GCIH, GCIA and or GREM


Physical work location is Taylor, TX with a hybrid schedule of 2 days per week.

The foregoing description reflects the minimum qualifications and the essential functions of the position that must be performed proficiently with or without reasonable accommodation for individuals with disabilities. It is not an exhaustive list of the duties expected to be performed, and management may, at its discretion, revise or require that other or different tasks be performed as assigned. This job description is not intended to create a contract of employment with ERCOT. Both ERCOT and the employee may exercise their employment-at-will rights at any time. #LI-DN

Expected Salary Range:
$90,000 - $124,000

About ERCOT

The Electric Reliability Council of Texas (ERCOT) manages the flow of electric power to more than 26 million Texas customers, representing about 90 percent of the state's electric load. ERCOT is responsible for ensuring that the Texas power grid remains stable and reliable, and for managing the wholesale market for electricity in the state. ERCOT was founded in 1970 and is headquartered in Austin, Texas.
Learn more about ERCOT
Size
700 employees
Industry
Founded
1970

Similar Jobs

More Jobs at ERCOT

More Information Technology Jobs

Find similar Cyber Security Analyst jobs: