Green Mountain Power is seeking skilled and experienced Cybersecurity Analysts to join our growing Cybersecurity Team. This role is ideal for professionals who are passionate about protecting critical infrastructure and enabling secure business operations. Successful candidates will work across multiple cybersecurity disciplines including security operations, risk management, vulnerability management, incident response, cloud and infrastructure security, governance, security architecture, and employee awareness.
As a Cybersecurity Analyst, you will help strengthen the organization's overall security posture by identifying risks, implementing security controls, responding to threats, collaborating with technology and business teams, and driving continuous improvement across the cybersecurity program.
ResponsibilitiesAs a member of the GMP Cybersecurity Team, you will:
- Monitor, investigate, and respond to cybersecurity alerts, incidents, and emerging threats across enterprise and operational technology (OT) environments.
- Participate in incident response activities including triage, containment, eradication, recovery, root cause analysis, and lessons learned.
- Perform threat hunting, forensic analysis, and security investigations using enterprise security tools and intelligence sources.
- Conduct security assessments, risk analyses, and control reviews to identify vulnerabilities and recommend practical remediation strategies.
- Assess systems, applications, cloud environments, and infrastructure for security weaknesses and assist with remediation efforts.
- Collaborate with IT, Engineering, Operations, and business stakeholders to integrate cybersecurity into projects, system implementations, and operational processes.
- Support vulnerability management activities including scanning, prioritization, remediation tracking, and validation.
- Assist with the design, implementation, and continuous improvement of security controls, architectures, and technical standards.
- Develop and maintain security documentation, standards, procedures, and technical playbooks.
- Support cybersecurity awareness initiatives by helping educate employees on emerging threats and security best practices.
Required Skills & Experience- Demonstrable experience working within an enterprise-scale computing environment
- Strong knowledge and understanding of TCP/IP theory, the OSI model, as well as Windows, Linux, and Mac operating systems
- A broad understanding of security technologies including, firewalls, SIEMs, AV, IDS, Identity, encryption, and other monitoring and analysis tools and protocols
- Proficiency working with Splunk is a plus
- Cultural fit-we look for a positive attitude, natural aptitude, and a strong work ethic as key attributes in our candidates. We hire people who others want to be around, who learn quickly, crave responsibility, have the grit to work through the inevitable roadblocks, and possess the capacity and desire to produce great results for our customers.
- Excellent spoken and written communication skills including the ability to effectively communicate with employees across the company.
- Preferred candidates will possess prior training/certifications such as CISSP, CEH, CIH, CISM, GIAC Security Essentials, a degree in information security or IT, and/or equivalent training and experience in a security-focused role.
This position may be physically-located in either our Colchester or Rutland Vermont offices.
CompensationAs part of our commitment to fair and open hiring practices, we disclose compensation. This position offers a competitive salary range of $80,000-$145,000 annually, commensurate with experience, qualifications, and the scope of responsibilities. We believe in skill, dedication, innovative thinking, and growth.