Principal Cybersecurity Analyst Job at NextEra Energy , Inc. in Miami
NextEra Energy , Inc., Miami, FL, US, 33222
Principal Cybersecurity Analyst
Florida Power & Light Company is the largest electric utility in the U.S., providing reliable energy to nearly 12 million Floridians. With one of the nation's most fuel-efficient, cost-effective power generation fleets and industry-leading reliability, we're redefining what's possible in energy. Want to be part of something powerful? Join our outstanding team and help shape the future of energy.
Job Overview
Lead a dedicated access administration team responsible for ensuring timely, accurate, and compliant provisioning of user access while maintaining regulatory compliance. The position requires strong technical expertise in identity management platforms to support complex access provisioning requirements.
Job Duties & Responsibilities
- Conduct regular team meetings to coordinate access provisioning activities and address operational challenges
- Monitor access queues and ensure timely and accurate provisioning of access
- Maintain compliance with regulatory requirements including audit documentation and data collection
- Maintain standard operating procedures and documentation
- Serve as primary escalation point for complex access provisioning issues
Experience Requirements:
- Identity and Access Management (IAM) systems: Active Directory, LDAP, Azure, AWS, RSA Authentication Manager
- PowerShell Scripting: Ability to write, modify, and troubleshoot PowerShell scripts for Active Directory administration
- Ticketing Systems: SailPoint, Change Gear, SNOW
- Access Management Processes: User provisioning and de-provisioning processes across multiple platforms
- User Lifecycle Management: onboarding, transfers, terminations
- Audit Support: Respond to audit data requests and maintain compliance evidence
- Core Skills: Strong attention to detail for compliance requirements, problem-solving skills for access-related issues, customer service orientation for handling access requests and escalations
Preferred Additional Experience
- Experience in utilities
- Familiarity with NERC CIP access compliance requirements
- Familiarity with IBM ISIM (IBM Security Identity Manager)
Required Qualifications:
- High School Grad /GED
- Bachelor's or Equivalent experience
- Experience: 6+ years
Job Overview
This job performs ongoing cybersecurity risk reviews for new and existing technologies and services and supports ongoing and new cybersecurity projects. Individuals develop requirements for and implement technical security projects and tools, as well as define the company's cybersecurity policies and control framework. This position collaborates with the company's IT department and business units to identify the need for, select, and deploy technical controls to meet specific security requirements. Employees in this role build processes and standards to ensure security requirements continue to be met.
Job Duties & Responsibilities
- Administers, operates and monitors NextEra Energy (NEE) information security sensors, logging, alerting and other detection mechanisms to identify and respond to threats
- Acts as subject matter expert for one or multiple assigned cybersecurity technology stacks (e.g., identity and access management, network intrusion detection and prevention, host based security tools)
- Collaborates with security architecture to identify, evaluate and recommend new security technologies for suitability within NEE's environment and security posture
- Communicates ongoing cybersecurity activities, priorities and risk measurements or mitigations at multiple organizational levels
- Provides guidance for security activities and requirements in the system development life cycle (SDLC) and application development efforts. Participates in organizational projects, as required
- Performs other job-related duties as assigned
Required Qualifications:
- High School Grad / GED
- Bachelor's or Equivalent Experience
- Experience: 7+ years
Preferred Qualifications
- Certified Information Systems Aud (CISA) certification