|
Overview The System Analyst will be part of a team involved in all aspects of design, implementation, maintenance, and support of cybersecurity and networking systems at the Energy Control Center. Some of these systems include Firewalls, Anti-Virus, Multi Factor Authentication, Security Information Event Manager, networking devices, vulnerability scanners, security compliance, and more as the team continues to expand cyber security capabilities. The duties of the analyst will include but are not limited to performing vulnerability scans, working on ports services and justifications, performing signature updates on anti-virus systems, creating additional security alerts reports and dashboards to provide visibility for our cyber watch team, and patching systems to be in compliance with CIP requirements. This role also requires the analyst to work closely with IT on any implementation of new software or hardware to ensure best practices are being maintained. This role will allow the analyst to expand their cybersecurity skillset through working on multiple different technologies, learning how Con Edison operates the Transmission and Distribution electrical systems, and improving the protection of the network.
Responsibilities
Core Responsibilities
- At Con Edison we take special interest in our customers, both within the company and externally. As an employee, you need to commit to these ideals of developing a proactive, customer-centric culture to foster trust and confidence among customers and improve value for all our stakeholders.
- Follow and enforce the Department's change management process related to changes to the networks and various electronic systems at the control centers in accordance with regulatory and departmental requirements. Ensure the timing of the changes does not jeopardize the availability and reliability of the systems.
- Promote best practices and use of cybersecurity tools and follow procedures and guidelines to ensure complete compliance with the regulatory requirements, including NERC CIP and FERC Standards of Conduct requirements.
- Take a lead in the daily operation, technical and administrative support of cybersecurity tools and applications at the control centers, including user support, troubleshooting, problem solving and being on a ''on call'' roster to provide needed support during off hours.
- Take a lead in the development and implementation of cybersecurity systems
- Support the daily operation of reducing cybersecurity risk by continuous patching of Windows and Linux operating systems
- Act as a second-tier incident responder for cybersecurity alerts and events
- Performing vulnerability assessments on new and existing deployments
- Understand cybersecurity threats and risks and deploy mitigating tactics and solutions
- Write procedures and provide guidance for cybersecurity technologies.
Qualifications
Required Education/Experience
- Bachelor's Degree in Engineering, Computer Science or related field and a minimum of 2 years relevant cybersecurity experience
- Associate's Degree in Engineering, Computer Science or related field and a minimum of 4 years relevant cybersecurity experience
- High School Diploma/GED and a minimum of 5 years relevant cybersecurity experience
Preferred Education/Experience
- Bachelor's Degree preferably in Computer Science, Information Technology, Engineering, Math, Business, or applicable degree
- Associate's Degree preferably in Computer Science, Information Technology, Engineering, Math, Business, or applicable degree
Relevant Work Experience
- Relevant working experience in a cybersecurity team or performing cybersecurity functions such as working in a cybersecurity operations center (CSOC), cybersecurity engineering, incident responder etc., required.
- Experience with Windows and Linux operating systems including patching, required.
- Working knowledge of project management, cybersecurity, computer systems, and application support, required.
- Experience with Security Information Event manager solutions such as Splunk, required.
- Experience with Vulnerability scanning, preferred.
- Experience with honeypot solutions, preferred.
- Be well organized, detail oriented, flexible to handle multiple assignments, and meet deadlines, preferred.
- Ability to evaluate, prioritize and respond to rapidly changing conditions and computer proficiency, preferred.
- Knowledge of programming, preferred.
Skills and Abilities
- Demonstrates a high commitment to quality
- Effective leadership skills
- Demonstrated time management and priority setting skills
- Demonstrated problem solving skills
Licenses and Certifications
- Driver's License Required
Additional Physical Demands
- The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays.
- The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays.
- Must be able and willing to respond to system emergencies.
- Must be able and willing to travel within Company service territory, as needed.
- Must be able to pass Industrial Psychologist examination.
|