Cyber Security Associate
Listed on 2026-09-09
-
IT/Tech
Cybersecurity
Crescent is a differentiated U.S. energy company committed to delivering value through a disciplined, returns-driven growth through acquisition strategy and consistent return of capital. Our long-life, balanced portfolio combines significant cash flow from stable production with a deep, high-quality development inventory. Crescent is a top three producer in the Eagle Ford basin and a scaled operator in each of the Permian and Uinta basins.
Crescent’s leadership is an experienced team of investment, financial and industry professionals that combines proven investment and operating expertise. For more than a decade, Crescent and our predecessors have executed on a consistent strategy focused on cash flow, risk management and returns. Through disciplined and accretive investments, we have successfully tripled the size of our company since going public in December 2021 while maintaining a strong balance sheet.
The Cybersecurity Associate supports the day-to-day operations of the organization’s cybersecurity program through monitoring, triage, reporting, service request fulfillment, and security operations support. This role plays a key part in protecting the company’s digital assets by helping identify potential threats, supporting response activities, and ensuring security processes are consistently executed across enterprise systems and platforms.
This position supports security monitoring, incident triage, vulnerability tracking, logging and SIEM coordination, awareness activities, and operational reporting. The ideal candidate brings foundational cybersecurity knowledge, strong analytical skills, and a proactive mindset, with the ability to work across cybersecurity, infrastructure, applications, and business teams. This individual will contribute to improving cyber resilience, strengthening operational discipline, and supporting the company’s journey toward becoming a secure, technology-enabled, and data-driven enterprise.
Key Responsibilities:Security Monitoring & Alert Validation
- Monitor security alerts and events across approved security tools and platforms.
- Review and validate potential threats, suspicious activity, and anomalous behavior for appropriate escalation.
- Assist in identifying false positives, documenting findings, and improving alert handling processes.
- Support continuous monitoring efforts to improve visibility into enterprise security events and risks.
- Support incident triage, investigation, and response efforts in coordination with internal cybersecurity personnel and external partners.
- Gather initial evidence, document findings, and help track response actions through closure.
- Escalate confirmed or high-risk events in accordance with established procedures.
- Assist with post-incident documentation, lessons learned, and follow-up remediation tracking.
- Manage and respond to cybersecurity-related service requests in a timely and professional manner.
- Coordinate with users, IT teams, and security stakeholders to fulfill access, policy, logging, and other security-related requests.
- Track request status, document actions taken, and ensure proper closure and communication.
- Identify recurring request patterns and suggest process improvements where appropriate.
- Support proper logging and SIEM integration across systems, platforms, and security tools.
- Assist with onboarding log sources, validating data flow, and identifying visibility gaps.
- Help maintain monitoring coverage by working with infrastructure, cloud, application, and security teams.
- Support security operations processes that strengthen detection, investigation, and response capabilities.
- Track vulnerability remediation efforts across systems and teams to support timely risk reduction.
- Assist with compiling remediation status, follow-ups, and exception tracking.
- Support reporting on vulnerabilities, open risks, and remediation progress for cybersecurity leadership.
- Help coordinate with technical owners to ensure remediation actions are documented and visible.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).