Cybersecurity Analyst
Listed on 2026-08-29
-
IT/Tech
Cybersecurity
Requisition : 97057
Next Era Analytics offers energy consulting services using industry-leading scientific analysis for planning, siting, forecasting and optimizing all forms of energy projects. Our optimization and analytics platforms integrate open-source technologies to leverage massive, diverse sets of utility operating data. This enables rapid development of operational solutions. Applying expertise in advanced mathematics, data and physical sciences, we solve some of the hardest problems facing the energy industry.
PositionSpecific Description
We are seeking a cybersecurity professional to support the continued development and execution of NEA’s cybersecurity risk management program. This role will coordinate security assessments, third-party risk reviews, application security evaluations, penetration testing activities, and remediation tracking across the organization.
The successful candidate will work closely with engineering teams, application owners, vendors, and business stakeholders to identify cybersecurity risks, document findings, and drive issues through resolution. This individual will also help standardize cybersecurity processes, reporting, and governance while using AI-enabled tools to improve analysis, efficiency, and decision-making.
Key Responsibilities & Expectations- Cybersecurity Risk Management
- Security Assessments:
Support cybersecurity assessments and risk reviews across applications, platforms, vendors, and technology solutions. - Risk Documentation:
Document identified risks, control gaps, findings, compensating controls, and formal risk decisions. - Remediation Management:
Track cybersecurity findings and remediation activities through validation and closure. Support risk acceptance and exception handling, including documenting formal security decisions when remediation is deferred. - Third-Party and Application Security
- Third-Party Risk Assessments:
Support security assessments for vendors, SaaS platforms, development tools, and AI-enabled solutions. - Application Security Reviews:
Coordinate security reviews for applications and technology tools, including evidence collection, documentation, findings management, and stakeholder follow-up. - Stakeholder Coordination:
Partner with application owners, engineering teams, vendors, and business stakeholders to obtain required information and resolve identified concerns. - Security Testing and Resiliency
- Penetration Testing Coordination:
Support penetration testing activities, including scheduling, scope coordination, results management, remediation tracking, and reporting. - Critical Application Resiliency:
Assist with resiliency assessments for critical applications by organizing documentation, evaluating risk information, and tracking required actions. - Issue Resolution:
Work with technical and business teams to identify appropriate remediation plans and ensure cybersecurity risks are addressed in a timely manner. - Audit Prep:
Assist with audit and evidence requests by organizing support materials, tracking responses, and confirming completeness. - Governance, Reporting, and Process Improvement
- Risk and Assessment Inventories:
Maintain accurate inventories of assessed applications, vendors, findings, risk decisions, and remediation status. - Standardized Processes:
Develop and maintain consistent assessment templates, workflows, procedures, reports, and dashboards. - Program Reporting:
Provide clear and actionable reporting on cybersecurity risks, assessment activity, remediation progress, and program performance. Analyze recurring findings, remediation patterns, and program trends to help prioritize work and improve the overall cybersecurity program. - Continuous Improvement:
Identify opportunities to improve the consistency, scalability, and effectiveness of cybersecurity review processes. - AI-Enabled Cybersecurity Productivity
- AI-Assisted Analysis:
Use AI assistants and related tools to improve cybersecurity research, risk analysis, documentation, and decision support. - Workflow Efficiency:
Apply AI-enabled capabilities to streamline evidence review, reporting, remediation tracking, and other repeatable cybersecurity activities. - Responsible Adoption:
Validate AI-generated outputs, protect sensitive information, and ensure responsible use of AI tools in cybersecurity work. - Collaboration and Ownership
- Cross-Functional Partnership:
Collaborate with engineering, application owners, cybersecurity teams, vendors, and business stakeholders to identify security gaps and support remediation. - Clear Communication:
Translate cybersecurity risks and technical findings into clear, business-relevant language. - Ownership and Accountability:
Manage assigned assessments and findings from initiation through completion while communicating risks, dependencies, and delays proactively. Apply working knowledge of application security and Dev Sec Ops practices, including vulnerability management concepts and secure delivery workflows.
- Bachelor’s degree in Cybersecurity,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).