Local Candidates only, no per diem provided, local to Surry Power Station.
Surry Power Station, Surry, VA 23883
Information Security Analyst - Cyber Security
Job Summary
Client is currently seeking Information Security Analyst to join our IT professionals to support the Nuclear Business Unit. This position will be located at Surry Power Station. This position will focus on the implementation and maintenance of the nuclear cyber security program and intrusion detection system software.
As part of the IT Nuclear Cyber Security Team, responsible for all cyber activities at the station, including, but not limited to:
- Maintenance, troubleshooting, and patching of cyber security monitoring systems including Security Information and Event Management (SIEM) systems and software.
- Maintenance, troubleshooting, and patching of Trellix and OPSWAT malware detection systems.
- Review and analysis of Security Controls Analysis documentation as member of the Cyber Security Assessment Team (CSAT).
- Participation on the Nuclear Cyber Security incident response team (CSIRT).
- Analysis of Critical Digital Assets (CDAs) for security breaches and ensuring that Surry Power Station remains in compliance with the Cyber Security Plan.
- Performance of rogue wireless access point scans throughout the station power block and monitoring CDAs for rogue connections.
- Performance of hardening of Windows and Linux workstations and servers.
- Review of industry guidance for cyber security and application of principles to critical systems and critical digital assets.
- Identification of gaps in cyber security controls and recommendation of technical or administrative solutions to remediate the gaps.
- Review of Change Management Records and Design Change Packages for cyber security compliance and impacts.
- Review of cyber security policies, standards, and procedures in support of programmatic requirements to meet our Cyber Security Plan.
- Performance of periodic scans and maintenance of removeable media enrolled in the Portable Media Device program.
- Perform other duties as requested or assigned.
Required Knowledge, Skills, Abilities & Experience
The successful candidate will demonstrate the following knowledge, skills, characteristics, experiences, and/or abilities:
- Experience with network design and security, firewall configurations and management Windows or Linux Security operating systems security.
- Ability to work well independently and in a team environment, communicate with other team members or clients and make decisions appropriately after consultation to support assigned projects
- Familiar with security principles, and defense-in-depth techniques
- Familiar with VMware, McAfee (Trellix) ePO and ESM, backup software, ELK Stack, Kibana
- Familiar with nuclear security controls analysis
- Understanding of Nuclear Cyber Security.
- Understanding of Access Control and Intrusion Detection Systems.
- Must be dedicated to continuous improvement and implementation of cyber security and cyber compliance best practices to support strategic regulatory compliance objectives for the Nuclear Business Unit
- Must possess excellent verbal and written communication skills and demonstrate the ability to present concepts, options or recommendations in a group setting
- Proficient in the use of Microsoft Office software/collaboration tools
Additional Preferred Experience:
- Network switches
- Firewalls
- Network security devices
- Network security tools
- Active Directory
- Cyber forensics
- Cyber Security Qualification – GSEC, CISSP, Security , or similar
- Completion of SANS 401 and 504
Education Requirements
Education Level: Degree or an equivalent combination of education and demonstrated related experience may be accepted in lieu of preferred level of education: Bachelor, Other Education: Business, Computer Engineering, Computer Science, Information Systems