Principal Offensive Security Analyst
NextEra EnergyAbout the role
Florida Power & Light Company is the largest electric utility in the U.S., delivering clean, affordable, and reliable electricity to approximately 12 million Floridians. With one of the nation’s cleanest power generation fleets and top-tier reliability, we are setting new standards in the energy industry. Ready to make an impact? Join our exceptional team today and help shape the future of energy!
Position Specific Description
NextEra Energy is seeking an experienced Offensive Security Analyst with exceptional hands-on technical skills and a strong background in utilizing red team toolsets. This role is crucial for conducting tactical offensive operations and adapting to evolving tools and methods. You will complement our existing team, recognized for their strategic planning and intelligence analysis capabilities, by providing practical, on-keyboard expertise in offensive security and threat emulation.
- Penetration Testing: Perform comprehensive tests on enterprise systems, including on-premises and cloud environments (AWS/Azure).
- Red Team Operations: Emulate adversary tactics to test organizational defenses, develop and use custom tools for Windows environments, and provide detailed post-exploitation reporting.
- Collaboration & Coordination:
- Work closely with the Vulnerability Management team to contextualize risks and prioritize remediation efforts.
- Partner with the Threat Hunting Team to investigate signs of further exploitation following red team operations.
- Participate in purple team exercises to enhance organizational detection and response capabilities.
- Automation & Tool Development: Automate security tasks, manage product security testing, and create scripts or utilities to streamline repeatable processes.
- Detection Strategies: Develop strategies to identify and respond to security threats using the kill chain model, leveraging both manual and automated approaches.
- Solid experience in network security testing and penetration.
- Working knowledge of Unix/Linux and Windows systems from an attacker perspective.
- Familiarity with common ICS/SCADA architecture, including the unique separation between operational technology (OT) and traditional information technology (IT) systems.
- Penetration Testing & Red Team Skills
- Proficiency using common penetration testing and red team tools.
- Web application security (OWASP Top Ten), mobile security testing, IoT devices, wireless networks.
- Deep familiarity with advanced red teaming frameworks (Atomic Red Team, MITRE Caldera, Pentera).
- Any GIAC (or other relevant) certifications, such as GPEN, GWAPT, GXPN, GREM, etc.
- Demonstrable passion for learning and staying abreast of emerging tactics, techniques, and procedures (TTPs).
- Hands-on experience in SCADA or ICS beyond a foundational level.
- Understanding of regulatory requirements (e.g., NERC CIP) for industrial environments.
Job Overview
This job performs ongoing cybersecurity risk reviews for new and existing technologies and services and supports ongoing and new cybersecurity projects. Individuals develop requirements for and implement technical security projects and tools, as well as define the company’s cybersecurity policies and control framework. This position collaborates with the company’s IT department and business units to identify the need for, select, and deploy technical controls to meet specific security requirements. Employees in this role build processes and standards to ensure security requirements continue to be met.
Job Duties & Responsibilities
- Administers, operates and monitors NextEra Energy (NEE) information security sensors, logging, alerting and other detection mechanisms to identify and respond to threats
- Acts as subject matter expert for one or multiple assigned cybersecurity technology stacks (e.g., identity and access management, network intrusion detection and prevention, host based security tools)
- Collaborates with security architecture to identify, evaluate and recommend new security technologies for suitability within NEE’s environment and security posture
- Communicates ongoing cybersecurity activities, priorities and risk measurements or mitigations at multiple organizational levels
- Provides guidance for security activities and requirements in the system development life cycle (SDLC) and application development efforts. Participates in organizational projects, as required
- Performs other job-related dut
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s