Cyber Security Operations Analyst / Senior Cyber Security Operations Analyst – Vulnerability Management
Portland General ElectricAbout the role
At PGE, our work involves dreaming about, planning for, and realizing a smarter, cleaner, more enduring Oregon neighborhood. Its core to our DNA and we haven’t stopped since we started in 1888. We energize lives, strengthen communities and drive advancements in energy that promote social, economic and environmental progress. We’re always on the lookout for people passionate about leading and being a part of teams that are advancing innovative clean energy solutions that are also affordable and accessible to all.
Summary:
As a Cyber Security Operations Analyst – Vulnerability Management, you will have the unique opportunity to join our dynamic Threat Defense team focused on preventing vulnerabilities to becoming threats to PGE.
This role will focus on managing vulnerabilities and gaps that affect Technology, Data Security, and our Cyber Resilience posture, to ensure we are mitigating issues before they become exploitable within our environment.
As part of the role, you will support the following:
Mature our enterprise vulnerability management practices and awareness.
Present critical security and configuration deficiencies, security benchmark deviations, and solutions to diverse audiences focusing on mitigation/prevention/remediation.
Facilitate exercises/tests to uncover technology or process gaps.
Collaborate with other Business Units, Technology and Cyber organizations to build an encompassing practice to effectively manage our vulnerabilities.
The work we do is core to safeguarding our mission in delivering clean, reliable, and affordable energy to our community.
We're hiring for a position open to both Cyber Security Operations Analyst and Senior Cyber Security Operations Analyst candidates. The level will be determined based on the successful applicant's qualifications, experience, and demonstrated skills during the interview process.
Career Level Summary:
Cyber Security Operations Analyst (Grade 7, Career Level: P3 - Career Professional)
Responsible for security and compliance, installation, implementation, monitoring, incident response, vulnerability assessments, security controls testing, configuration management, and managing security systems and tools. Implements and analyzes connectivity activities required for security, installation, and integration. May have responsibility for adherence to compliance programs for critical infrastructure, and creation of documentation suitable for audit.
Senior Cyber Security Operations Analyst (Grade 8, Career Level: P4 - Specialist Professional)
Performs specialized work with depth and breadth of expertise in security operations. Solves complex problems and recommends best practices across broad technology domains. Leads projects and consults on high-impact areas. May provide leadership to functional teams.
Key Responsibilities:
Cyber Security Operations Analyst
Information Security - Performs security risk, vulnerability assessments and business impact analysis for medium complexity information systems. Explains the purpose of and provides advice and guidance on the application and operation of elementary physical, procedural, and technical security controls. Investigates suspected attacks and manages security incidents. Uses forensics where appropriate.
Vulnerability Research - Plans and manages vulnerability research activities. Maintains a strong external network in vulnerability research. Gathers information on new and emerging threats and vulnerabilities. Assesses and documents the impacts and threats to the organization. Creates reports and shares knowledge and insights with stakeholders. Providing expert advice and guidance to support the adoption of tools and techniques for vulnerability research. Contributes to the development of organizational policies, standards, and guidelines for vulnerability research and assessment.
Vulnerability Assessments - Collates and analyses catalogues of information and technology assets for vulnerability assessment. Performs vulnerability assessments and business impact analysis for medium complexity information systems. Contributes to selection and deployment of vulnerability assessment tools and techniques.
Secure Configuration Management - Facilitates input from stakeholders, provides constructive challenge and enables effective prioritization of security frameworks and benchmark requirements to manage and audit configurations against. Establishes requirements base-lines, obtains formal agreement to requirements, and ensures traceability to source.
Security Operations - Monitors the application and compliance of operational procedures. Reviews actual or potential security vulnerabilities and ensures that they are promptl
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s