Cyber and Information Security Analyst III - Cyber Security & TSOC - Wadsworth Sys Control Center
FirstEnergyAbout the role
We are a forward-thinking electric utility powered by a diverse team of employees committed to making customers’ lives brighter, the environment better and our communities stronger.
FirstEnergy (NYSE: FE) is dedicated to safety, reliability, and operational excellence. Headquartered in Akron, Ohio, FirstEnergy includes one of the nation's largest investor-owned electric systems, more than 24,500 miles of transmission lines that connect the Midwest and Mid-Atlantic regions, and a regulated generating fleet with a total capacity of 3,780 megawatts.
This is an open position with FirstEnergy Service Co., a subsidiary of FirstEnergy Corp. [SC00]
About the OpportunityThis is an open position with FirstEnergy Service Co., a subsidiary of FirstEnergy Corp. [SC00]
This position’s base reporting location is in Wadsworth Township, Ohio, and reports to the Manager of Incident Response. This position is eligible for FirstEnergy’s Flexible Workplace program and may be performed 100% remote with infrequent multi-day trips to the Akron, Ohio area as needed (a few times per year). The Cyber Incident Response Analyst works closely with the security operations center and other cyber security teams to respond to threats and incidents across all FirstEnergy subsidiaries and business units. This person is knowledgeable in current cyber security response strategies, has strong understanding of one or more response-related technical disciplines (e.g., complex log analysis, host forensics, NetFlow analytics, etc.), and can work accurately and with precision while under pressure.
This position also works to partner closely with multiple departments, including but not limited to corporate Risk, Legal, Communications, Compliance, and Information Technology. This person can successfully maintain, improve, and execute a cyber security incident response plan, while fostering a collaborative and inclusive work environment by using FirstEnergy’s core values and behaviors as guideposts.
Responsibilities Include:- Respond to cyber-related and cyber-adjacent security issues in a dynamic, 24/7 environment with a rotating on-call component
- Execute incident response plans to address threats and incidents, while taking careful notes and following strong procedural control
- Supports and participates in incident response exercises at both the tactical and strategic levels
- Assists in the development and maintenance of incident response practices and procedures by identifying problems/needs, evaluating trends, analyzing lessons learned, and anticipating requirements.
- Preserves evidence and complies to regulatory requirements by implementing security and control structures.
- Work with the Emergency Operations Center to align cyber incident response to the overall FirstEnergy emergency plan for all-hazards response
- Liaison to external peer organizations for knowledge exchange.
- Maintains a high-level of technical knowledge of platforms utilized throughout the environment
- Not afraid to roll up your sleeves when needed and believe that collaborative approach is key to solving problems and improving our systems and people.
- Accomplish annual Cyber Security and company performance objectives.
- Champions FE’s Core Values & Behaviors by personal example.
- A Bachelor’s Degree in cyber security, cyber forensics, or a related discipline. Candidates without a bachelor’s degree but with multiple years of experience or suitable alternative credentials (e.g., certifications, lesser degrees, etc.) will be considered.
- Ability to identify and assess the severity and potential impact of risks, threats, and incidents. Communicate risk assessment findings to risk owners outside the cybersecurity program in a way that consistently drives objective, fact-based decisions about risk that optimize the trade-off between risk mitigation and business performance.
- Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate option
- An ability to work on several tasks simultaneously and pay attention to sources of information from inside and outside one’s network within an organization.
- Strong decision-making skills during emergency and crisis situations.
- Ability to handle and protect with highly confidential information.
- Familiarity with the FEMA National Incident Management System (NIMS) and the Incident Command Structure (ICS) models, holding a FEMA Professional Development Series Certificate is a plus
- Strong knowledge of disaster recovery and business continuity practices
- Strong knowledge of IT architectures, processes, policies, and tools.
- Knowledge of core Microsoft enterprise applications and ser
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s