We believe good energy has a ripple effect.
Cybersecurity Analyst
Location
United States
Posted
3 days ago
Salary
Not specified
Job Description
Role Description
As a Cybersecurity & Compliance Analyst, you will play a critical role in safeguarding our company's information systems and ensuring compliance with regulatory standards. You will be responsible for:
- Monitoring, analyzing, and responding to security incidents
- Conducting risk assessments
- Establishing and implementing cybersecurity, information risk management, and compliance best practices
- Implementing controls to protect sensitive data
This role is fully remote. Specific location details and expectations will be discussed during the interview process.
Qualifications
- Bachelor’s degree in Information Technology, Information Security, Cybersecurity or related field and/or equivalent experience
- 3+ years of progressively more responsibility in directly related work
- Two or more years of experience in utilizing enterprise security or compliance solutions including but not limited to SIEM, Risk Management tools, GRC (Governance, Risk, and Compliance) tools, security detection and response tools, and endpoint security products
- Excellent knowledge of Microsoft Purview including Data Loss Protection and other compliance policies
- Proven experience in cybersecurity compliance, risk management, and audit processes
- Familiarity with common network, system and web application attacks and mitigations
- Strong knowledge of regulatory requirements and industry standards related to cybersecurity and Risk Management (e.g., NIST, ISO27701, SOX)
- Ability to work effectively in a team environment and in cross-functional teams
- Ability to effectively document
- Excellent verbal and written communication skills
- Energetic, enthusiastic, charismatic
Requirements
- Develop, implement, and maintain security policies, procedures, and controls to ensure compliance with industry standards and regulations (e.g., NERC CIP, SOX, ISO 27001, etc.)
- Evaluate, document, and respond to recommendations or alerts from internal security tools and Managed Security Services Provider
- Conduct regular risk assessments and vulnerability scans to ensure the security of the organization's information systems
- Assist in the investigation and response to security incidents, ensuring that all actions comply with regulatory requirements
- Coordinate with legal and regulatory bodies to ensure the organization remains compliant with evolving cybersecurity laws and regulations
- Prepare and present reports on compliance activities, findings, and recommendations to leadership
- Assist with the education and training of process/control owners to better understand technology control frameworks and their responsibilities when it comes to data handling
- Lead Data Loss Protection (DLP) initiatives, strategies, and controls within the company with the use of Microsoft Purview
- Perform security audits and assessments to identify areas of improvement and ensure compliance with regulatory requirements
- Assist in responding to external audits by preparing necessary documentation, coordinating with auditors and ensuring that all compliance requirements are met
- Maintain up-to-date knowledge of industry standards, regulations, and best practices related to cybersecurity compliance
- Recommend and assist with implementation and management of Cybersecurity, Risk Management and Compliance tooling
- Support the development and maintenance of a robust cybersecurity governance framework
Benefits
- Employees (and their families) are eligible for medical, dental, vision, basic life and disability insurance
- Employees can enroll in our company’s 401(k) plan
- Provided vacation, sick and holiday pay
Company Description
SOLV Energy is a leading provider of infrastructure services to the power industry, designing, building and maintaining utility scale solar, battery storage and high voltage substation projects nationwide.
Job Requirements
- Bachelor’s degree in Information Technology, Information Security, Cybersecurity or related field and/or equivalent experience
- 3+ years of progressively more responsibility in directly related work
- Two or more years of experience in utilizing enterprise security or compliance solutions including but not limited to SIEM, Risk Management tools, GRC (Governance, Risk, and Compliance) tools, security detection and response tools, and endpoint security products
- Excellent knowledge of Microsoft Purview including Data Loss Protection and other compliance policies
- Proven experience in cybersecurity compliance, risk management, and audit processes
- Familiarity with common network, system and web application attacks and mitigations
- Strong knowledge of regulatory requirements and industry standards related to cybersecurity and Risk Management (e.g., NIST, ISO27701, SOX)
- Ability to work effectively in a team environment and in cross-functional teams
- Ability to effectively document
- Excellent verbal and written communication skills
- Energetic, enthusiastic, charismatic
- Develop, implement, and maintain security policies, procedures, and controls to ensure compliance with industry standards and regulations (e.g., NERC CIP, SOX, ISO 27001, etc.)
- Evaluate, document, and respond to recommendations or alerts from internal security tools and Managed Security Services Provider
- Conduct regular risk assessments and vulnerability scans to ensure the security of the organization's information systems
- Assist in the investigation and response to security incidents, ensuring that all actions comply with regulatory requirements
- Coordinate with legal and regulatory bodies to ensure the organization remains compliant with evolving cybersecurity laws and regulations
- Prepare and present reports on compliance activities, findings, and recommendations to leadership
- Assist with the education and training of process/control owners to better understand technology control frameworks and their responsibilities when it comes to data handling
- Lead Data Loss Protection (DLP) initiatives, strategies, and controls within the company with the use of Microsoft Purview
- Perform security audits and assessments to identify areas of improvement and ensure compliance with regulatory requirements
- Assist in responding to external audits by preparing necessary documentation, coordinating with auditors and ensuring that all compliance requirements are met
- Maintain up-to-date knowledge of industry standards, regulations, and best practices related to cybersecurity compliance
- Recommend and assist with implementation and management of Cybersecurity, Risk Management and Compliance tooling
- Support the development and maintenance of a robust cybersecurity governance framework
Benefits
- Employees (and their families) are eligible for medical, dental, vision, basic life and disability insurance
- Employees can enroll in our company’s 401(k) plan
- Provided vacation, sick and holiday pay
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cybersecurity Analyst monitoring and responding to security incidents at Porter
Senior Information Security Analyst
Cincinnati Children'sOur mission: to be the leader in improving child health.
Senior Information Security Analyst safeguarding systems at Cincinnati Children's Hospital
Cybersecurity Subject Matter Expert
JobgetherWe use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
This role is a senior technical position focused on safeguarding critical IT systems and networks through advanced cybersecurity expertise. You will lead complex assessments, vulnerability testing, and cybersecurity evaluations, providing actionable guidance and technical directi...
This role provides advanced Governance, Risk, and Compliance (GRC) support for federal information systems, managing the full lifecycle of Risk Management Framework (RMF) activities and external service authorization processes. Responsibilities include developing security authorization documentation, reviewing FedRAMP packages, conducting risk assessments per NIST 800-30, and supporting continuous monitoring efforts.