What are the responsibilities and job description for the Cyber Threat Intelligence Analyst position at Southern Company?
Technology Security – Cyber Threat Intelligence Analyst
Schedule: M-F
Location: Atlanta, GA or Birmingham, AL
POSITION OVERVIEW:
Have you made a career out of staying one step ahead of cunning and well-resourced cyber adversaries through your own initiative, resourcefulness, and critical thinking skills?
A leading US energy company is seeking a cybersecurity expert to join our existing Cyber Threat Intelligence team. The candidate will directly support the company’s efforts to address real and potential cyber threats to the company’s facilities, personnel, technology, operations, and brand. Our mission is literally keeping the lights on every day!
Southern Company is looking for an analyst with experience in investigating and prioritizing response to cyber threats in collaboration with the larger Security Operations Center (SOC). The team works on proactively understanding the global threat landscape as it manifests on our networks and against our operational assets, informing the company in its responses to these threats. We work across all business units to reduce the most complex security risks the company is facing.
The selected candidate will have a cybersecurity background, with experience in cyber threat analysis and technology platforms used in commercial SOCs. Highly qualified candidates will possess a professional understanding of nation state operations and motivations and will have previous experience operationalizing threat intelligence at an enterprise level. The successful candidate must be focused on results and a self-starter.
PRIMARY JOB RESPONSIBILITIES:
- Conduct in-depth analysis of adversarial capabilities, infrastructure, and TTPs
- Work with other analysts to understand stakeholder requirements and operationalize data to meet those requirements
- Support the operationalization of EclecticIQ as our threat intelligence platform
- Work with intel and security vendors to improve product utilization and increase their value to Southern Company
- Prepare and present intelligence briefings
- Report on novel analytical findings to inform key stakeholders.
- Support implementation of automation as proposed by the team
- Help with implementation of standardized data collection workflows and use
- Support deployment of honeypot technologies for intelligence collection
- Support leadership in contributing to technology projects, analyzing needs and recommending solutions
- Utilize technologies for cataloging external intelligence, correlating with internal intelligence, and working with SOC to mitigate active threats
- Develop proper documentation and process improvement across all cyber threat intelligence workflows and products
REQUIREMENTS AND QUALIFICATIONS:
- Prior analysis of cyber activity involving nation state, sophisticated criminal, and supply chain threats
- Have a curious mindset with high-level analytical and problem-solving skills
- Strong communication and interpersonal skills
- Prior experience in cybersecurity with a focus on threat research or intel analysis
- Prior experience leveraging security event information from existing sources to answer intelligence questions
- Some experience implementing automations through scripting or other code development
- Desire to continue advancing scripting and coding skills as needed
- Desire to configure threat intelligence platforms, specifically EclecticIQ
- Demonstrated capability to prioritize and delegate tasks with oversight from senior staff
- Must be willing to obtain and maintain a US government security clearance
- Basic knowledge of security principles is desired through achievement of security certifications such as CISSP, GSEC, GCTI, GCIH, OSCP
Southern Company (NYSE: SO) is a leading energy provider serving 9 million residential and commercial customers across the Southeast and beyond through its family of companies. Providing clean, safe, reliable and affordable energy with excellent service is our mission. The company has electric operating companies in three states, natural gas distribution companies in four states, a competitive generation company, a leading distributed energy infrastructure company with national capabilities, a fiber optics network, and telecommunications services. Through an industry-leading commitment to innovation, resilience, and sustainability, we are taking action to meet our customers’ and communities’ needs while advancing our commitment to net zero emissions by 2050. Our uncompromising values ensure we put the needs of those we serve at the center of everything we do and are the key to our sustained success. We are transforming energy into economic, environmental and social progress for tomorrow. Our corporate culture and hiring practices have earned the company national awards and recognition from numerous organizations, including Forbes, Military Times, DiversityInc, Black Enterprise, J.D. Power, Fortune, Human Rights Campaign and more. To learn more, visit www.southerncompany.com .
Southern Company invests in the well-being of its employees and their families through a comprehensive total rewards strategy that includes competitive base salary, annual incentive awards for eligible employees and health, welfare and retirement benefits designed to support physical, financial, and emotional/social well-being. This position may also be eligible for additional compensation, such as an incentive program, with the amount of any bonus/awards subject to the terms and conditions of the applicable incentive plan(s). A summary of the benefits offered for this position can be found here https://seo.nlx.org/southernco/pdf/SOCO-Benefits.pdf . Additional and specific details about total compensation and benefits will also be provided during the hiring process.
Southern Company is an equal opportunity employer where an applicant's qualifications are considered without regard to race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, gender identity or expression, or any other basis prohibited by law.
Job Identification: 10102
Job Category: Cybersecurity
Job Schedule: Full time
Company: Southern Company Services