Proven experience with distributed enterprise-level, centrally-managed firewalls, IDS, and IPS
Familiarity with threat landscape and threats specific to the utility industry; willing to stay up to date as threat landscape changes
Comprehensive knowledge of TCP/IP and associated protocols such as DNS, SMTP, HTTPS, TCP, UDP
Ability to interpret system logs for troubleshooting and process improvement
Ability to collect and interpret packet captures
Proven experience in cybersecurity administration, network security, or a related role
Strong understanding of security protocols, cryptography, and network security technologies
Experience with security tools such as SIEM, firewalls, and intrusion detection including system selection, implementation, and management
Strong knowledge of operating systems including but not limited to Linux
Able to work with non-cyber technical teams on cybersecurity projects
Able to work with project managers to report project progress, inform of potential roadblocks, provide timelines and budgets, and meet project timetables
Strong communication skills including the ability to explain cybersecurity concepts to non-cyber or non-technical coworkers
Able to work individually or as part of a highly technical cybersecurity team
Education: Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) OR High School Diploma/GED with 4 years relevant experience in IT system administration/help desk/security (cyber or physical) OR graduation from an approved Cybersecurity Program OR non-degree qualifications (such as hands-on demonstrated ability in a technical interview/assessment)
Experience: 4 or more years of Information Technology related experience OR 2 or more years of security related experience, which may include military/government work experience
Licenses/Certifications: CISSP or other Security certifications
Responsibilities
Responsible for moderate-scale security assignments with limited direction from senior team members
Develops and maintains necessary documentation of security systems, projects, and/or processes to ensure unified understanding of system details
Performs and analyzes security controls assessments (internal and third party) through application security testing, penetration testing or other means to ensure controls effectiveness
Identifies and documents potential mitigations/remediations and creates reports of findings with identified risk response
Participates in the review, evaluation, and recommendation of emerging security technologies
More involved in advanced level implementation, support, and/or usage of technical solutions
Assists with problem solving, decision-making, and functional area knowledge
Participates in security projects/initiatives/incidents; directs security assignments
Translates and presents security topics competently to team members and AEP's leaders; establishes recommendations based on options presented
Presents security information in a clear and concise manner
Collaborates on team learning needs and engages in opportunities to increase knowledge in security areas
Gathers first-hand information on security requirements to find the most cost-effective improvements in security posture
Researches and supplies new opportunities to improve security posture; presents new ideas and approaches
Manages time and resources efficiently to accommodate multiple assignments
Formulates most effective work plan and shares with other team members and groups to meet required security objectives
Communicates the role and expectations of Security in meeting Enterprise Security strategies and requirements