Principal Offensive Security Analyst

1 day ago


Palm Beach Gardens, Florida, United States NextEra Energy Full time

Florida Power & Light Company is the largest electric utility in the U.S., delivering clean, affordable, and reliable electricity to approximately 12 million Floridians. With one of the nation's cleanest power generation fleets and top-tier reliability, we are setting new standards in the energy industry. Ready to make an impact? Join our exceptional team today and help shape the future of energy

Position Specific Description

NextEra Energy is seeking an experienced Offensive Security Analyst with exceptional hands-on technical skills and a strong background in utilizing red team toolsets. This role is crucial for conducting tactical offensive operations and adapting to evolving tools and methods. You will complement our existing team, recognized for their strategic planning and intelligence analysis capabilities, by providing practical, on-keyboard expertise in offensive security and threat emulation.

  • Penetration Testing: Perform comprehensive tests on enterprise systems, including on-premises and cloud environments (AWS/Azure).
  • Red Team Operations: Emulate adversary tactics to test organizational defenses, develop and use custom tools for Windows environments, and provide detailed post-exploitation reporting.
  • Collaboration & Coordination:
  • Work closely with the Vulnerability Management team to contextualize risks and prioritize remediation efforts.
  • Partner with the Threat Hunting Team to investigate signs of further exploitation following red team operations.
  • Participate in purple team exercises to enhance organizational detection and response capabilities.
  • Automation & Tool Development: Automate security tasks, manage product security testing, and create scripts or utilities to streamline repeatable processes.
  • Detection Strategies: Develop strategies to identify and respond to security threats using the kill chain model, leveraging both manual and automated approaches.
  • Solid experience in network security testing and penetration.
  • Working knowledge of Unix/Linux and Windows systems from an attacker perspective.
  • Familiarity with common ICS/SCADA architecture, including the unique separation between operational technology (OT) and traditional information technology (IT) systems.
  • Penetration Testing & Red Team Skills
  • Proficiency using common penetration testing and red team tools.
  • Web application security (OWASP Top Ten), mobile security testing, IoT devices, wireless networks.
  • Deep familiarity with advanced red teaming frameworks (Atomic Red Team, MITRE Caldera, Pentera).
  • Any GIAC (or other relevant) certifications, such as GPEN, GWAPT, GXPN, GREM, etc.
  • Demonstrable passion for learning and staying abreast of emerging tactics, techniques, and procedures (TTPs).
  • Hands-on experience in SCADA or ICS beyond a foundational level.
  • Understanding of regulatory requirements (e.g., NERC CIP) for industrial environments.
Job Overview

This job performs ongoing cybersecurity risk reviews for new and existing technologies and services and supports ongoing and new cybersecurity projects.  Individuals develop requirements for and implement technical security projects and tools, as well as define the company's cybersecurity policies and control framework.  This position collaborates with the company's IT department and business units to identify the need for, select, and deploy technical controls to meet specific security requirements. Employees in this role build processes and standards to ensure security requirements continue to be met.

Job Duties & Responsibilities
  • Administers, operates and monitors NextEra Energy (NEE) information security sensors, logging, alerting and other detection mechanisms to identify and respond to threats
  • Acts as subject matter expert for one or multiple assigned cybersecurity technology stacks (e.g., identity and access management, network intrusion detection and prevention, host based security tools)
  • Collaborates with security architecture to identify, evaluate and recommend new security technologies for suitability within NEE's environment and security posture
  • Communicates ongoing cybersecurity activities, priorities and risk measurements or mitigations at multiple organizational levels
  • Provides guidance for security activities and requirements in the system development life cycle (SDLC) and application development efforts. Participates in organizational projects, as required
  • Performs other job-related duties as assigned
Required Qualifications
  • High School Grad / GED
  • Bachelor's or Equivalent Experience
  • Experience: 7+ years
Preferred Qualifications
  • Certified Information Systems Aud (CISA) certification

NextEra Energy offers a wide range of benefits to support our employees and their eligible family members. Click here to learn more.

Employee Group:  Exempt

Employee Type:  Full Time

Job Category:  Information Technology

Organization:  Florida Power & Light Company 

Relocation Provided:  Yes, if applicable

NextEra Energy is an Equal Opportunity Employer. Qualified applicants are considered for employment without regard to race, color, age, national origin, religion, marital status, sex, sexual orientation, gender identity, gender expression, genetics, disability, protected veteran status or any other basis prohibited by law. 

NextEra Energy provides reasonable accommodation in its application and selection process for qualified individuals, including accommodations related to compliance with conditional job offer requirements, consistent with federal, state, and local laws. Supporting medical or religious documentation will be required where applicable and permitted by applicable law. To request a reasonable accommodation, please send an e-mail to recruiting-, providing your name, telephone number and the best time for us to reach you. Alternatively, you may call Please do not use this line to inquire about your application status.

NextEra Energy will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.

NextEra Energy does not accept any unsolicited resumes or referrals from any third-party recruiting firms or agencies. Please see our policy for more information.

#LI-JN2 



  • Palm Beach Gardens, Florida, United States Northrop Grumman Full time

    RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE TYPE: NoneTRAVEL: NoDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of...


  • West Palm Beach, Florida, United States Employvision Inc. Full time $90,000 - $120,000 per year

    • Looking to bring on experienced ( 3 – 5 yrs ) Cybersecurity Technical Business Analysts to support the effort.• Candidates need to be able to connect the dots between the Business & Cyber Security environments.• Strong cybersecurity domain knowledge, especially in Vulnerability Management, Application Security, and Product Security• Proven...

  • Tax Analyst

    2 weeks ago


    Palm Beach Gardens, Florida, United States ZimVie Full time

    We are ZimVie, a global life sciences leader focused on restoring daily life by advancing clinical technology to improve patients' smiles, function, and confidence. Our company is founded on a legacy of trusted brands, products, and clinical evidence made possible through an inclusive and collaborative culture that empowers our team members to bring their...


  • Juno Beach, Florida, United States Abacus Service Corporation Full time

    Job Title: Cyber Security AnalystLocation: Juno Beach, FL - OnsiteDuration: 12 Months contractLocal candidates.Description:Conducts complex operational analyses and leads medium to large project teams that support informed decision making within the business unit. Key responsibilities include reviewing and approving findings to be presented to senior...


  • Delray Beach, Florida, United States Quality Security Services Full time

    Job Title: Armed Overnight Residential Security OfficerPosition Summary:The Armed Overnight Residential Security Officer is responsible for providing high-level, seven-night-a-week protection for a private family residing in an exclusive residential community. The primary duty is to ensure the complete security and safety of the family, their guests, and all...


  • Palm Harbor, Florida, United States Geographic Solutions Full time

    Job Summary: The Information Security Analyst Intern will be responsible with assisting in the identification and reporting all security issues, prioritizing threats, and confirming threats have been mitigated in accordance with company standards. You will also be training other developers on security best practices, and assisting with code reviews.All...


  • Palm Beach Gardens, Florida, United States ICBD Full time

    Board Certified Behavior Analyst / BCBA – ABA Centers of FloridaFull TimeRoyal Palm Beach**STUDENT LOAN FORGIVENESS UP TO $24K**We've Created the Ideal BCBA Work Culture· Student-loan repayment program for existing loans (up to $24,000 total - $1,000 per month)· Lower-than-average billable hours requirement (27 hours per week)· Smaller-than-average...


  • Miami Beach, Florida, United States Mount Sinai Medical Center Full time

    IAM Security AnalystHybrid Role - ** Florida Resident RequiredAs Mount Sinai grows, so does our legacy in high-quality health care.Since 1949, Mount Sinai Medical Center has remained committed to providing access to its diverse community. In delivering an unmatched level of clinical expertise, our medical center is committed to recruiting and training top...

  • Business Analyst

    6 days ago


    West Palm Beach, Florida, United States Insight Global Full time

    Insight Global's client, a system integrator, is seeking to hire a BA to support a large energy company in West Palm Beach FL. This Business Analyst will be supporting cyber security initiatives that protect company data. The BA will be responsible for documentation, eliciting and writing requirements and facilitating meetings. The BA will have incoming...


  • Miami Beach, Florida, United States Mount Sinai Medical Center Full time

    Security AnalystHybrid Role - ** Florida Resident RequiredAs Mount Sinai grows, so does our legacy in high-quality health care.Since 1949, Mount Sinai Medical Center has remained committed to providing access to its diverse community. In delivering an unmatched level of clinical expertise, our medical center is committed to recruiting and training top...