- Company Name
- Chesapeake Utilities Corporation
- Job Title
- Cyber Security Analyst II
- Job Description
-
**Job Title**: Cyber Security Analyst II
**Role Summary**
Execute comprehensive cybersecurity operations, including threat detection, incident response, vulnerability management, and risk assessment across enterprise platforms (including cloud). Lead triage and containment, develop security strategies, and provide technical support to internal teams and stakeholders.
**Expectations**
- Minimum 5 years of IT experience **or** a bachelor’s degree in Computer Engineering/Computer Science (or closely related field).
- 3 + years of specialized IT support and 2 + years in cyber security analysis or incident response.
- Proficiency in MITRE ATT&CK, Lockheed Martin Kill Chain, DFIR, memory forensics, and enterprise vulnerability management.
- Up‑to‑date knowledge of threat intelligence, nation‑state threat actors, and OSINT practices.
- Strong analytical, written, and verbal communication skills with proven customer‑service orientation.
**Key Responsibilities**
- Monitor security controls and intel; lead triage, containment, eradication, and documentation of incidents.
- Conduct threat hunting, deep‑dive analyses, and adversary emulation using tools such as Atomic Red Team and Caldera.
- Correlate intelligence from IPS, endpoints, and third‑party sources for effective incident response.
- Administer and maintain commercial endpoint and network security solutions; tune event filtering and custom views.
- Run vulnerability and security awareness programs; manage patching and configuration baselines.
- Produce daily, weekly, and trend reports; update SOPs, user guides, and policy documentation.
- Execute change‑management procedures, ensuring approvals and adherence to SLAs.
- Interface with third‑party vendors for external audits and investigations.
- Maintain metrics for capacity planning and report significant security events, linking them to known intrusion sets.
**Required Skills**
- MITRE ATT&CK & Lockheed Martin Kill Chain framework.
- DFIR and memory analysis tools.
- Enterprise vulnerability management & security awareness solutions.
- OT security control design/implementation.
- Multi‑factor authentication system administration.
- Management of IPS, firewalls, and security appliances.
- Experience with enterprise change‑management and testing.
- Strong analytical, problem‑solving, and troubleshooting abilities.
- Excellent interpersonal, organizational, and communication skills.
**Required Education & Certifications**
- Bachelor’s degree in Computer Engineering, Computer Science, or related IT discipline **or** 5 years of relevant experience.
- Hold at least one certification: Security+, CEH, GCIH, GREM, or CISSP.