CybersecurityJobs.io
← Back to all jobs

Job Description

UNS Energy Corporation is hiring an IT Security Analyst I, II to help safeguard enterprise systems and information assets in support of critical business operations. This onsite role in Tucson, AZ combines day-to-day security administration with monitoring, incident response, and support for regulatory compliance across multiple security domains.

What you will do

  • Protect critical infrastructure by administering and securing enterprise systems, applications, databases, networks, and user access.
  • Monitor security events, investigate suspicious activity, and perform security incident response and forensic investigations.
  • Conduct vulnerability, risk, and security assessments to identify threats and strengthen the organization’s security posture.
  • Evaluate and implement emerging security technologies that improve protection of company assets and operations.
  • Support compliance and regulatory initiatives, including NERC CIP, SOX, HIPAA, PCI DSS, and other security requirements.
  • Assist with the design, planning, testing, implementation, and administration of regulatory requirements and industry-accepted information security principles, practices, and systems.
  • Evaluate the effectiveness of information security solutions and processes, including consideration of the state of world events.
  • Identify security risks and exposures, determine causes of security violations, and assess and implement procedures to halt future incidents.
  • Provide assistance to system users regarding information systems security matters and deliver cost-effective IT security services to business units.
  • Work closely with other areas to support reliability and cohesiveness, and provide day-to-day security administration for databases (e.g., Oracle and MSSQL), e-mail applications, key business applications, and networks.
  • Perform user provisioning and de-provisioning, ensure alerting and resolution for security issues and threats, and manage anti-virus, spam, and malware administration.
  • Provide second-level support for the IT Help Desk and perform 24 x 7 support on a rotating basis.
  • Ensure change control processes are followed and that service levels affected by changes are maintained.
  • Partner with internal and external project managers to complete projects and efforts on time, and lead or participate in IT projects to provide information security expertise, guidance, or training.
  • Work with internal and external auditors to implement technical aspects of regulatory and compliance/privacy controls, including Sarbanes-Oxley, NERC CIP, HIPAA, and PCI DSS.
  • Coordinate with Human Resources or Legal to provide sensitive investigative or litigation hold support.
  • Contribute to services for affiliates subject to the UNS Energy Code of Conduct and related Policies and Procedures.

Technologies and standards involved

  • Security and monitoring: Identity and access management, SIEM, Security Information & Event Management and logging, intrusion detection/prevention.
  • Protection and governance: Firewalls, malware protection, encryption, vulnerability management, change and security configuration audit and control.
  • Infrastructure and networking: TCP/UDP, IPv4, IPv6, OSPF, VPNs (Virtual Private Networks), SSL, wireless security infrastructure, VOIP technology security.
  • Databases and applications: Oracle, MSSQL, key business applications, e-mail applications.
  • Tools and scripting: PowerShell.
  • Frameworks and regulatory requirements: ISO, NIST, FISMA, and regulatory requirements of NERC CIP, SOX, HIPAA, PCI DSS.

Minimum qualifications

  • Education: High school diploma or GED required.
  • Experience: Experience supporting information security, network administration, systems administration, or a related IT discipline.
  • Knowledge: Security technologies such as identity and access management, SIEM, firewalls, malware protection, encryption, and vulnerability management; understanding of incident response, threat detection, risk assessment, and security best practices.
  • Communication and collaboration: Strong problem-solving, communication, and teamwork skills, with the ability to thrive in a rapidly evolving environment.

Level I and Level II considerations

  • Level I: High school diploma or GED; effective written and oral communication skills; willingness to learn in a rapidly changing environment; demonstrated ability to work independently and as part of a team.
  • Level II: 3-5 years of relevant security or network experience, plus industry certifications such as CISSP, GSEC, or equivalent experience; self-direction and ability to work with vendors on creating statements of work and completing that work.

Location: Tucson, AZ (onsite). Education preference: Bachelor’s degree preferred, including in Cybersecurity, Computer Science, Information Systems, or a related field.

Similar Jobs