Job Information
NextEra Energy Senior IT Compliance and Risk Analyst in Juno Beach, Florida
Senior IT Compliance and Risk Analyst
Date: Nov 20, 2024
Location(s): Juno Beach, FL, US, 33408
Company: NextEra Energy
Requisition ID: 83806
is America’s largest electric company, providing clean, affordable, and reliable electricity to more than 12 million people in Florida. We operate one of the cleanest power generation fleets in the U.S. and our reliability is among the best in the nation. Our goal is to achieve Real Zero carbon emissions from our operations by 2045 by expanding our solar capacity, increasing battery storage and bringing new renewable energy opportunities to Florida, while improving customer affordability and reliability. Are you interested in becoming a game-changer in the energy industry? Join our world-class team today!
Position Specific Description
In this role you will be expected to:
Develops internal controls to ensure sustainable compliance cyber security regulations
Develops and maintains processes and procedures to assess, monitor and report compliance with mandatory security regulations
Builds processes and tools to provide the business visibility of cyber security compliance activities and drive accountability
Participates in cyber security assessment efforts including identification, assessment, tracking and resolution of findings
Assists with training, including training material development and deployment to ensure that compliance becomes a sustainable business practice
Prepares documentation in support of audits and maintains compliance with relevant regulations and company polices and standards
Gathers and prepares documentation to support regulatory audits, self-assessments, data requests, etc.
Participate, when assigned, in compliance-based investigations and/or audits in which evidence is requested to be gathered
Performs other job-related duties as assigned
The ideal candidate will have:
Strong understanding of NERC Critical Infrastructure Protection (CIP) regulations
Familiarity with risk management and internal controls
Familiarity with vulnerability management best practices
Job Overview
This job supports teams facilitating internal solution development across business units, to align Cybersecurity risk, leading technology solutions, and user experience. This position is responsible for various aspects of achieving compliance of cybersecurity including developing, implementing and enforcing IT policies, standards, methodologies and awareness using a risk based approach. Employees in this role develop a deep understanding of NextEra’s technology footprint, technology strategy, threat landscape and risks, to establish a collective Cyberstrategy.
Job Duties & Responsibilities
Builds processes and tools to provide the business visibility of cybersecurity risks and drive accountability
Develops and maintains policies, standards, processes, and procedures to assess, monitor, report, escalate and remediate cyber risk while maintaining corporate compliance with mandated security regulations
Assesses and reviews security and controls to ensure sustainable regulatory compliance
Develops processes and monitoring to identify, quantify, analyze, and report risk and compliance status
Coordinates cyber risk management efforts including identification, assessment, tracking and resolution of risk management activities across all levels of the organization
Assists with training, including training material development and deployment to ensure that compliance and risk becomes a sustainable business practice
Gathers and prepares documentation to support audits, self-assessments, data requests, etc.
Performs other job-related duties as assigned
Required Qualifications
High School Grad / GED
Bachelor’s or Equivalent Experience
Experience: 4+ years
Preferred Qualifications
Bachelor’s Degree
Certified Information Systems Aud (CISA) certification
Project Management Professional (PMP)
Six Sigma Green Belt Certified
NextEra Energy offers a wide range of benefits to support our employees and their eligible family members. Clickto learn more.
Employee Group: Exempt
Employee Type: Full Time
Job Category: Information Technology
Organization: Florida Power & Light Company
Relocation Provided: No
NextEra Energy is an Equal Opportunity Employer. Qualified applicants are considered for employment without regard to race, color, age, national origin, religion, marital status, sex, sexual orientation, gender identity, gender expression, genetics, disability, protected veteran status or any other basis prohibited by law. We are committed to a diverse and inclusive workplace.
NextEra Energy provides reasonable accommodation in its application and selection process for qualified individuals, including accommodations related to compliance with conditional job offer requirements, consistent with federal, state, and local laws. Supporting medical or religious documentation will be required where applicable and permitted by applicable law. To request a reasonable accommodation, please send an e-mail to, providing your name, telephone number and the best time for us to reach you. Alternatively, you may call 1-844-694-4748. Please do not use this line to inquire about your application status.
NextEra Energy will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.
NextEra Energy does not accept any unsolicited resumes or referrals from any third-party recruiting firms or agencies . Please see ourfor more information.