LUMAENERGY

Analyst, IT OT Cybersecurity

Santurce - Lucchetti Full time

Job Summary:

Drives cybersecurity awareness initiatives to reduce risk and strengthen organizational resilience by promoting secure user behaviors and supporting policy alignment. Investigates user-related threats and contributes to incident response efforts to ensure timely mitigation and enhance the organization’s security posture.

Job Description:

  • Monitors and validates security controls and conducts vulnerability assessments to prevent malware infections, detect indicators of compromise, and ensure effectiveness of security measures across systems and endpoints.

  • Investigates cybersecurity incidents and user-related threats such as phishing attacks, documenting findings and providing technical evidence to enable timely containment and strengthen organizational security posture.

  • Develops and executes cybersecurity awareness and training programs by collaborating with stakeholders, managing digital initiatives, and updating content based on emerging threats to reduce human-related risk and ensure compliance.

  • Reports cybersecurity performance metrics and maintains risk registers to provide visibility into current threats, support informed decision-making, and drive continuous improvement in security strategies.

  • Collects and analyzes data to identify trends and provide actionable insights for business decisions.

  • Develops reports and dashboards to communicate findings clearly and support performance tracking.

  • Collaborates with teams to define data needs to ensure accurate and relevant analysis aligned with goals.

  • Performs additional tasks aligned with role expectations and qualifications to support team goals and operational flexibility.

  • Follows established company policies, procedures, and standards to ensure full compliance with applicable laws and industry regulations.

  • Participates in storm restoration tasks and assigned drills to contribute to the safe and reliable recovery of services.

Supervisory responsibilities: No

Additional Job Description:

Education

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field from an accredited college or university.

Experience

  • 3 years of experience in cybersecurity, risk management, or IT security awareness programs.

  • Experience in cybersecurity awareness programs, risk disciplines, and/or cybersecurity risk management programs.

  • Additional experience may substitute for required education when it aligns with the competencies and knowledge necessary for the role: Associate’s degree in a relevant field may substitute when accompanied by a minimum of 5 years of experience performing similar functions and at least 3 years of experience performing a previous Analyst role.

Competencies (Skills)

  • Knowledge of (North American Electric Reliability Corporation Critical Infrastructure Protection (NERC CIP), and the NIST Cybersecurity Framework is preferred.

  • Strong understanding of emerging cyber threats, incident response, and user behavior analytics.

  • Ability to design, deliver, and evaluate effective cybersecurity awareness programs.

  • Exceptional written and verbal communication skills, with the ability to translate technical content for non-technical audiences.

  • Strong ability to develop and deliver effective presentations and facilitate meetings related to strategy, training, and collaborating with various stakeholders

  • Strong organizational skills and ability to manage multiple priorities.

  • Ability to identify and influence key stakeholders to support cybersecurity initiatives.

Licenses/Certifications

  • Certified Information Systems Security Professional (CISSP), Global Information Assurance Certification (GIAC), Security+, Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH) or related security certification preferred

Travel Requirements

  • No

Physical Demands:

  • Stationary Position: Constantly

  • Pushing/ Pulling/ Reaching: Seldom

  • Kneel: Seldom

  • Grab: Seldom

  • Bend: Seldom

  • Lift/Carry over: 0 - 15 pounds

Working Conditions:

  • Wet or humid: Seldom

  • Working near or on moving mechanical parts: Seldom

  • Working near or on heavy machinery: Never

  • Working in high places: Seldom

  • Exposed to fumes or airborne particles: Never

  • Frequency of working in outdoor weather conditions: Never

  • Work with electricity: Never

  • Loud noise conditions: Seldom

We are committed to diversity and inclusion, and it is because of this that we offer equal employment opportunity to both our employees and candidates, while also striving for an environment that is free of any form of discrimination and harassment. We base our employment decision solely on the qualifications of the individual, their merits, and the present needs of the business.