CB&I · 5 days ago
Sr Cybersecurity Analyst
CB&I is the world’s leading designer and builder of storage facilities, tanks and terminals. The Sr Cybersecurity Analyst is responsible for monitoring and responding to security incidents, implementing robust security measures, and developing strategies to mitigate risks, ensuring the integrity, confidentiality, and availability of the company's information assets.
EnergyInformation TechnologyNatural ResourcesOil and GasRenewable EnergyTelecommunications
Responsibilities
Assesses information risk and facilitates remediation of identified vulnerabilities with the CB&I network, systems and applications. Reports on findings and recommendations for corrective action
Performs vulnerability assessments as assigned utilizing IT security tools and methodologies
Performs assessments of the IT security/risk posture within the IT network, systems and software applications, in addition to assessments within the Vendor Management Program
Identifies opportunities to reduce risk and documents remediation options regarding acceptance or mitigation of risk scenarios
Facilitates and monitors performance of risk remediation tasks, changes related to risk mitigation & reports on findings
Maintains oversight of IT and vendors regarding the security maintenance of their systems and applications
Assists in all IT audits, IT risk assessments and regulatory compliance
Serve as project manager/lead within IT security projects
Promote awareness of applicable regulatory standards, upstream risks and industry best practices across CB&I
Act as a Tier 3 escalation point for security incidents and investigations
Manage and optimize security tools and platforms across the enterprise
Create, review, and troubleshoot Palo Alto Next-Gen Firewall rulesets
Administer and monitor CrowdStrike EDR and Proofpoint Email Security solutions
Operate and fine-tune SIEM platforms, including alert use case creation and optimization
Leverage Microsoft Cloud Security Tools (Defender for Endpoint, Defender for Identity, Purview, etc.) to secure cloud environments
Lead the Vulnerability Management program, including scanning, prioritization, remediation coordination, and reporting
Collaborate with and delegate tasks to MSSPs, ensuring SLAs and quality standards are met
Develop and maintain security documentation, runbooks, and incident response procedures
Stay current with emerging threats, vulnerabilities, and regulatory requirements
Qualification
Required
Bachelor's degree in Cybersecurity, Computer Science, or related field
Completion of a recognized cybersecurity training program (e.g., SANS, NIST NICE Framework-aligned bootcamps)
Industry certifications such as: CompTIA Security+, CySA+, Certified Ethical Hacker (CEH), GIAC certifications (e.g., GSEC, GCIA, GCIH), Microsoft SC-200, SC-300, CISSP or CISM (for more senior candidates)
10 Years of experience in Information Technology, 7+ years of hands-on experience in cybersecurity roles
Strong experience with: Palo Alto Networks firewalls (ruleset creation, troubleshooting), CrowdStrike Falcon, Proofpoint Email Security, Microsoft Security Suite (Defender, Sentinel, Purview, etc.), SIEM platforms (e.g., Splunk, Sentinel, QRadar, Elastic (ELK))
Proven experience interoperating with MSSPs, third-party security vendors, and or clients
Strong assessment and analytical expertise to interpret outputs from monitoring and reporting tools to enable proactive identification of potential problem areas and implement targeted solutions to mitigate risks before they affect operations
Strong knowledge of networking concepts, network virtualization technologies, such as SDN (Software-Defined Networking) and virtual private networks (VPNs), protocols, and technologies, including TCP/IP, IP Sec, DNS, DHCP, BGP, LAN/WAN, routing, switching, and wireless networks
In-depth understanding of network security principles and best practices, including firewalls, intrusion detection systems, access controls, encryption techniques, enterprise and data center networks, cloud infrastructure, VoIP, third-party integration, and Wireless
Strong knowledge of OSI and TCP/IP reference models, IP addressing, IP Subnetting, VLSM, QoS, VXLAN, backup, Micro-segmentation, security zones, security boundaries, bandwidth efficiency, high availability, and redundancy
Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001)
Solid understanding of encryption technologies
Solid understanding of endpoint protection, and cloud security principles
Strong knowledge of cybersecurity hardware and software configuration using hands-on and scripting
Must have excellent organizational, project management, and communication skills
Leverages communication and collaboration skills to solve problems with global peers across various functions
Ability to perform peer reviews of work products and documents
Proactively embraces and promotes the company's values and culture, including diversity & inclusion and a healthy and safe work environment
Possesses strong verbal & written communication skills in English, with demonstrated experience in effectively speaking to all levels of the organization, including executive level, SMEs (Subject Matter Experts), and Principal Technologists
Preferred
Experience with a global company preferred
Company
CB&I
CB&I provide technology and infrastructure for the energy industry, focusing on safety and quality standards.
H1B Sponsorship
CB&I has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2024 (4)
2023 (10)
2022 (7)
2021 (29)
2020 (20)
Funding
Current Stage
Public CompanyTotal Funding
unknown2024-10-07Acquired
2001-03-01Post Ipo Equity
1997-03-27IPO
Leadership Team
Recent News
The Independent
2025-12-26
Company data provided by crunchbase