POWER UP A CAREER WITH US

Our people power everything we do.

At Tampa Electric, dependable electricity starts with dedicated individuals whose talent, skill and passion drive our success. We’ve been lighting the way for West Central Florida for more than 125 years—and we’re just getting started.  

Join us and build a rewarding career with competitive pay, comprehensive benefits and a culture that supports your growth. Your potential finds its purpose at Tampa Electric.

We proudly deliver 99.98% electric service reliability to nearly 860,000 customers across 2,000 square miles of Hillsborough County and parts of Polk, Pasco and Pinellas counties. Through innovation and strategic investments, we’re creating a cleaner, brighter energy future—while delivering exceptional service every step of the way.

We reflect the communities we serve and foster a workplace where every employee feels welcomed, valued and engaged. Join our team of energy experts and help shape the future of power.

Storm Duty Requirements

Tampa Electric and its sister companies serve a role in providing critical services to our community during an emergency. Team members are required to participate in the response/recovery activities related to emergencies/disasters to maintain service to our Tampa Electric customers. Team members are required to work in their normal job duties or other assigned activities. Proper compensation will be made in accordance with the company's rules and procedures.

Responding to storms will be considered a condition of employment.

Tampa Electric is proud to be an Equal Opportunity Employer. To learn more, please click on link below: 

Disclosure Statements

Title: Cyber Security Analyst Progression 
Company: Tampa Electric Company 
State and City: Florida - North Ruskin
Shift: 8 Hr. X 5 Days

 

 

Cyber Security Analyst Progression

 

Cyber Security Analyst – Level 1:

 

POSITION CONCEPT: 
The Cyber Security Analyst  – Operational Technology (OT)  is responsible for maintaining the security and integrity of operational technology systems through routine cybersecurity maintenance activities. Manages and continuously improves the asset inventory database to ensure accurate visibility and tracking of the operational technology. Supports the development and implementation of the organization’s OT Cybersecurity program and framework, aligning activities with industry standards and regulatory requirements. Collaboration with cross-functional teams ensures consistent application of security controls and continuous improvement of cybersecurity posture.

 

Cyber Security Analyst Sr – Level 2:


POSITION CONCEPT: 
The Cyber Security Analyst Sr is responsible for addressing Operation Technology (OT) vulnerabilities by taking the appropriate corrective action or following the appropriate escalation procedures, assessing threat landscape, confirming for secure configuration of Tampa Electric’s OT assets, identifying vulnerabilities applicable to the OT components and developing the remediation plans. Develop cybersecurity maintenance procedures and enforce OT cybersecurity framework and standards, evaluate IT related needs of OT environment and team members, and identify cybersecurity awareness gaps. Evaluate OT cyber assets and assign criticality rating to cyber assets and develop remediation plan for gaps in compliance of the systems with the OT cybersecurity program. Has increased responsibilities in security intelligence monitoring, incident response, and development of cybersecurity maintenance procedures. May serve as a project lead and mentor Cyber Security Analyst. Works under general supervision.

 

Cyber Security Analyst Lead – Level 3:


POSITION CONCEPT: 
The Cyber Security Analyst Lead is responsible for maintaining and improving OT cybersecurity framework and standards, reviewing cybersecurity maintenance procedures and threat landscape assessment, implementing vulnerability management technologies and vulnerability remediation plans. Lead will facilitate asset criticality evaluation process, maintain cybersecurity maintenance schedule, and train staff. Lead will maintain and improve the OT cybersecurity program, ensuring its alignment with the latest industry standards (NERC, NIST), build cross departmental ITOT collaboration, educate team members the latest cybersecurity industry trends.  Has increased responsibilities in evaluating industry standards and adopting them into cybersecurity controls. May serve as a project lead and mentor to other department team members.

 

Level 1:

 

DUTIES AND RESPONSIBILITIES:
Identifies cybers assets, examines and extracts asset configuration, updates the OT cyber asset database to protect operational technology.
Installs security patches, updates antivirus definitions, and creates system backups. Collects, maintains, updates baselines of the operational  systems, updates cybersecurity SharePoint site for stakeholder engagement. 
Reviews the releases of new CVEs from external sources for applicability to operational  assets regularly. 
Assists OT team l with IT-related work: software and hardware of HMIs and network appliances, remote connectivity. 

 

Level 2:

 

DUTIES AND RESPONSIBILITIES:
Evaluates network architecture, system configuration, and external connection layout to ensure compliance of operational technology systems with cybersecurity program. 
Reviews vendor manuals, training materials, industry standards, and develops cybersecurity maintenance procedures. 
Provides activities planning guidance, feedback on work completed, and training to Cybersecurity Analysts. 
Evaluates new CVEs for applicability to OT cyber assets. 

 

Level 3:

 

DUTIES AND RESPONSIBILITIES:
Translate all applicable standards (NERC CIP, NIST CSF, NIST 800-53, etc.) into appropriate systemic and procedural solutions.  
Review, revise, and update Energy Supply’s operational technology cybersecurity standards and procedures. 
Evaluate the Energy Supply’s operational technology  systems and coordinate necessary actions to maintain compliance with applicable internal and regulatory standards.  
Develop management responses to internal and external government and regulatory audits and data requests with respective management and team members. 
Review operational technology cyber asset management process. Train and educate team members and facilitate ITOT collaboration. 

 

EDUCATION: Level 1, 2 and 3


Required: High School Diploma or equivalent.
Preferred: Bachelor’s Degree in Computer Science, Information Systems, or other IT related discipline.

 

LISCENSES/CERTIFICATIONS: Level 1, 2 and 3 

 

Required: From the list of certification vendors, one related Information Security professional certification or ability to obtain via self-study within one year of hire date
(ex: CISCO, (ISC)2, GIAC, ISA, ISACA, CompTIA, e-Council, etc.). 

Preferred: three or more of the following or similar Information Security professional certifications (ex: ACE, CCE, CAP, CEH, CCNA, CCNP, CISA, CISM, CISSP, CRISC, EnCE, GCCC, GCDA, GCED, GCFA, GCFE, GCIA, GCIH, GCWN, GICSP, GMON, GNFA, GPEN, GPPA, GREM, GWAPT, GXPN, OSCP, SSCP).

 

EXPERIENCE:


Level 1: Required: 5 years of related Cyber Security, industrial automation, IT, OT, or Technical (hands-on networking, telecommunications [radios, satellites, communications, etc.], hardware, software) experience.  
May consider 2 years related experience with an Associate’s Degree or 1 year related experience with a Bachelor’s Degree in Computer Engineering/Science, Cybersecurity, Information Systems, or other IT related discipline. 

Level 2: Required: 6 years of related Cyber Security, industrial automation, IT, OT, or Technical (hands-on networking, telecommunications [radios, satellites, communications, etc.], hardware, software) experience.  
May consider 4 years related experience with an Associate’s Degree or 3 year related experience with a Bachelor’s Degree in Computer Science, Information Systems or other IT related discipline. 

Level 3: Required:8 years of related Cyber Security, industrial automation, IT, OT, or Technical (hands-on networking, telecommunications [radios, satellites, communications, etc.], hardware, software) experience.    
May consider 4 years related experience with an Associate’s Degree or 2 years related experience with a Bachelor’s Degree in Computer Science, Information Systems or other IT related discipline. 

 

Level 1:


KNOWLEDGE/SKILLS/ABILITIES:
Required:     
Basic knowledge of industrial automation (ABB, Allen Bradley, Emerson, GE, Siemens) or basic knowledge of major operating system security (Windows, Mac OS, Linux/Unix), endpoint, server, and network security. 
Basic knowledge of major security systems and functions for incident response, monitoring and forensic activities: Firewalls, IDS/IPS, Antivirus/Antimalware, SIEM, Incident Response, Threat Prevention, Web/Application Control Filtering, Email Filtering, NetFlow Analysis, Endpoint Security, Configuration and Change Management, File Integrity Monitoring, and DLP.
Basic knowledge of log, network, and system forensic investigation techniques. 
Basic working knowledge of networking protocols and systems administration.
Basic working knowledge of identifying and capturing indicators of compromise and methods for detecting them within incidents.
Basic working knowledge with packet analysis and malware analysis.
Basic working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX and PCI.
Good analytical and risk assessment skills and strong listening, written and computer communication skills for reporting and auditing purposes.

Preferred:    
Performing cybersecurity maintenance activities: applying patches, updating antivirus signatures, creating system backups.
Configuring network appliances
Troubleshooting network communications
Supporting compliance audits
Designing, implementing, and supporting industrial automation systems
Designing and implementing a standard network architecture
    

Level 2:

KNOWLEDGE/SKILLS/ABILITIES:
Required:     
Advanced working knowledge of major operating system security (Windows, Mac OS, Linux/Unix), web server security, and network security.
Advanced working knowledge of major security systems and functions for incident response, monitoring and forensic activities: Firewalls, IDS/IPS, Antivirus/Antimalware, SIEM, Incident Response, Threat Prevention, Web/Application Control Filtering, Email Filtering, NetFlow Analysis, Endpoint Security, Configuration and Change Management, File Integrity Monitoring, and DLP.
Advanced working knowledge of log, network, and system forensic investigation techniques.
Advanced working knowledge of networking protocols and systems administration.
Advanced working knowledge of identifying and capturing indicators of compromise and methods for detecting them within incidents.
Advanced working knowledge with packet analysis and malware analysis.
Advanced working knowledge (hands-on experience) of scripting in languages such as Python, Bash or PowerShell.
Advanced working knowledge of penetration testing technologies and procedures.
Advanced working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX and PCI.
Strong analytical and risk assessment skills as well as strong listening, written and computer communication skills for reporting and auditing purposes.

 

Level 3:

KNOWLEDGE/SKILLS/ABILITIES:
Required:     
Developing and implementing OT Cybersecurity program. 
Evaluating and adopting cybersecurity controls to the OT environment.
Thorough working knowledge of major operating system security (Windows, Mac OS, Linux/Unix), , web server security, and network security.
Thorough working knowledge of major security systems and functions: Firewalls, IDS/IPS, Antivirus/Antimalware, SIEM, Incident Response, Threat Prevention, Web/Application Control Filtering, Email Filtering, NetFlow Analysis, Endpoint Security, Configuration and Change Management, File Integrity Monitoring, and DLP.
Expert working knowledge of log, network, and system forensic investigation techniques.
Expert working knowledge of networking protocols and systems administration.
Thorough working knowledge of identifying and capturing indicators of compromise and methods for detecting them within incidents.
Expert working knowledge with packet analysis and malware analysis.
Expert working knowledge (hands-on experience) of scripting in languages such as Python, Bash or PowerShell.
Expert working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX and PCI.
Strong analytical and risk assessment skills as well as strong listening, written and computer communication skills for reporting and auditing purposes.
Preferred:    
Thorough working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX and PCI.
Expert working knowledge of reverse engineering malware.

COMPETENCIES:
Builds Strong, Collaborative Relationships 
Cultivates Innovation and Embraces Change
Develop People and Teams
Speaks up on Safety, Health, and the Environment
Drives Operational Excellence for Customers
Takes Ownership & Acts with Integrity
Thinks Strategically & Exercises Sound Judgment

WORKING CONDITIONS:
Travel between power plants. May require assistance responding to cybersecurity incidents outside of normal business hours.

PHYSICAL DEMANDS/ REQUIREMENTS:
Requires the use of PPE at the power plants. May require interacting with equipment in the computer rooms at the plants around hot and audible equipment. May require light lifting, ascending/descending stairs and reaching.

TECO offers a competitive Benefits package!!

Competitive Salary *401k Savings plan w/ company matching * Pension plan * Paid time off* Paid Holiday time * Medical, Prescription Drug, & Dental Coverage  *Tuition Assistance Program * Employee Assistance Program * Wellness Programs * On-site Fitness Centers * Bonus Plan and more!

 

STORM DUTY REQUIREMENTS....Please make sure to read below!!!  Responding to storms will be considered a condition of employment.

TECO Energy and its companies serve a role in providing critical services to our community during an emergency. Team members are required to participate in the response/recovery activities related to emergencies/disasters to maintain service to our TECO Energy customers. Team members are required to work in their normal job duties or other assigned activities. Proper compensation will be made in accordance with the company's rules and procedures.

 

TECO Energy is proud to be an Equal Opportunity Employer.

TECO Energy is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability status, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by law, except where physical or mental abilities are a bona fide occupational requirement and the individual is unable to perform the essential functions of the position with reasonable accommodations.

In order to provide equal employment and advancement opportunities for all individuals, employment decisions at TECO Energy will be based on skills, knowledge, qualifications and abilities.

Pay Transparency Non-Discrimination Statement
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information. 41 CFR 60-1.35(c)

ADA policy
It is the policy of TECO Energy to provide reasonable accommodation for all qualified disabled individuals who are employees and applicants for employment, unless it would cause undue hardship. The corporation will adhere to applicable federal and state laws, regulations and guidelines, including, but not limited to the Americans with Disabilities Act (ADA) of 1990 and section 503 and 504 of the Rehabilitation Act of 1970s.

 

Application accommodations
Applicants may request reasonable accommodation in the application process five business days prior to the time accommodation is needed.

 

Pre-employment physical exams may be required for positions with bona fide job-related physical requirements regardless of disability. 

 

 


Nearest Major Market: Tampa

Job Segment: Testing, Network, Computer Science, Linux, Unix, Technology