Exposure Management Analyst
About the role
Southern Company is seeking a passionate and experienced Exposure Management Analyst to join our Cybersecurity organization. This technical, hands-on role requires the ability to assess exposures, analyze risks, and advise strategies to mitigate exposure. The role supports day-to-day continuous threat and exposure management operations focused on identifying and escalating exposed risks. Work outputs will support implementation of security technologies and controls to improve defensive posture, processes for investigations, and development of detection capabilities.
Responsibilities
- Support day-to-day operations of the exposure management program, including data review, report processing, and trend analysis.
- Track remediation of identified risks and mitigation strategies and escalate findings to key stakeholders.
- Analyze potential security risks and determine applicability to our environment.
- Execute emergency vulnerability workflows and procedures.
- Stay informed about publicly disclosed vulnerabilities (CVEs) and potential vulnerabilities (rumors, blogs, partial public analysis).
- Map vulnerability assessment results to asset inventory and key stakeholders; calculate prioritization based on risk assessment.
- Identify and recommend appropriate compensating controls to manage and remediate vulnerability risk with a focus on reducing potential impacts.
- Support development of vulnerability metrics and remediation-related dashboards and reports.
- Understand enterprise policies and advise on policies and technical standards regarding vulnerability management, scanning procedures, and secure configuration.
- Coordinate with key business partners to understand, prioritize, and coordinate vulnerability remediation activities.
- Collaborate with peers across the organization and maintain excellent working relationships with key partners in Technology Organization functions and business units.
- Understand business requirements and work with business partners to define solutions meeting both security mandates and business needs.
- Demonstrate strong critical thinking and curiosity to analyze and address security threats and vulnerabilities.
- Demonstrate Southern Company values: Safety First, Unquestionable Trust, Superior Performance, and Total Commitment.
Requirements
- Bachelor’s degree in computer science, technology, engineering, or a security-related field, or equivalent experience.
- Minimum 5 years of IT or security experience.
- Demonstrated expertise in supporting vulnerability and patch management programs, enhancing application security, and conducting thorough analyses of potential exposures.
- Experience working with vulnerability scanning, attack surface management, and cloud security posture management tools.
- Understanding of OWASP common vulnerabilities and testing methodologies.
- Understanding of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, code injection, race conditions, covert channel, replay, return-oriented attacks).
- Familiarity with different operating systems (e.g., Windows and LINUX/UNIX systems).
- Knowledge of IT security/hardening best practices for operating systems, web applications, and network devices.
- Experience building interactive dashboards and reports in PowerBI to visualize security metrics and exposure management data, including remediation progress and risk exposure.
- Proficient in Microsoft Excel, including advanced functions such as PivotTables, VLOOKUP, and data analysis tools.
- Experience using a SIEM to run search queries, perform log analysis, and build dashboards to monitor potential exposures.
- Ability to organize tasks, manage multiple priorities, meet schedules, and deliver on commitments.
- Ability to thrive in a fast-paced environment, demonstrating adaptability and flexibility in response to changing priorities and emerging threats.
- Experience driving discussions and consensus across a broad group of stakeholders and cross-functional teams regarding patching, security recommendations, and mitigation strategies.
- Strong verbal and written communication skills; ability to work independently and collaboratively within a team.
- Proven experience interacting with both technical and non-technical stakeholders.
- One or more relevant industry certifications (e.g., GSEC, CISSP, CISA).
- Required to submit to a thorough background examination, including NERC CIP & Insider Threat Protection background checks, drug screen, and psychological assessment.
- Occasional travel to local and regional locations for job duties.
Benefits
Southern Company invests in the well-being of its employees and their families through a comprehensive total rewards strategy that includes:
- Competitive base salary.
- Annual incentive awards for eligible employees.
- Health, welfare, and retirement benefits designed to support physical, financial, and emotional/social well-being.
- Eligibility for additional compensation, such as an incentive program.
A summary of benefits for this position can be found here.
About Southern Company
Southern Company (NYSE: SO) is a leading energy provider serving 9 million customers across the Southeast and beyond through its family of companies. Providing clean, safe, reliable, and affordable energy with excellent service is our mission. The company has electric operating companies in three states, natural gas distribution companies in four states, a competitive generation company, a leading distributed energy solutions provider with national capabilities, a fiber optics network, and telecommunications services.
Through an industry-leading commitment to innovation, resilience, and sustainability, we are taking action to meet customers' and communities' needs while advancing our goal of net-zero greenhouse gas emissions by 2050. Our uncompromising values ensure we put the needs of those we serve at the center of everything we do and are key to our sustained success. We are transforming energy into economic, environmental, and social progress for tomorrow.
Southern Company is an equal opportunity employer where qualifications are considered without regard to race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, gender identity or expression, or any other basis prohibited by law.
This position falls under the company’s Insider Threat Program and will have access to, and control over, sensitive data, systems, or assets.