Cyber Security Analyst
Stantec Consulting International Ltd.
Our North America Water Utilities Cybersecurity team helps communities safeguard one of their most critical assets: water. We support utilities in understanding their overall cybersecurity posture, developing risk management plans, identifying practical improvements, and/or reconceptualizing overall cybersecurity strategy to support complete re-design across the business IT, operational technology (OT), industrial control system (ICS), and Access Control / CCTV networks. Our approach emphasizes risk-based assessments, policy and governance improvements, and program development, while integrating findings from trusted third-party technical testing providers (e.g., penetration testing, vulnerability scans, and application assessments). Coupled with our extensive experience in design, build and operation of water treatment and conveyance facilities, we help water utilities build a complete picture of their cyber risk exposure and maturity, and guide them toward sustainable improvements. This mid-level opportunity is intended for an experienced cybersecurity, OT/ICS, SCADA, or controls professional who can contribute independently to client engagements, perform and document cybersecurity assessments, develop practical recommendations, and support implementation of cybersecurity improvements across water and wastewater environments. Your Opportunity Stantec is at the forefront of the water industry, delivering thousands of projects for hundreds of communities globally. Our purpose is to conceive and develop the most impactful water projects that improve the health, quality of life and sustainability of the communities we live in and serve. You will be part of a collaborative, client-facing team that values sound technical judgment, adaptability, and continuous improvement. This role is expected to take ownership of defined workstreams, interact directly with utility stakeholders, and clearly communicate cybersecurity and OT/ICS concepts to a range of audiences—from operators and engineers to executive leadership. Key Responsibilities- Perform and support cybersecurity risk assessments, program reviews, and governance-focused security evaluations for water utility clients. Independently execute defined portions of engagements and contribute technical judgment to project findings and recommendations. This may include: Collection, review, and field verification of record documents, network diagrams, asset inventories, and system configurations Detailed field documentation of undocumented IT/OT/ICS installations, including lifecycle, maintenance, and obsolescence considerations Capture, analysis, and summary of network monitoring, vulnerability scanning, and other technical assessment results Technical research and evaluation of cybersecurity technologies, architectures, standards, and control approaches Develop assessment findings, remediation recommendations, technical memoranda, and client-ready reports Develop, review, and harmonize cybersecurity policies, standards, procedures, incident response plans, and strategies. Manage assigned tasks, budgets, schedules, deliverables, and coordination activities; contribute to overall project management as needed Evaluate and incorporate findings from third-party penetration testing, vulnerability scanning, and other technical service providers into comprehensive client risk profiles and remediation plans. Participate actively in client workshops, interviews, field investigations, design reviews, and presentations; facilitate defined portions of client meetings when appropriate. Maintain current technical and industry knowledge and take ownership of continued professional development, including: Maintenance and pursuit of relevant cybersecurity, networking, OT/ICS, and vendor certifications Continued development of practical skills with network monitoring, vulnerability assessment, system scanning, analysis, and penetration-testing tools Active engagement in key manufacturer, water-sector, OT/ICS cybersecurity, and industry-sponsored user groups Capabilities and Credentials- Working knowledge of cybersecurity principles, governance, risk management, network security, and OT/ICS security practices, with the ability to apply them in client environments. Strong written and verbal communication skills, including the ability to develop client-ready technical deliverables and explain technical risk and recommendations to non-technical stakeholders. Ability to work independently on assigned workstreams while collaborating effectively with clients, internal engineering teams, cybersecurity specialists, and third-party partners. Strong organizational and project execution skills for balancing multiple concurrent projects, priorities, and deadlines. Working knowledge of cybersecurity frameworks and guidance such as NIST CSF 2.0, NIST SP 800-53, NIST SP 800-82, ISA/IEC 62443, AWWA cybersecurity guidance, and applicable water-sector regulatory requirements. Familiarity with SCADA architectures, industrial networking, virtualization, Windows Server/Active Directory, SIEM/IDS/IPS, vulnerability management, or related OT technologies is highly desirable. Education and Experience- Bachelor’s degree in computer science, cybersecurity, information systems, or electrical engineering required. Other 4-year undergraduate engineering degrees will be considered. Relevant graduate education and/or evidenced directly applicable experience desirable. CompTIA Security+, Systems Security Certified Practitioner (SSCP) or equivalent cybersecurity/OT security certification required Certified Information Security Manager (CISA) and/or Certified Information Security Systems Professional (CISSP) desirable Minimum of 8 years of relevant professional experience in cybersecurity, IT/OT networking, SCADA/industrial control networks, systems engineering, or related technology disciplines, including demonstrated cybersecurity responsibilities. Water/wastewater or other critical-infrastructure experience strongly preferred. Must have good driving record and valid driver's license Continued advancement will be supported through progressively greater responsibility for technical leadership, client delivery, and project management. Attainment of advanced professional certifications, including CISSP, CISA, CISM or equivalent, will be required. Additional Information- Reports to: Cybersecurity Practice Lead, Water Utilities Location: Partially remote (strong preference for candidates near an existing office) Travel: Occasional travel to client sites or industry events (up to 50%) Office work: Typical office desktop workstation environment. Field work: typically at sites with treatment equipment in active use and/or active construction activities. Exposure to the elements including inclement weather is probable. This description is not a comprehensive listing of activities, duties or responsibilities that may be required of the employee. Other duties, responsibilities and activities may be assigned or may be changed at any time with or without notice. Pay Transparency: In compliance with pay transparency laws, pay ranges are provided for positions in locations where required. Please note, the final agreed upon compensation is based on individual education, qualifications, experience, and work location. At Stantec certain roles are bonus eligible. Actual compensation for part-time roles will be pro-rated based on the agreed number of working hours per week. Benefits Summary: Regular full-time and part-time employees (working at least 20 hours per week) have access to medical, dental, and vision plans, a wellness program, health saving accounts, flexible spending accounts, 401(k) plan, employee stock purchase program, life and accidental death & dismemberment (AD&D) insurance, short-term/long-term disability plans, emergency travel benefits, tuition reimbursement, professional membership fee coverage and paid family leave. Regular full-time and part-time employees will receive ten paid holidays in each calendar year. In addition, employees will be eligible to accrue vacation between 10 and 20 days per year and eligible for paid sick leave (and if more generous, in accordance with state and local law). Temporary/casual employees have access to 401(k) plans, employee stock purchase program, and paid leave, in accordance with state and local law. The benefits information listed above may not apply to union positions because benefits for such positions are governed by applicable collective bargaining agreements. Stantec provides equal employment opportunities to all qualified employees and applicants for future and current employment and prohibit discrimination on the grounds of race, colour, religion, sex, national origin, age, marital status, genetic information, disability, sexual orientation, gender identity or gender expression. We prohibit discrimination in decisions concerning recruitment, hiring, referral, promotion, compensation, fringe benefits, job training, terminations or any other condition of employment. Stantec is in compliance with laws and regulations and ensures equitable opportunities in all aspects of employment. At Stantec we are committed to ensuring our recruitment process is accessible to all. If you require reasonable adjustments to be made during the recruitment process then please inform a member of our Talent Acquisition team. Primary Location: United States | PA | Pittsburgh Organization: BC-2243 Water-US Delivery Employee Status: Regular Business Justification: New Position Travel: No Schedule: Full time Job Posting: 20/08/2026 03:08:12 Req ID: 1007296 #J-18808-Ljbffr Stantec Consulting International Ltd.
- ...Vanguard’s Technology Leadership Program, in the Risk & Security Analytics track, invites graduates to help identify and mitigate cybersecurity and operational risks across Vanguard’s systems and clients. The two-year, three-rotation program includes real‑world capstones...Suggested
- ...and maintain servers continuously to meet security compliance standards. Ensure that the Red... ..., and implement network systems. Perform cyber investigations and analysis. Research and... ...Microsoft Certified: Security Operations Analyst Associate (SC-200) Microsoft Certified:...SuggestedFull time
$110k - $120k
...Job Overview The Cybersecurity Analyst – SOC Operations is responsible for monitoring, detecting... ...This role serves as a key member of the Security Operations Center (SOC) and focuses on... ...security visibility and minimizing cyber risk exposure. Key Responsibilities/Accountabilities...SuggestedFull timeFor contractorsLocal areaRemote work$83.9k - $101.9k
## Cyber Security AnalystApplylocations: Virtual-CO-Capitolbldg: Indian Land, South Carolinatime type: Full timeposted on: Posted 2 Days... ...purpose and people have always come before profit.Cyber Security Analyst-Security OperationsMovement is changing the financial...SuggestedRelocation- ...advance the state of the art. Responsibilities Responsible to provide cyber-technical expertise through the conduct of cyber analytical activities, evaluation of information/technical/physical security systems and practices, and to identify, investigate, and analyze...SuggestedFull timeTemporary workFor contractorsImmediate startRelocation package
- ...Blue Yonder Defense Solutions in Dallas, TX, is seeking an Information Security Analyst focused on vulnerability management. The role is hybrid (onsite twice monthly) and directs risk-based remediation across cloud and on-premises environments. Responsibilities include...
- ...accommodation or an alternative application process. Cybersecurity Analyst US 7 days ago Requisition ID: 1212 Location and Travel Details:... ...-related systems. This role will assist the Information System Security Officer (ISSO) with Risk Management Framework (RMF) compliance,...Temporary workLocal areaRemote work
$90k - $125k
...We are seeking a Security Awareness Analyst to help build and scale our security awareness program. This role focuses on reducing human risk by educating employees, driving behavior change, and supporting a strong security culture across the organization. You’ll partner...Local area$112.71k - $183.14k
...validation activities as needed. Maintain integrations between Qualys, ServiceNow, CMDB, cloud platforms, reporting systems, and approved security technologies. Oversee host discovery, authenticated infrastructure scanning, scanner appliance operations, and Cloud Agent...Part timeRelocationFlexible hours- ...lifecycle, and cost efficiency. Job Description: Cybersecurity Analyst (Federal Assessments Top Secret Clearance) Position Summary... ...assessments for U.S. federal agencies. This role plans and executes security control assessments, technical testing, and compliance...Contract workFor contractors
$105k - $130k
Description Position Title: Cyber Security Analyst, Journeyman (PMA 271) Requisition #: 293 Work Environment: On Site Position Type: Exempt Salary Range: $105,000 — $130,000 ***This is an estimated salary range. Compensation will be commensurate with experience***...Work experience placementWork at office$7,094.23 per month
...be eligible for this role. Employees will be required to work at a FedEx office location up to several times per week. Sr Cyber Security Analyst Job Description We are seeking an experienced and technically proficient Senior Cyber Security Analyst to join our Information...Work experience placementWork at office$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity.... ...with resilience, grow with confidence, and proactively manage to secure success.Recruiting for this role ends on 12/31/2026.Work you'll...Local area$204k - $240k
...making a rewarding impact and Keeping Commerce Human.Salary Range:$204,000.00 - $240,000.00What's the role?Etsy is seeking a Staff Security Engineer to join our Security Operations team. As part of the larger Security org, this team plays a pivotal role in protecting...Full timeWork at officeLocal areaVisa sponsorshipFlexible hours$82.6k - $162.8k
Position Summary Join our Deloitte Cyber team to deliver powerful solutions to help our clients navigate the ever-changing threat... ...resilience, grow with confidence, and proactively manage to secure success. Identity security market is undergoing a fundamental transformation...Local areaVisa sponsorship- AnaVation is seeking a Cyber Vulnerability Analyst to support mission-critical customer operations in Reston, VA or Colorado Springs, CO. You will maintain the Vulnerability Management Program, manage the patch repository, issue alerts, and track compliance while coordinating...
$155.6k - $306.8k
Position Summary Help clients reduce cyber risk by leading forward deployed engineering work focused on patching, remediation... ...help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber...Local area- ...Engineer to design and implement network enhancements, monitor systems, and resolve issues across routers, switches, firewalls, and security devices. You will work with Fortinet, BNA, PRTG, and other enterprise tools while supporting end users and coordinating outages....Flexible hours
$105.4k - $207.8k
...As a Full Stack Engineer Senior Consultant in Deloitte Cyber’s Digital Trust & Privacy practice, you will operate at the intersection... ...engineering teams, and communicate effectively with business, security, privacy, legal, and compliance stakeholders.Recruiting for this...Local areaVisa sponsorship$105.4k - $207.8k
...technology landscape against their recovery requirementsBA/BS in Computer Engineering, Computer Science, Information Systems, Cyber Security, or equivalent demonstrated technical backgroundAbility to travel up to 50%, on average, based on the work you do and the clients...Local areaVisa sponsorship$105.4k - $207.8k
Position Summary As a Senior Consultant - Cyber Defense and Resilience, you will help deliver security engineering solutions that modernize client security... ...into deployable capabilities that improve analyst efficiency, alert quality, and response speed. Recruiting...Local areaVisa sponsorship$97.61k - $188.38k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity.... ...with resilience, grow with confidence, and proactively manage to secure success.Recruiting for this role ends on 10/31/2026Work you’ll...Local areaVisa sponsorship$105.4k - $207.8k
Position Summary Cyber Senior Consultant - DevSecOps Position Summary Are you interested in working in a dynamic environment... ...Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both...Local areaWorldwideVisa sponsorship$105.4k - $207.8k
Position Summary Join Deloitte’s Cyber practice as a Cyber SecOps Senior Consultant... ...landscape through scalable, resilient security operations solutions. In this hands-on role... ...with security operations center analysts and threat detection engineers to prioritize...Local areaVisa sponsorship$160k - $205k
...and make an impact. Join us!Job Description:Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America’s Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience...Full timeWork at officeShift workDay shift- ...Washington, DC area. You will resolve complex IT issues, including hardware, software, and telecom problems, while aligning with security and policy guidelines. You’ll work with security operations, perform malware analysis, and help harden network devices. Strong Microsoft...Full time
$155.6k - $306.8k
Position Summary As an Engineering Manager in Deloitte Cyber’s Digital Trust & Privacy practice, you will help clients solve complex identity, access, and data protection challenges through AI-enabled engineering solutions. This role sits at the intersection of...Local areaVisa sponsorship$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity.... ...with resilience, grow with confidence, and proactively manage to secure success.Recruiting for this role ends on 12/31/2026.Work you'll...Local areaVisa sponsorship- Netcompany Group A/S, a European technology leader, seeks a Lead IT Business Analyst to drive large-scale transformation projects for EU and Public Sector units. You will mentor analysts, gather requirements with stakeholders, and prioritize backlogs to align business needs...
$131.8k - $290k
Job Title: Senior Cyber Network Operations Analyst Job Category: Engineering Time Type: Full time Minimum Clearance Required to Start: TS/SCI with... ...programs with peers who are dedicated to advancing national security. Participate in fun team outings and team building events...Full timeContract workWork experience placementLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Security Analyst. Be the first to apply!
- information security consultant Brooklyn, NY
- cyber security analyst Brooklyn, NY
- remote cyber security analyst Brooklyn, NY
- cyber insurance Brooklyn, NY
- cyber sales Brooklyn, NY
- cyber Brooklyn, NY
- cyber security architect Brooklyn, NY
- cybersecurity software engineer Brooklyn, NY
- cyber security technician Brooklyn, NY
- work from home cyber security Brooklyn, NY

