Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
VELCO Vermont Electric Power Company, Inc. is seeking a Cybersecurity Operations Engineer to protect the corporate technology environment and support secure delivery of services across the organization.
The role spans incident response, threat analysis, vulnerability management, security engineering, and regulatory compliance. You will work across endpoints, identities, networks, servers, cloud services, and third‑party connections, collaborating with IT, Compliance, Legal, and business teams.
As the nation’s first statewide, “transmission only” company, VELCO manages the safe, reliable, cost-effective transmission of electric power throughout Vermont and as a part of the integrated New England regional network.
At VELCO, cybersecurity is essential to maintaining a reliable and resilient electric grid. As a Cybersecurity Operations Engineer, you will play a critical role in protecting VELCO’s corporate technology environment from evolving cyber threats while supporting the secure delivery of the technology and services our organization depends on. If you enjoy solving complex problems, investigating suspicious activity, improving security capabilities, and working with a team committed to protecting critical infrastructure, this is an opportunity to make a meaningful impact.
This role combines hands-on security operations, incident response, threat analysis, vulnerability management, security engineering, and regulatory compliance. You will work across endpoints, identities, networks, servers, cloud services, applications, and third-party connections while partnering with Information Security, IT Infrastructure, business teams, Compliance, Legal, Human Resources, and other stakeholders. You will also contribute to VELCO’s NERC CIP cybersecurity program, including cybersecurity incident response activities under CIP-008, internal network security monitoring under CIP-015, and risk assessment support under CIP-013. The Cybersecurity Operations Engineer is expected to independently complete assigned operational and compliance-support activities, apply sound judgment during security events, and elevate material risks promptly. The role performs complex security analysis, develops repeatable operational procedures, maintains defensible records, and contributes to continuous improvement of VELCO’s corporate cybersecurity program. The position typically requires progressively responsible experience sufficient to operate with limited oversight while collaborating effectively across technical and business functions.
Education & Training
Bachelor’s degree in cybersecurity, information technology, computer science, information systems, or a related technical discipline is preferred. An associate degree, recognized technical or military training, or an equivalent combination of relevant education and progressively responsible experience may be considered. At least one current industry-recognized cybersecurity certification aligned with security operations—such as CompTIA Security+, CompTIA CySA+, GIAC Certified Incident Handler (GCIH), GIAC Certified Intrusion Analyst (GCIA), or an equivalent credential—is preferred; candidates without a certification may be expected to obtain an approved credential within 12 months of hire.
The position requires ongoing role-based training in incident response, security monitoring and detection, threat analysis, vulnerability management, cloud and identity security, and applicable VELCO procedures and NERC CIP requirements, including CIP-008 and CIP-015.
3–7 years of progressively responsible experience in cybersecurity operations, security engineering, incident response, infrastructure security, or a related field. Experience in a regulated environment, electric utility, or critical infrastructure organization is preferred. Practical experience investigating alerts, administering security tools, coordinating remediation, and producing clear operational or compliance evidence is expected.
Working knowledge of security operations center practices, incident handling, threat analysis, alert triage, case management, and escalation.
Experience with SIEM, endpoint detection and response, vulnerability management, email security, identity protection, network security monitoring, and related enterprise security platforms.
Knowledge of Windows and Linux systems, Microsoft Active Directory and Entra ID, Microsoft 365, virtualization, networking, DNS, DHCP, VPN technologies, cloud services, and common enterprise applications.
Ability to analyze logs and telemetry from endpoints, identity systems, firewalls, network devices, servers, cloud platforms, and applications to identify suspicious behavior and determine impact.
Understanding of cybersecurity incident response lifecycles, evidence handling, root-cause analysis, recovery, lessons learned, and the preparation of clear incident documentation.
Familiarity with internal network security monitoring concepts, detection engineering, traffic and flow analysis, sensor coverage, logging architecture, and escalation procedures.
Working knowledge of NERC CIP concepts and the ability to support documented controls, evidence, testing, and audit activities, particularly for CIP-008 and CIP-015.
Familiarity with recognized cybersecurity practices and frameworks such as NIST guidance, CIS Controls, MITRE ATT&CK, vendor security guidance, and risk-based vulnerability management.
Ability to develop and maintain scripts, queries, automation, playbooks, test plans, and technical procedures that improve security operations while following change-control requirements.
Strong analytical, troubleshooting, organizational, and project coordination skills, with careful attention to detail and the ability to manage competing priorities.
Excellent written and verbal communication skills, including the ability to explain technical findings, operational impact, compliance considerations, and recommended actions to technical teams, management, auditors, and business stakeholders.
Ability to maintain confidentiality, exercise sound judgment, work effectively during high-pressure events, and collaborate professionally across a diverse organization.
Mission-driven organization supporting critical energy infrastructure
Collaborative, cross-functional team environment
Prolonged periods of sitting at a desk and working on a computer are required. The position must be able to perform detailed analytical work, manage multiple priorities, communicate clearly during time-sensitive events, and maintain accuracy in potentially stressful situations with frequent interruptions. Participation in rotating on-call coverage and work outside normal business hours may be required for significant security events, maintenance, exercises, or regulatory activities. Periodic travel and overnight stays may be required for training, workshops, meetings, or industry events.
$90,916.80 - $109,100.16 - $127,283.52/salary This compensation range represents the minimum, midpoint and maximum pay for this position. Individual offers will be based on various factors including, but not limited to, qualifications, education, skills, competencies, and experience. Please note that most offers for new employees fall under the midpoint of the range, allowing room for continued salary growth. Base pay is just one component of our total compensation package, which may also include comprehensive benefits, generous paid time off and incentive compensation (bonus) potential.
Visit Velco.com for additional information on VELCO culture, benefits, and the recruiting process.
We are an equal opportunity employer, and ALL qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.
Eligible applicants must be authorized to work in the United States.
VELCO is handling all aspects of talent acquisition internally and will not engage the services of third-party staffing agencies, recruiters, or headhunters. We kindly request that these entities refrain from contacting us.
Any offer of employment will be contingent upon successful reference check, background check (including social media check), physical examination, drug screening.
If you need an accommodation as part of the application or interview process, please send a request to careers@velco.com
Serve at the heart of grid transformation amidst stunning scenery in a safe, supportive environment. Join us in shaping Vermont’s energy landscape and be a part of a team dedicated to powering a brighter tomorrow.
VELCO is committed to the safety of our people, grid reliability, and creating a sustainable Vermont. At VELCO we care about our team members. Our benefits support the holistic well-being of our team members and their families — from financial security to mental and physical health. View 2026 Benefit Guide.