Network Security Analyst
Company Description
Customized Energy Solutions (CES) is a global energy services and technology company that helps market participants operate, comply, and compete in deregulated electricity and natural gas markets. Founded in 1998 and headquartered in Philadelphia, CES works with utilities, independent power producers, energy suppliers, developers, asset owners, and investors across North America and globally.
CES delivers market intelligence, regulatory and market design support, asset and portfolio management, retail market operations, and energy technology solutions. Our teams track and interpret ISO/RTO rules and policy developments, support resource planning and market participation, manage operational and settlement processes, and develop proprietary software platforms—including CES BLUE, GOLD, RED, GRIDBOOST, and CoMETS—that help clients manage risk, optimize performance, and respond effectively to market change.
CES is committed to advancing transparent, efficient, and non-discriminatory energy markets while delivering practical, high-quality solutions marked by integrity, rigor, and long-term client value.
CES has been nationally and regionally recognized for sustained growth and innovation, including listings on the Inc. 500|5000 and Philadelphia Business Journal’s Top 100 Companies, as well as a Best Places to Work designation with Hall of Fame status for five or more consecutive years.
With headquarters in Philadelphia and offices across the U.S., Canada, Japan, India, and Vietnam, CES offers a collaborative, flexible, and globally connected work environment for professionals passionate about the future of energy.
Job Description
The Network Security Analyst is a key member of the global Infrastructure Services team, responsible for supporting and maturing CES's network and information security program across domestic and international locations. This position will be based in our Ho Chi Minh office. This is a growth-oriented role suited to a motivated security professional with a solid foundation, ready to take on broader ownership over time.
Working from the HCMC office, you will collaborate closely with a co-located Senior Network Engineer and partner with U.S.-based IT leadership on security priorities, escalations, and strategic initiatives. You will operate within an established security environment, contributing to vulnerability management, incident response, policy governance, and security monitoring, while developing into CES's primary security subject matter expert in the region.
Responsibilities
Security Monitoring & Incident Response
- Oversee security event platforms, leverage EDR tools, and review alerts for anomalous activity, intrusion indicators, and policy violations across Windows and Linux servers to mitigate threats and protect business operations.
- Triage and investigate EDR alerts and endpoint detections, escalating confirmed incidents to US-based IT leadership and supporting containment and remediation efforts.
- Maintain and execute incident response plans and playbooks; participate in post-incident reviews and contribute to lessons-learned documentation to drive continuous improvement.
- Monitor threat intelligence advisories and convert emerging risks into actionable recommendations to help the team proactively reduce security vulnerabilities and protect operations.
Vulnerability Management
- Leverage vulnerability scanning tools to perform regular assessments across a substantial server fleet running mixed Windows and Linux workloads.
- Engage with infrastructure teams to optimize patch management and software deployment workflows, enabling timely remediation of identified vulnerabilities.
- Monitor remediation progress and communicate status updates against defined SLAs and risk thresholds.
- Facilitate information sharing and response efforts with vendors and third-party partners during vulnerability disclosure exercises to support effective remediation.
- Coordinate remediation efforts with both infrastructure and application development teams, translating vulnerability findings into actionable guidance appropriate for each audience and tracking progress through to closure.
Security Policy & Governance
- Play a vital role in developing, maintaining, and sharing network and data security policies, standards, and procedures aligned with industry frameworks (NIST CSF, CIS Controls, or similar).
- Proactively review policies to help maintain relevance and keep ahead of changing regulatory requirements.
- Inspire a culture of security awareness across the organization by designing engaging training materials and dynamic internal communications.
Network Security Standards
- Drive the consistent enforcement of network security standards across firewalls, VPNs, segmentation, and access controls in partnership with the Senior Network Engineer and the US team.
- Conduct security reviews for new projects, system changes, and cloud migrations, ensuring guidance aligns with organizational standards.
- Embed security practices into DevOps workflows and cloud-based environments (AWS and Azure).
Reporting & Documentation
- Prepare weekly security reports that summarize monitoring findings, incident activity, vulnerability posture, and remediation progress for IT leadership.
- Maintain thorough documentation for security configurations, processes, runbooks, and incident records.
- Develop security metrics and KPIs to communicate the organization's risk posture over time.
Qualifications
Required
- Demonstrate 3+ years of experience in network security, information security, or a related cybersecurity role.
- Use EDR to triage detections, investigate alerts, and drive remediation.
- Operate vulnerability tools and manage remediation workflows at scale.
- Manage enterprise patch management and deploy software in mixed Windows and Linux environments.
- Apply network security fundamentals: configure firewalls, establish VPNs, implement IDS/IPS, segment networks, and enforce access controls.
- Implement at least one recognized security framework (NIST CSF, CIS Controls, ISO 27001, or similar).
- Apply cloud security concepts in AWS and/or Azure hybrid environments.
- Demonstrate strong written and verbal communication skills; document clearly and translate technical risk into plain language for non-technical stakeholders.
- Independently manage day-to-day responsibilities while proactively sharing knowledge, coordinating, and collaborating with a globally distributed team to achieve joint objectives.
- Demonstrate a bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
Preferred Certifications
- CompTIA CySA+ or higher
- GCIA or GCIH (GIAC Intrusion Analyst / Incident Handler)
- CEH (Certified Ethical Hacker)
- AWS Certified Security (Specialty)
- Microsoft SC-200
Nice to Have
- Design, implement, and oversee SIEM platforms, ensuring efficient management of log aggregation and correlation workflows to enable effective detection and response capabilities.
- Apply CI/CD pipeline security or implement DevSecOps practices.
- Utilize a major EDR platform, tune alerts, hunt threats, and investigate incidents.
- Oversee enterprise patch management or administer software deployment tooling in a Windows-heavy environment.
- Lead or actively support third-party security audits and penetration testing engagements, clearly defining responsibilities and outcomes.
Additional Information
CES offers a competitive salary commensurate with experience, a performance-based annual bonus, a year-end bonus in accordance with company policy, premium health insurance for employees and eligible family members, and statutory insurance and benefits in accordance with Vietnamese law. Associates also receive applicable allowances, 12 days of annual leave, paid sick leave, public holidays, additional company-designated leave, and access to professional development and unlimited online training opportunities.
Beyond the benefits package, here’s what you can expect at CES:
- Meaningful responsibility and the opportunity to make a real impact in dynamic energy markets.
- The chance to learn from and collaborate with experienced professionals across our teams in Vietnam, India, and the United States.
- Ongoing opportunities to strengthen your technical, analytical, and leadership skills.
- Annual performance evaluations and clear opportunities for professional and career development.
- A supportive culture that values initiative, accountability, collaboration, and continuous growth.
- Team-building activities, employee engagement events, and company celebrations.
Customized Energy Solutions provides equal employment opportunities to all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Job Details
Experience
Mid · 3+ yrs