Cyber Asset Investigation Analyst SanFrancisco, CA
Local to CA Needed
Role summary. Performs the labor-intensive investigation that converts “unknown” assets into “known” assets — analyzing correlated data, running down individual devices where required, and producing validated CMDB enrichment proposals. Capacity flexes with the validated asset population confirmed by the Initial Assessment.
Key responsibilities
Investigate and identify unknown assets, individually where required, driving unknowns toward the agreed target ( ~5%).
Distinguish “known knowns” from “known unknowns” using authoritative-system data and business context.
Produce validated CMDB enrichment / change proposals in the agreed format for PG&E's CMDB team to apply.
Document identification methods and feed repeatable “care and feeding” runbooks.
Support recurring reporting and knowledge transfer at handover.
Required skills & experience
2+ years in asset management, SOC/IR, vulnerability management, or IT asset investigation.
Comfort correlating data across multiple tools; strong analytical and documentation discipline.
Familiarity with CMDB concepts (Remedy/ServiceNow) and networking fundamentals.
Able to work at volume with accuracy; self-directed within defined runbooks.