Sr System Cyber Analyst - NERC CIP Cyber Security
New York, NY, United States
Con Edison
Providing electric, gas, and steam to NYC and Westchester. Pay your bill, manage your account, report an outage, and learn how to save energy.- The Sr. System Cyber Analyst is responsible for contributing, guiding, to the analysis of Cybersecurity incidents and events. The Sr Cyber Analyst will design, install, monitor IT computing infrastructure, provide timely response and troubleshoot alerts generated by various security tools.
- Assist in the design, development and implementation of Network Systems including cabling, servers, firewalls, routers, HMIs, IED etc. to effectively comply with CIP Standards
- Assist regional PST areas in matters of CIP compliance. Provide guidance and instruction on performing necessary field activities to meet CIP compliance requirements.
- Responsible for BES Cyber System Categorization.
- Maintain databases, records, passwords and baseline configurations associated with BES Cyber Systems.
- Develop training modules for cyber security training program and aspects of Personnel Risk Assessment Program.
- Responsible for the designation and management of Electronic and physical security perimeters associated with BES Cyber Systems.
- Responsible for the management of System Security associated with BES Cyber Systems.
- Responsible for incident reporting and response planning associated with BES Cyber Systems including but not limited to participation on the NERC Alerts incident team.
- Administer access management and access revocation of BES Cyber Systems
- Conduct vulnerability assessments on the BES Cyber Systems.
- Review and comment on revised NERC CIP standards. Develop required protocols and procedural revisions to address revised NERC CIP standards to ensure continued compliance with such revised standards.
- Monitor and report on status of compliance with NERC CIP requirements.
- Represent substation operations in NPCC and NERC related compliance issues both internal to Con Edison and with external organizations such as NYISO, NPCC, NERC, FERC and other neighboring TOs and reliability coordinators.
- Make compliance program presentations as required and at the executive level.
- Ensure the timely, accurate and well-documented submittal of data to NPCC, as required to address compliance requirements
- Perform other related assignments as required.
- Bachelor's Degree with three (3) years of IT experience preferably in Cybersecurity or
- Master's Degree with two (2) years of IT experience preferably in Cybersecurity
- Bachelor's Degree In Engineering, Computer Science, Information Technology, or relevant concentration
- Master's Degree In Engineering, Computer Science, Information Technology, or relevant concentration
- Requires work experience in any of the following areas: Computer Networking, Cyber Security, Computer Engineering or Information Technologies Required
- Proficiency in Microsoft Office suite and productivity tools is required Required
- Ability to present at different levels of management Required
- Knowledge and experience in real-time production environments, TCP/IP, active directory, LINUX, SQL servers and oracle. Preferred
- Strong knowledge of network protocols, network analysis tools, and network architecture is preferred. Preferred
- Knowledge of vulnerability, threat and risk management and assessment Preferred
- Scripting knowledge using industry standard scripting tools Preferred
- Strong written and verbal communication skills
- Must be proficient in Microsoft Office including Word, Excel, Outlook and PowerPoint, etc.
- Demonstrated time management and priority setting skills
- Well organized, detail oriented and flexible to handle multiple assignments
- Highly thorough and dependable
- Driver's License Required
- Other: Technical certifications (e.g. CISSP, CISM, CIPP etc.) Preferred
- The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays.
- This position requires local and out-of-town travel and representation of the Company at regulatory meetings including NPCC and NERC meetings.
- Must be able and willing to travel within Company service territory, as needed.
- Must be willing and available to be on call, work off shifts, weekends, holidays and overtime as operations and system conditions require.
- Must be able to respond to Company emergencies by performing a System Emergency Assignment to restore service to our customers.
Mission Statement:
Consolidated Edison Company of New York, Inc. (Con Edison), Orange & Rockland Utilities (O&R), and Consolidated Edison Transmission (CET) employees are required to follow health, safety, and environmental policies, EEO, Standards of Business Conduct, and all other applicable company policy and procedures. We all share a responsibility to advance the company’s mission by excelling at our three corporate priorities – safety of our people and the public, operational excellence in all that we do, and ensuring the best possible customer experience.
Benefits:
We are dedicated to supporting the physical, mental, and financial health of our employees and their families. This commitment extends beyond the workplace to foster personal growth and holistic wellbeing. Our life-changing rewards package includes:
- Rich medical & pharmacy benefits, including vision benefits
- Dental benefits
- Health Savings Accounts
- Health Care and Dependent Care Flexible Spending Accounts
- 401(k) with robust matching
- Employer paid Pension Plan
- Employee Stock Purchase Plan with a generous matching contribution
- State of the art Employee Assistance Program
- Paid Parental Leave
- Generous paid time off plus paid holidays
- Family support: emergency backup child, & elder care assistance
- Social responsibility and volunteer opportunities
- Employee discount program
- Commuter Benefits
- Culture of growth and learning: career development; tuition reimbursement; recognition program
- Life and Long-Term Disability Benefits
*Please be aware that some benefits may not apply to provisional or part-time job titles.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory CIPP CISM CISSP Compliance Computer Science Firewalls Linux Monitoring NERC CIP Oracle Risk assessment Risk management Scripting SQL TCP/IP
Perks/benefits: Career development Equity / stock options Flex hours Flex vacation Health care Medical leave Parental leave Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.