CIP Enforcement Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

Northeast Power Coordinating Council (NPCC) · 4 months ago

CIP Enforcement Analyst

Northeast Power Coordinating Council, Inc. is seeking a CIP Enforcement Analyst to investigate and analyze noncompliance with Critical Infrastructure Protection NERC Reliability Standards. The role involves providing technical expertise in cybersecurity, assessing risks, and ensuring compliance through effective communication and documentation.

EnergyNon ProfitPower Grid

Responsibilities

Articulate the facts and circumstances, extent, and cause of each noncompliance and ensure the noncompliance disposition ties to the NERC Reliability Standard requirement
Assess the risk of each noncompliance and ensure the disposition appropriately and thoroughly describes the risk
Review mitigation and/or work with entity to develop mitigation for each noncompliance so that each noncompliance is corrected, and the mitigation prevents recurrence
Verify mitigation is completed through a review and documentation of mitigation evidence
Review and document the compliance history for each noncompliance
Conduct peer reviews of noncompliance dispositions drafted by other staff
Communicate with registered entities and the ERO Enterprise as necessary, to investigate CIP noncompliance and issues, and to assure appropriate and informed enforcement actions
Triage incoming noncompliance to identify violation facts, preliminary risk assessment, and complexity of the noncompliance
Develop risk criteria to evaluate the potential impact and likelihood of impact the noncompliance has on the BPS
Ensure confidential information is identified, labeled, stored, and transferred in accordance with NPCC’s procedures for confidential information
Ensure information and data placed into various portals, software, and databases are accurate and complete
Participate in NPCC and ERO Enterprise meetings, workshops, task forces, committees, and forums, as assigned
Assist in developing responses to oversight of NPCC
Develop and/or amend policies and procedures
Perform other duties as assigned

Qualification

CybersecurityElectric utility experienceRisk assessmentCompTia Security+CompTia Network+CompTia CySa+GIAC Security EssentialsAnalytical skillsMicrosoft Office SuiteTechnical communicationOrganizational skillsAttention to detailInterpersonal skillsMentoring

Required

Bachelor's degree in Cybersecurity, Information Systems, Computer Engineering, or other relevant Bachelor's degree
3 or more years' experience associated with computer systems used in the electric utility industry; or 3 or more years of experience in securing computer systems, including both physical and electronic security; or 3 or more years of experience working within an electric utility Control Center or Regulatory IT role
Ability to effectively communicate technical concepts to non-experts verbally and in writing
Excellent organizational skills and ability to prioritize and to manage multiple assignments concurrently
Strong questioning attitude and attention to detail
Strong analytical and problem-solving skills
Strong interpersonal and conflict resolution skills
Ability to mentor others
Ability to learn and work in a variety of portals, software, and databases
Proficient with Microsoft Office Suite or related software

Preferred

CompTia Security+
CompTia Network+
CompTia CySa+
GIAC Security Essentials (GSEC)

Company

Northeast Power Coordinating Council (NPCC)

twittertwitter
company-logo
Northeast Power Coordinating Council, Inc.

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
Charles Dickerson
President and Chief Executive Officer
linkedin
Company data provided by crunchbase