-
Analyst, Cyber Sec Compliance
- Exelon (Kennett Square, PA)
-
Who We Are
We're powering a cleaner, brighter future.
Exelon is leading the energy transformation, and we're calling all problem solvers, innovators, community builders and change makers. Work with us to deliver solutions that make our diverse cities and communities stronger, healthier and more resilient.
We're powered by purpose-driven people like you who believe in being inclusive and creative, and value safety, innovation, integrity and community service. We are a Fortune 200 company, 19,000 colleagues strong serving more than 10 million customers at six energy companies -- Atlantic City Electric (ACE), Baltimore Gas and Electric (BGE), Commonwealth Edison (ComEd), Delmarva Power & Light (DPL), PECO Energy Company (PECO), and Potomac Electric Power Company (Pepco).
In our relentless pursuit of excellence, we elevate diverse voices, fresh perspectives and bold thinking. And since we know transforming the future of energy is hard work, we provide competitive compensation, incentives, excellent benefits and the opportunity to build a rewarding career.
Are you in?
Primary Purpose
PRIMARY PURPOSE OF POSITION
Perform activities related to the development of cybersecurity plans, strategy, and policy to support and align with organizational cybersecurity missions and initiatives under the guidance of a Lead Analyst or Manager. Consults with customers to evaluate functional requirements and translate functional requirements into technical solutions.
Note: This is a hybrid position (in-office with remote flexibility). Employees are required to be in office at least three days per week (Tuesday, Wednesday, and Thursday). This position must sit out of our Oakbrook Terrace, IL, Carneys Point, NJ, Owings Mills, MD or Kennett Square, PA office. This position is NOT eligible for relocation assistance.
Primary Duties
PRIMARY DUTIES AND ACCOUNTABILITIES
+ Knowledge leader in the existing and upcoming approved/enforceable cyber security compliance obligations. Acts as a consultant to the entities and to CISS to assist in the interpretation of cyber security compliance obligations to provide the proper balance of Reliability, Security and Compliance
+ Supports collaboration with each of the CISS departments in the production of all evidence to ensure the work processes, culture and deliverables meet the Security Controls and the quality of evidence to meet regulatory requirements.
+ Supports cross-entity coordination of CISS-owned cybersecurity compliance obligations. Assists in developing Security Controls with the Business Units and CISS. Supports training and knowledge transfer in the areas of Security Controls, along with the CISS departments as well as the entities.
+ Supports CISS in developing the processes, workflows, and evidence required for compliance to the regulatory requirements that CISS supports. Collaboratively works with the CISS departments to develop processes, workflows, and evidence required to meet the Security Controls developed and implemented by CISS. Collaboratively works with the entities to develop processes, workflows and evidence required to meet the Security Controls developed and implemented by the entities.
+ Proactively build business knowledge to provide solutions.
Job Scope
JOB SCOPE
+ Contribute to the integration and alignment of information security and/or cybersecurity policies to ensure system analysis meets security requirements.
+ Ensure that all systems components can be integrated and aligned (e.g., procedures, databases, policies, software, and hardware).
+ Assist in performing needs analysis to determine opportunities for new and improved business process solutions.
+ Establish and maintain communication channels with stakeholders.
+ Contribute to applying applicable laws, statutes, and regulatory documents and integrate into policy.
+ Assess policy needs and collaborate with stakeholders to develop policies to govern cyber activities.
Minimum Qualifications
MINIMUM QUALIFICATIONS
+ Bachelor's degree and typically 2 to 5 years related experience in information security and/or cybersecurity policy, or equivalent combination of education and work experience.
+ Knowledge of business practices and processes in a regulatory environment and associated frameworks including, but not limited to, NERC CIP, TSA, SOX, NIST, and SEC.
+ Strong problem solving skills
+ Excellent communications skills (written and verbal)
Preferred Qualifications
PREFERRED QUALIFICATIONS
+ Bachelor's degree in Computer Science or related technical area preferred
Benefits
Benefits
+ Annual salary will vary based on a candidate’s skills, qualifications, experience, and other factors: $77,600.00/Yr. – $106,700.00/Yr.
+ Annual Bonus for eligible positions: 10%
+ 401(k) match and annual company contribution
+ Medical, dental and vision insurance
+ Life and disability insurance
+ Generous paid time off options, including vacation, sick time, floating and fixed holidays, maternity leave and bonding/primary caregiver leave or parental leave
+ Employee Assistance Program and resources for mental and emotional support
+ Wellbeing programs such as tuition reimbursement, adoption and surrogacy assistance and fitness reimbursement
+ Referral bonus program
+ And much more
Note: Exelon-sponsored compensation and benefit programs may vary or not apply based on length of service, job grade, job classification or represented status. Eligibility will be determined by the written plan or program documents.
Exelon is proud to be an equal opportunity employer and employees or applicants will receive consideration for employment without regard to: age, color, disability, gender, national origin, race, religion, sexual orientation, gender identity, protected veteran status, or any other classification protected by federal, state, or local law. If you are an individual with a disability and need an accommodation to complete the application, please email us at [email protected].
-