Talen Energy is looking for a dynamic Senior Security Engineer with additional experience with NERC CIP compliance and functional knowledge of NERC EACMS. In this role, you will collaborate closely with IT and stakeholders, and various business units to ensure the security and integrity of the enterprise. You will audit configurations, integrate, manage, and monitor security controls and systems. You will proactively seek threats and vulnerabilities that drive the vulnerability management cycle. Your expertise will be essential in maintaining compliance with security standards and protecting our digital assets. How You’ll Power the Future At Talen Energy, your work fuels progress. In this role, you’ll do more than contribute you’ll drive meaningful change by: Work in a self-directed environment and capable of providing consistent results with minimal daily guidance. Develop IT security policies and procedures and implement necessary controls and procedures to cost effectively protect information technology assets from intentional or inadvertent modification, disclosure, or destruction. Exhibit technical skill in configuring and maintaining cyber security tools. Oversee ongoing operations of security assets to ensure that a defense in depth security model is in place. Ability to deploy, manage and maintain all security systems and their corresponding or associated software, including firewalls, intrusion detection systems, cryptography systems, and anti-virus/endpoint security software. Participate in penetration testing of all systems to identify system vulnerabilities. Ability to review logs for unusual or suspicious activity, interpret and make recommendations for resolution. Recommend, coordinate, and apply fixes, security patches, disaster recovery procedures, and any other measures required in the event of a security breach. Collect meaningful metrics and key performance indicators for reporting cyber security threats and trends. Focus on customer by providing business value. Build partnerships with key contacts in the business line by understanding their business needs, communicating these needs to appropriate IT staff, vendors, and consultants, and developing solutions to those problems. Produce communications both oral and written to a variety of audiences. Effectively interact on business or technical matters and convey complex and/or critical material in an easy-to-understand style and manner. Problem solving. Assure timely resolution of operational problems by utilizing effective problem management techniques. Display the highest level of critical thinking; making timely and sound decisions; reach decisions under conditions of uncertainty. Support internal and external IT and security audits as needed. On-call rotation assignment. Occasional travel as requested. NERC CIP areas of responsibility include: NERC CIP Compliance which Includes maintaining NERC procedures and logs and other required documentation. NERC EACMS (Electronic Access Control or Monitoring Systems) are cyber assets that perform electronic access control or monitoring for the Bulk Electric System (BES) Cyber Systems or Electronic Security Perimeters. Maintain all NERC CIP defined equipment to ensure they are kept up to date with all the latest cyber security updates Identify and investigate potential anomalies and/or non-compliances and escalate to management, as necessary; perform root cause analyses and develop corrective actions to mitigate the potential reoccurrence of near-misses and/or non-compliances. Assist in the preparation of self-reports. Support and assist in all efforts to prepare, draft, and coordinate materials responsive to regulatory questionnaires, and other Requests for Information.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
1,001-5,000 employees