Job Description
Job Description
The electric grid is vital to our everyday lives. It is fundamental for the health, safety, and well-being of our communities, and provides the platform for our economy and our societal and technological advances. SERC's mission is to reduce risks to the reliability and security of the electric grid (also known as the bulk power system), not only for today but also for the future.
To achieve this mission, we maintain a diverse team of experts across numerous disciplines in order to address the complex, evolving, and dynamic challenges facing the grid. Our team also partners with the best and brightest individuals from both the power industry and the federal government to understand and address the challenges facing the grid. These key partnerships make our work more informed, pragmatic, responsive, and impactful.
The Associate Cybersecurity Architect supports the design, development, and implementation of SERC's enterprise IT systems and security infrastructure. This role works closely with the Director, Cyber and Physical Security and SERC IT to ensure that infrastructure and applications are designed and deployed with security best practices and frameworks in mind. This is a hybrid position based out of Charlotte, North Carolina.
DUTIES AND RESPONSIBILITIES :
- Develop and enhance reports on findings and mitigation efforts from penetration tests and security assessments.
- Support security reviews, threat modeling, and risk assessments.
- Administer security monitoring technologies to categorize and reduce the risk of data loss.
- Research, evaluate, and support new security technologies including Identity and Access Management (IAM), network security, and data protection.
- Collaborates with SERC IT to architect, develop, and maintain security solutions to enhance monitoring and alerting across all network segments.
- Maintain up-to-date evidence with internal policies, standards, and requirements for security frameworks (e.g., NIST CSF).
- Contribute to the development and refinement of security incident response plans and playbooks.
- Performs analysis of security incidents and vulnerabilities to recommend improvements.
- Research and develop materials for SERC's internal security awareness training program.
- Conduct access control and business impact analysis reviews with SERC IT.
- Perform other duties, as assigned.
QUALIFICATIONS AND EXPERIENCE :
Understanding of security architecture principles and secure design practices.Passionate about cybersecurity with a willingness to learn concepts and work with SERC IT, Enterprise Risk Management, and other cross functional teams.Effective communication skills (face-to-face, telephone, written and email, and presentation skills).Familiarity with security frameworks such as NIST CSF or CIS.Bachelor's degree in computer science, Information Security, or comparable work experience.2-5 years of experience in cybersecurity, systems engineering, or a related role preferred.3-5 years of experience in a related field including but not limited to a security analyst or network analyst or system administrator preferred.Hands-on experience with security tools (e.g., SIEM, firewalls, IDS / IPS, endpoint protection) preferred.Familiarity with PCI-DSS, NERC CIP, GDPR, or other relevant privacy and security regulations.Professional certifications such as CISSP, CISM, or CISA preferred.COMMITMENT TO CULTURE :
SERC is dedicated to being a highly desirable place to work through culture and purpose. We place a strategic focus on critical elements such as Innovation & Collaboration, Organizational Development & Talent Management. Through this strategic focus, SERC has identified its four values we believe keep us on the path of the relentless pursuit of better.
COMPANY VALUES :
Leader - Is trustworthy, principled, and respectful and strive to create value that reduces risk. Has a positive vision and is actively building support to execute it. A leader takes personal accountability for the outcomes of their choices and actions, acts with professionalism and adapts to change in a calm and positive manner. A leader will, when appropriate, ask questions and recommend alternative solutions to new processes or procedures.Collaborative - Partner and engage, both internally and externally, to drive meaningful action by leveraging skills, knowledge and tools. This would include effective written and verbal communication to ensure ideas and messages are clearly and concisely conveyed, being responsive to all stakeholders, understanding goals and objectives while exceeding key metrics and targets. Encourages dialog and candor while making it safe for others to voice their opinion to ensure all alternative viewpoints are heard, they are an active listener.Expert - Being credible, objective, disciplined, and sought after to help with continuous learning, improvements, and innovations. Exhibit knowledge of and ensures compliance with industry best practices and regulations. Take initiative to set priorities and convey important information in a timely and efficient manner. Employ good judgment when evaluating a problem by analyzing risk and identifying consequences while demonstrating a sense of organizational stewardship.Purposeful - Proactively demonstrate initiative, intentionality and resourcefulness to help anticipate and navigate current and future challenges. Committed to the quality of work and ensures work is delivered at appropriate deadlines while seeking operational efficiencies. Initiate appropriate follow-up while leveraging industry knowledge and business acumen to make appropriate decisions. Treat others with compassion and empathy and embrace the organization's mission and vision while providing meaningful contributions to organizational endeavors.If the traits and characteristics listed in our values resonate with you, we encourage you to apply!
SALARY / BENEFITS :
The salary range for this position is DOE. We offer a generous PTO package; paid holidays; medical, dental, vision, life, short-term and long-term disability insurance, and a 401(k) plan with an organization contribution of up to 14%.
PHYSICAL DEMANDS :
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Regularly required to sit for long periods of time; frequent hearing and talking required. Extensive keyboarding. May be required to lift up to 30 lbs.WORK ENVIRONMENT :
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Hybrid work environmentOption 1 : Dedicated office; Report to office 3-days per week
Option 2 : Non-Dedicated Office (Hoteling); Report to office 2-days per weekAbility to travel as needed.SERC is an Equal Opportunity Employer