Talent.com
IT Security Analyst
IT Security AnalystPPL Corporation • Louisville, KY, US
No longer accepting applications
IT Security Analyst

IT Security Analyst

PPL Corporation • Louisville, KY, US
5 days ago
Job type
  • Full-time
Job description

Join to apply for the IT Security Analyst role at PPL Corporation

Company Summary Statement

As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE : PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities — PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy — provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL's companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today.

Overview

PLEASE NOTE : THIS POSITION IS HYBRID - IN OFFICE 3 DAYS A WEEK - TO ONE OF OUR LOCAL OFFICES IN : LOUISVILLE, KY OR ALLENTOWN, PA.

The Cybersecurity organization advances the overall state of security at PPL through critical initiatives and coordination of large security and customer-focused projects. The organization builds and procures technologies, tools, and processes to better enable teams at PPL to develop secure platforms and protect data and systems with appropriate security controls. Enterprise Cybersecurity also develops systems to monitor and respond to attacks against our systems, provides educational awareness to the corporation on security best practices, and ensures data sharing relationships with third parties securely protect PPL information.

Purpose

As a key member of the Enterprise Cybersecurity Compliance team, the Enterprise Cybersecurity Compliance Analyst is an experienced and detail-oriented compliance professional. The position will oversee technical and business controls, within their scope, and work on a team of cybersecurity professionals to help build a strong strategy and culture of compliance for the NERC Critical Infrastructure Protection (CIP) Reliability Standards, TSA gas pipeline security directive, Controls & Regulatory Compliance for the IT department, and other cybersecurity compliance regulations, directives, and frameworks. This position will assist with developing and implementing policies, procedures, technologies, and programs to maintain, demonstrate, and improve compliance. The position drives compliance direction for Cybersecurity in NERC CIP, TSA security directive, and other compliance areas including participating as a subject matter expert (SME).

Responsibilities

  • Participates in compliance activities including providing consulting assistance with business areas and IT groups for cybersecurity compliance standards, policies, procedures, and measures.
  • Performs assessments, helps the organization institute, and monitor compliance with cybersecurity framework and regulatory requirements.
  • Supports teams in regulatory audits, spot-checks, and self-certifications including mock audits.
  • Assists in preparing for compliance audits where responsibilities include developing Reliability Standard Audit Worksheets (RSAWs) and compiling supporting evidentiary documentation.
  • Collaborates with relevant stakeholders in the development of audit responses and remediation plans for any identified findings.
  • Coordinates event and root cause analysis to identify gaps in controls including advising and supporting management in defining appropriate remedial actions and tracking.
  • Provides high level research on internal projects, recommending strategic directions and plans that address company-wide security issues. This includes projects related to CIP implementations.
  • Maintains accurate and up-to-date documentation related to NERC CIP Compliance, and other compliance frameworks.
  • Balances security best practices and business drivers against framework requirements, business risk, and impact to make recommendations that minimize PPL's risk profile.
  • Plays a role in complex problem analysis and makes recommendations for how to advance PPL's cybersecurity compliance profile and culture with a team of motivated individuals.
  • Contributes to developing, implementing, and evaluating project plans, goals, and timelines for the implementation of internal controls across all applicable standards.
  • Effectively communicates with clients, peers and management in security matters in both verbal and written form.
  • Identifies opportunities for continuous improvement in Cybersecurity's compliance program.
  • Performs other duties as assigned.

Qualifications

Education

  • Bachelor's degree in Computer Science, Information Security, and / or a related field or an equivalent level of work related experience.
  • Experience

  • 2 or more years of work experience in a compliance or audit focused position or equivalent (Intermediate)
  • 5 or more years of work experience in a compliance or audit focused position or equivalent (Senior)
  • Experience with NERC CIP regulatory requirements, such as standards development, controls framework development, or compliance.
  • Experience with applying compliance frameworks, to successfully comply with security policies, standards, and guidelines.
  • Experience in examining and evaluating internal controls based on regulatory requirements to ensure adherence to the requirements is performed.
  • Proven experience establishing, managing, and validating compliance requirements with internal and external parties.
  • Experience creating, implementing, and documenting internal processes and technology to enhance compliance, efficiency, and education.
  • Understanding of requirements gathering, discovery, service mapping, problem management, asset management, project management, and service catalogs as they relate to regulatory compliance.
  • Experience preparing and presenting complex topics to non-technical audiences, at various levels within the organization.
  • Effective written, verbal, and interpersonal communication skills along with outstanding attention to detail with dedication to encouraging a culture of compliance and security.
  • Critical thinking skills with the ability to identify and solve complex problems with limited managerial oversight.
  • Demonstrated ability to lead projects and assignments and perform multiple activities concurrently.
  • Working knowledge of security related frameworks and activities including, but not limited to, NIST Cybersecurity Framework, SOC 1, SOC 2, etc.
  • Collaborative and effective in cross-functional team environments.
  • Strong analytical skills to assess risks and vulnerabilities in complex systems.
  • J-18808-Ljbffr

    Create a job alert for this search

    It Security Analyst • Louisville, KY, US

    Related jobs
    Information Security Analyst Lead

    Information Security Analyst Lead

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for an information security analyst lead - firewall.Key Responsibilities Oversee and manage firewall policy across various technologies Plan, deploy, and manage policy for m...Show more
    Last updated: 30+ days ago • Promoted
    Associate Security Analyst

    Associate Security Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for an Associate SOC Analyst to monitor and protect client data and infrastructure from cybersecurity threats. Key Responsibilities Monitor and analyze log data, network traff...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Threat Intelligence Analyst

    Cyber Threat Intelligence Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for an Associate Analyst, Cyber Threat Intelligence.Key Responsibilities Perform open-source threat collection and analysis to identify indications of cyber threats Maintain...Show more
    Last updated: 30+ days ago • Promoted
    Cybersecurity Tier 3 Analyst

    Cybersecurity Tier 3 Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Tier 3 Analyst (Technical) to safeguard digital assets and provide senior-level support within the Cybersecurity Center. Key Responsibilities Investigate and analyze sec...Show more
    Last updated: 30+ days ago • Promoted
    Senior Manager Information Security

    Senior Manager Information Security

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Senior Manager - Information Security - Threat Management.Key Responsibilities Leads daily security operations, including alerts and incident response Oversees threat ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cybersecurity Analyst

    Senior Cybersecurity Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Senior Security and Compliance - Cybersecurity Analyst (Remote).Key Responsibilities Monitor network traffic and system activity for security breaches or anomalies Inv...Show more
    Last updated: 30+ days ago • Promoted
    Information Security Engineer

    Information Security Engineer

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for an Information Security Engineer.Key Responsibilities Collaborate with business units to enhance endpoint security strategies Implement system security solutions in mult...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cyber Risk Analyst

    Senior Cyber Risk Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    Cyber Risk Assurance Analyst responsible for ensuring compliance with regulatory frameworks and managing cybersecurity risk. Key Responsibilities Conduct cybersecurity risk assessments for interna...Show more
    Last updated: 30+ days ago • Promoted
    IT Lab Application Analyst

    IT Lab Application Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for an IT Lab Application Analyst I.Key Responsibilities Act as a liaison between technical staff and hospital departments, providing support for Cerner PathNet and other app...Show more
    Last updated: 2 days ago • Promoted
    Senior Cloud Security Architect

    Senior Cloud Security Architect

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Senior Cloud Security Architect to design secure cloud architectures and ensure compliance throughout the system's lifecycle. Key Responsibilities Lead the identificatio...Show more
    Last updated: 30+ days ago • Promoted
    Senior IT Security Analyst

    Senior IT Security Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Senior IT Security Analyst responsible for assessing information risk and facilitating remediation of identified vulnerabilities across the enterprise.Key Responsibilitie...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Analyst

    Cyber Security Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Group Cyber Security Analyst to help protect its global operations and digital assets.Key Responsibilities Support the delivery of the global Information Security Progr...Show more
    Last updated: 30+ days ago • Promoted
    Senior IT Security Engineer

    Senior IT Security Engineer

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Senior IT Security Engineer.Key Responsibilities Design and implement security measures to protect IT infrastructure Monitor and respond to security incidents and vuln...Show more
    Last updated: 30+ days ago • Promoted
    Physical Security Systems Analyst II

    Physical Security Systems Analyst II

    University of Louisville • Louisville, KY, US
    Full-time
    Under minimal supervision, the Physical Security Coordinator is to carry out the university's physical security needs as outlined by the Physical Security Manager. This position serves as a subject ...Show more
    Last updated: 6 days ago • Promoted
    Cybersecurity Risk Analyst

    Cybersecurity Risk Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Risk Analyst.Key Responsibilities Serve as a cybersecurity risk management consultant supporting client's GRC program Support ongoing risk management activities, inclu...Show more
    Last updated: 30+ days ago • Promoted
    Security Application Developer

    Security Application Developer

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Security Infrastructure Support Application Developer to support federal customers on an enterprise cyber program. Key Responsibilities Design, install, maintain, suppor...Show more
    Last updated: 1 day ago • Promoted
    Cybersecurity Analyst III

    Cybersecurity Analyst III

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for a Cybersecurity Analyst III.Key Responsibilities Lead the security awareness and education program, including training and phishing simulations Coordinate vulnerability ...Show more
    Last updated: 2 days ago • Promoted
    IT Service Management Analyst

    IT Service Management Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for an IT Service Management Analyst to join their Incident Management team.Key Responsibilities Facilitate root cause analysis and identify corrective actions for high prior...Show more
    Last updated: 1 day ago • Promoted
    IT Governance, Risk and Compliance Analyst

    IT Governance, Risk and Compliance Analyst

    American Red Cross • Louisville, KY, United States
    Full-time
    Please use Google Chrome or Mozilla Firefox when accessing Candidate Home.By joining the American Red Cross you will touch millions of lives every year and experience the greatness of the human spi...Show more
    Last updated: 8 days ago • Promoted
    Incident Response Analyst

    Incident Response Analyst

    VirtualVocations • Louisville, Kentucky, United States
    Full-time
    A company is looking for an Incident Response Analyst to join their dynamic Security Operations team.Key Responsibilities Investigate and resolve cybersecurity incidents across cloud and on-premi...Show more
    Last updated: 30+ days ago • Promoted