Talent.com
Chief, IT and Cyber Risk Validation
Chief, IT and Cyber Risk ValidationPG&E Corporation • San Ramon, CA, US
No longer accepting applications
Chief, IT and Cyber Risk Validation

Chief, IT and Cyber Risk Validation

PG&E Corporation • San Ramon, CA, US
22 hours ago
Job type
  • Full-time
Job description

Job Description

Requisition ID # 167963

Job Category : Compliance / Risk / Quality Assurance

Job Level : Director / Chief

Business Unit : Gen Counsel, Ethics, Risk & Compliance

Work Type : Hybrid

Job Location : San Ramon

Department Overview

The Operational Risk Validation team is focused on assessing and validating risk mitigations and controls to determine the effectiveness of PG&E’s programs to address the highest risks for the enterprise. The goal is to confirm the right work is being done in a way that truly reduces risk, and to strengthen how we collectively quantify actual risk reduction based on units of work completed. This team will partner closely with the existing risk, compliance, and operational groups, digging a few levels deeper beyond compliance. This will include observations in the field and dialogue with front-line employees to better understand operational risks, inform future risk reduction programs, and advocate for needed resources or support. Assessments and validations of risk-reducing work will be done for the top-tier enterprise risks, while responding to industry disruptors and emerging risk factors that may not fit neatly into existing risk frameworks. These assessments and resulting recommendations will evaluate whether operations are meeting legal, regulatory, and other commitments – and beyond this, determine whether we’re truly reducing risk to an appropriate level.

Position Summary

Chief, IT and Cyber Risk Validation is an individual contributor who is responsible for ensuring that the risks associated with Cyber Security, Physical Security and Technology Improvements are effectively managed across the enterprise. This role will validate that the controls and mitigations are monitored, and all the stakeholders are engaged in data driven decision making. This individual will provide expertise on the key areas of risk for IT and Physical Security across the enterprise to build risk management capabilities. The knowledge expected from this role are AI, Cloud, Data management, Cyber and Physical security, Asset management, Networking, IT infrastructure etc.

This is a high-level position focused on strengthening and building relationships across the organization in an area of risk that is continuously growing across all Functional Areas (FA). This position is hybrid, working from your remote office and your assigned work location based on business need. The assigned work location will be within the PG&E Service Territory.

Reporting

This role reports to the Director, Operational Risk Validation Generation / IT.  This is an individual contributor role.

Job Responsibilities

  • Partners with Cybersecurity teams such as Asset Management, Strategy, Risk Assessment, Vulnerability Management, Security Intelligence and Operations Center etc. Validates the risk and ensures effectiveness on existing controls and mitigations on an ongoing basis.
  • Partners with all asset owners and leaders across the enterprise to raise awareness, build support and partnership in the improvement of cyber asset data management across all technologies.
  • Partners as the single point of contact within the Enterprise Risk and Compliance (ERC) team to ensure that technology and systems supporting cyber asset management are implemented and configured to ensure Cybersecurity of all assets across the Enterprise.
  • Supports Cyber Security Asset Management strategy development and implementation to ensure external obligations are met across all regulators present and future.
  • Partners with Enterprise Data Management, Physical Security and IT Infrastructure teams to set priorities and drive all risk- related activities managing the risks proactively.
  • Primary thought leader for Enterprise Risk for development of the roadmap to Propel migration and mitigation strategies that support operational and strategic objectives of the ERC organization.
  • Works directly with and coaches senior leadership in key operational areas to identify, address and communicate risk management issues, primarily focused on Cyber, Physical and IT risks.
  • Recognizes and communicates internal and external developments that may impact risks based on in-depth knowledge of operational risks across all FAs to improve risk management practices across the enterprise.
  • Provides subject-matter expertise and challenges business decisions and decision-making processes to ensure all aspects of risks are appropriately considered and effective controls and mitigations are implemented.
  • Leads strategy development and implementation of risk education and training materials for use enterprise-wide and at all levels.

Background Qualifications

Minimum

  • Bachelor’s degree or equivalent experience.
  • 12 years of job-related experience
  • Desired

  • Advanced degree in a relevant field such as data management, computer science, information technology, systems engineering, operational governance, or other applicable discipline
  • Experience with Operational Technology, and Regulatory compliance
  • IT and Security experience
  • Engineering, Architecture, and Risk experience
  • Experience with ISO 31000 and 55001
  • Experience with NERC CIP, TSA and FERC utility industry regulations
  • Utility industry experience, electric or gas, or other job-related, 10 years
  • Leadership Qualities

    PG&E expects its leaders to conduct themselves with the highest ethics and integrity and to embody specific leadership qualities.

    Strategic Mindset

  • Sees ahead to future possibilities and translates them into breakthrough strategies.
  • Operates effectively, even when things are not certain, or the way forward is not clear.
  • A Leader in the Community and Industry

  • Effectively builds formal and informal relationship networks inside and outside the organization.
  • Anticipates and balances the needs of multiple stakeholders.
  • Demonstrates Safety Leadership

  • A safety champion in words and deeds with respect to both employee and public safety.
  • Creating and maintaining a speak up culture free of retaliation.
  • Influences and Inspires

  • Using various- communications that convey a clear understanding of the needs of different audiences.
  • Maneuvering comfortably through complex policy, process, and people-related dynamics.
  • Optimizes Team Performance

  • Building teams with a strong identity that apply their diverse skills and perspectives to achieve common goals.
  • Creating a climate where people are developed and motivated to do their best to help the organization.
  • Values Inclusion and Respects Individual Differences

  • Recognizing the value that different perspectives and cultures bring to an organization.
  • Fiscally Responsible

  • Interpreting and applying understanding of key financial indicators to make better business decisions.
  • Planning and prioritizing work to meet commitments aligned with organizational goals.
  • Leads Ethically and in a Compliant Manner

  • Sponsoring and sustaining a high integrity speak-up corporate culture which prioritizes safety, compliance, and ethics.
  • Building on necessary level of industry, company, and subject-matter expertise, including laws and regulations.
  • Provides a High Level of Customer Service

  • Building strong customer relationships and delivering hometown, customer-centric solutions.
  • Compensation

    PG&E is providing the salary range that the company in good faith believes it might pay for this position at the time of the job posting. This compensation range is specific to the locality of the job. The actual salary paid to an individual will be based on multiple factors, including, but not limited to, specific skills, education, licenses or certifications, experience, market value, geographic location, and internal equity.

    We estimate the successful candidate hired into this role will be placed within the reasonable compensation range of $168,000-$241,500.   The decision will be made on a case-by-case basis.  This leadership role is also eligible for an annual Short Term Incentive Plan (STIP) award, as well as the Long Term Incentive Plan (LTIP) grant.

    Create a job alert for this search

    Chief It And Cyber Risk Validation • San Ramon, CA, US

    Related jobs
    Manager, Risk & Identity Solutions Management

    Manager, Risk & Identity Solutions Management

    Visa • San Francisco, CA, United States
    Full-time
    Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more t...Show more
    Last updated: 3 days ago • Promoted
    Chief of Staff

    Chief of Staff

    Synopsys • Sunnyvale, CA, United States
    Full-time
    At Synopsys, we drive the innovations that shape the way we live and connect.Our technology is central to the Era of Pervasive Intelligence, from self-driving cars to learning machines.We lead in c...Show more
    Last updated: 30+ days ago • Promoted
    Digital Risk Advisory and Cybersecurity Associate 19426

    Digital Risk Advisory and Cybersecurity Associate 19426

    Vanguard-IP • San Francisco, CA, United States
    Full-time
    BTI Consulting : Collaboration Award.Highly ranked in Vault's lists of "Attorney Satisfaction" and "Quality of Life.The ideal candidate will have law firm or in-house privacy and cybersecurity breac...Show more
    Last updated: 2 days ago • Promoted
    Associate Chief Information Officer

    Associate Chief Information Officer

    North East Medical Services • Daly City, CA, United States
    Full-time
    Under direction of the Chief Information Officer (CIO), the Associate Chief Information Officer (ACIO) will provide the technological, informational vision and leadership for the organization.The A...Show more
    Last updated: 30+ days ago • Promoted
    Campus Chief Information Officer (CIO)

    Campus Chief Information Officer (CIO)

    Boldyn Networks • San Jose, CA, United States
    Full-time +1
    Campus Chief Information Officer (Part-Time).Boldyn Networks is seeking a Campus Chief Information Officer to join its higher education division. In this remote, work-from-home position, you'll leve...Show more
    Last updated: 1 day ago • Promoted
    IT Director, Risk Advisory Services

    IT Director, Risk Advisory Services

    BDO Capital Advisors, LLC • San Francisco, CA, United States
    Full-time
    Working under the authority of a Principal, the Assurance Director, Risk Advisory Services is responsible for overseeing and delivering risk advisory services around Information Technology (IT) rel...Show more
    Last updated: 30+ days ago • Promoted
    Senior Manager, Enterprise Risk Management

    Senior Manager, Enterprise Risk Management

    Visa • San Francisco, CA, United States
    Full-time
    Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more t...Show more
    Last updated: 3 days ago • Promoted
    Head of Cyber Risk and Compliance (Enterprise Technology Manager)

    Head of Cyber Risk and Compliance (Enterprise Technology Manager)

    City of San Jose, CA • San Jose, CA, United States
    Full-time
    Our diverse and inclusive workforce of more than 7,000 employees play a key role in the success of San José, the heart of the Silicon Valley. All City of San José employees work together as one team...Show more
    Last updated: 14 days ago • Promoted
    Senior GRC Security Lead — ISO / NIST, Risk & Audits

    Senior GRC Security Lead — ISO / NIST, Risk & Audits

    Lambda • San Francisco, CA, United States
    Full-time
    A leading AI infrastructure company is seeking a Cybersecurity Risk Manager to enhance their compliance framework.Responsibilities include managing audits, communicating with stakeholders, and ensu...Show more
    Last updated: 4 days ago • Promoted
    Chief Information Security Officer (CISO)

    Chief Information Security Officer (CISO)

    Demandbase • San Francisco, CA, United States
    Full-time
    Chief Information Security Officer (CISO).Chief Information Security Officer (CISO).Demandbase is the only pipeline AI platform that empowers GTM teams to automate growth at scale.With a unified vi...Show more
    Last updated: 30+ days ago • Promoted
    Lead Principal - Governance Risk and Compliance

    Lead Principal - Governance Risk and Compliance

    Cloud Software Group, Inc. • San Ramon, CA, United States
    Full-time
    We are seeking a highly skilled and experienced.Governance, Risk and Compliance team.The GRC specialist will play a critical role in managing and enhancing our Governance, Risk, and Compliance (GRC...Show more
    Last updated: 14 days ago • Promoted
    Director of Cyber Security / IT Risk

    Director of Cyber Security / IT Risk

    RGP • San Francisco, CA, United States
    Full-time
    We are seeking a Director, IT Risk Assurance, with focus on cybersecurity and data privacy who will be responsible for supporting business development as well as leading, managing and, when necessa...Show more
    Last updated: 4 days ago • Promoted
    Senior Cyber Risk Management Engineer

    Senior Cyber Risk Management Engineer

    Tranzeal Incorporated • San Francisco, CA, United States
    Full-time
    Seeking a Senior Cyber Risk Management Capability Assessor to evaluate the effectiveness of cyber risk management capabilities, including policies, processes, and technical controls.This role will ...Show more
    Last updated: 5 days ago • Promoted
    SVPChief Risk Officer

    SVPChief Risk Officer

    Heritage Bank of Commerce • San Jose, CA, United States
    Full-time
    Heritage Bank of Commerce seeks a seasoned risk management leader with a deep understanding of the banking industry and a proven track record of experience. This critical role demands expertise in s...Show more
    Last updated: 30+ days ago • Promoted
    SVP / Chief Risk Officer

    SVP / Chief Risk Officer

    Heritage Bank of Commerce • San Jose, CA, United States
    Full-time
    Job Function : Finance and Sales.Heritage Bank of Commerce seeks a seasoned risk management leader with a deep understanding of the banking industry and a proven track record of experience.This crit...Show more
    Last updated: 1 day ago • Promoted
    Manager - Technology Risk Consulting

    Manager - Technology Risk Consulting

    RSM US LLP • San Francisco, CA, United States
    Full-time
    We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their ful...Show more
    Last updated: 8 days ago • Promoted
    GRC Lead - IT Risk Management & Compliance

    GRC Lead - IT Risk Management & Compliance

    Macpower Digital Assets Edge • Cupertino, CA, United States
    Full-time
    We are looking for an experienced.IT Risk Management, Audit, and Compliance.The ideal candidate should have a strong understanding of. ISO 27001, NIST 800-53, vendor security assessments, and cloud ...Show more
    Last updated: 30+ days ago • Promoted
    CIO - Chief Information Officer

    CIO - Chief Information Officer

    Jobs via Dice • San Francisco, CA, United States
    Temporary
    CIO - Chief Information Officer.CIO - Chief Information Officer.We are looking for a highly experienced interim Chief Information Officer (CIO) to lead a critical evaluation of IT systems and opera...Show more
    Last updated: 3 days ago • Promoted