Duquesne Light Company, headquartered in downtown Pittsburgh, is a leader in providing electric energy and has been in the forefront of the electric energy market, with a history rooted in technological innovation and superior customer service. Today, the company continues its role as a leader in the transmission and distribution of electric energy, providing a secure supply of reliable power to more than half a million customers in southwestern Pennsylvania. Duquesne Light Company is committed to creating a culture of inclusion. We value and respect the unique differences and experiences of our employees. We believe that our differences lead to better collaboration, innovation and outcomes. We want you to join our team! Overall Purpose: DLC is seeking candidates for the role of Supervisor Cybersecurity Operations on the Cybersecurity Operations ("CyberOps") team, directly supporting NERC CIP requirements and critical infrastructure security. The Supervisor of Cybersecurity Operations is responsible for ensuring that Duquesne Light systems and networks are secure.The Supervisor leads the team responsible for the deployment of security solutions, system oversight and application hardening, vulnerability assessments, and diligent monitoring of networks and systems for signs of infection, compromise, and misconfiguration.Additional responsibilities include ensuring that network and system architectures are designed in a way to minimize risk while allowing for necessary functionality, assisting in the vendor risk assessment process, and performing Incident Response activities in the event of a security breach.This group is also accountable for communicating information security risks to management and implementing plans to mitigate or resolve identified risks. This role reports directly to the Sr. Manager of CIP Cybersecurity Operations under the Office of the CISO/Information Security organization. Responsibilities:
- Lead a team responsible for ensuring daily configuration, control, and monitoring for critical infrastructure technology assets
- Work with the IT Department in the maturation and configuration of security controls including but not limited to antivirus, SIEM, IT/OT vulnerability management, and network security technologies.
- Effectively and efficiently manage security event monitoring, tuning, and incident response.
- Responsible for ensuring adequate and timely resolutions to all assigned issues relating to critical infrastructure security.
- Ensure optimal configuration standards are met on existing infrastructure
- Stay up to date on changes in threat landscape impacting Duquesne's information security program.
- Provide coaching and guidance to the cybersecurity team on topics such as emergent threats, daily operational processes and procedures, and professional development..
- Research, investigate, communicate, and integrate actionable threat intelligence information in DLC Cyber Security Operations and IT systems.
- Effectively and efficiently manage security monitoring, tuning, and incident response
- Lead and develop process and procedures, develop actionable metrics and reporting, and collaborate with stakeholders
- Provide technical guidance on security/privacy policies and standard development
- Maintain management reports, metrics associated with information security risk, compliance, and other functional areas as defined by management
Skills and Abilities Utilized in this Role Include:
- Expert level demonstrated understanding of all core cybersecurity topics such as vulnerability management, incident response, endpoint protection and network security.
- Proficient at technical writing and documenting procedures and processes.
- Strong interpersonal, communication and organizational skills with the ability to exhibit sound judgment and express verbal and written information effectively.
- Demonstrated ability to interact with people and translate complex concepts into easy-to-follow ideas and present to all levels of the organization.
- Strong analytical and project management skills.
- Ability to prioritize their own work and the work of their direct reports efficiently while multi-tasking, dealing with interruptions, and working in a high paced regulatory environment.
Education and Experience Requirements:
- Bachelor's degree in Cybersecurity/Computer Forensics or a related field. In lieu of a Bachelor's degree an equivalent combination of education (including certifications) and experience will be considered.
- Five (5)years of experience in Information Security (or related field).
Preferred Qualifications
- Three (3) years of experience in a Leadership role.
- Experience participating in security and regulatory audits, including evidence gathering and analysis.
- Previous utility experience in transmission and distribution operations, or other industries utilizing SCADA systems and IT/OT environments.
- Experience with the NERC CIP compliance framework and/or other regulatory frameworks governing Cybersecurity Operations.
- Experience utilizing security products including Tripwire Enterprise, Splunk, Tenable Nessus, Symantec Endpoint Protection, and Cisco FMC.
- Experience with Systems Administration in server environments including Microsoft Windows and Linux Operating Systems.
- Experience with network security controls in airgapped/segmented network environments.
- Information Security certifications including CISSP, CCNA, SANS GIAC.
- Experience with coding/scripting languages including Python, PowerShell, and SQL.
- 7+ years of experience in an Information Security (or related field) Leadership role.
#LI-ONSITE EQUAL OPPORTUNITY EMPLOYER
Duquesne Light Holdings is committed to providing equal employment opportunity to all people in all aspects of the employment relationship, without discrimination because of race, age, sex, color, religion, national origin, disability, sexual orientation and gender identity or status as a Vietnam era or special disabled veteran or any other unlawful basis, as defined by applicable law, and fostering a workplace free of unlawful discrimination and retaliation. This policy affects decisions including, but not limited to, hiring, compensation, benefits, terms and conditions of employment, opportunities for promotion, transfer, layoffs, return from a layoff, training and development, and other privileges of employment. An integral part of Duquesne Light Holdings' commitment is to comply with all applicable federal, state and local laws concerning equal employment and affirmative action. Duquesne Light Holdings is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. Our goal is to foster an inclusive and accessible workplace where everyone has the opportunity to be successful. If you need a reasonable accommodation to search for a job opening, apply for a position, or participate in the interview process, connect with us at HR@duqlight.com and describe the specific accommodation requested for a disability-related limitation.
|