Enable job alerts via email!

IT Security Analyst (Intermediate / Senior)

PPL Corporation

Louisville (KY)

Hybrid

USD 65,000 - 95,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking an IT Security Analyst to join their dynamic Cybersecurity Compliance team. This role is pivotal in overseeing compliance with critical cybersecurity regulations and frameworks, driving the organization's commitment to security excellence. You will collaborate with various teams to ensure adherence to NERC Critical Infrastructure Protection standards while enhancing the company's security posture. If you have a passion for cybersecurity and compliance, this is a fantastic opportunity to make a significant impact in a supportive and innovative environment.

Qualifications

  • 2+ years in compliance or audit-focused roles.
  • Experience with NERC CIP regulatory requirements.
  • Strong analytical skills for risk assessment.

Responsibilities

  • Participates in compliance activities for cybersecurity standards.
  • Supports teams in regulatory audits and self-certifications.
  • Maintains documentation related to NERC CIP Compliance.

Skills

Compliance Management
Cybersecurity Standards
Risk Assessment
Audit Preparation
Communication Skills

Education

Bachelor’s degree in Computer Science

Tools

NIST Cybersecurity Framework
SOC 1
SOC 2

Job description

IT Security Analyst (Intermediate / Senior)

Join to apply for the IT Security Analyst (Intermediate / Senior) role at PPL Corporation

IT Security Analyst (Intermediate / Senior)

Join to apply for the IT Security Analyst (Intermediate / Senior) role at PPL Corporation

Get AI-powered advice on this job and more exclusive features.

Company Summary Statement

As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE: PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities — PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy — provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL’s companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today.

Company Summary Statement

As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE: PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities — PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy — provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL’s companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today.

Overview

The Cybersecurity organization advances the overall state of security at PPL through critical initiatives and coordination of large security and customer-focused projects. The organization builds and procures technologies, tools, and processes to better enable teams at PPL to develop secure platforms and protect data and systems with appropriate security controls. Enterprise Cybersecurity also develops systems to monitor and respond to attacks against our systems, provides educational awareness to the corporation on security best practices, and ensures data sharing relationships with third parties securely protect PPL information.

Purpose

As a key member of the Enterprise Cybersecurity Compliance team, the Enterprise Cybersecurity Compliance Analyst is an experienced and detail-oriented compliance professional. The position will oversee technical and business controls, within their scope, and work on a team of cybersecurity professionals to help build a strong strategy and culture of compliance for the NERC Critical Infrastructure Protection (CIP) Reliability Standards, TSA gas pipeline security directive, Controls & Regulatory Compliance for the IT department, and other cybersecurity compliance regulations, directives, and frameworks. This position will assist with developing and implementing policies, procedures, technologies, and programs to maintain, demonstrate, and improve compliance. The position drives compliance direction for Cybersecurity in NERC CIP, TSA security directive, and other compliance areas including participating as a subject matter expert (SME).

LI-Hybrid

#INDPPL

Responsibilities

  • Participates in compliance activities including providing consulting assistance with business areas and IT groups for cybersecurity compliance standards, policies, procedures, and measures.
  • Performs assessments, helps the organization institute, and monitor compliance with cybersecurity framework and regulatory requirements.
  • Supports teams in regulatory audits, spot-checks, and self-certifications including mock audits.
  • Assists in preparing for compliance audits where responsibilities include developing Reliability Standard Audit Worksheets (RSAWs) and compiling supporting evidentiary documentation.
  • Collaborates with relevant stakeholders in the development of audit responses and remediation plans for any identified findings.
  • Coordinates event and root cause analysis to identify gaps in controls including advising and supporting management in defining appropriate remedial actions and tracking.
  • Provides high level research on internal projects, recommending strategic directions and plans that address company-wide security issues. This includes projects related to CIP implementations.
  • Maintains accurate and up-to-date documentation related to NERC CIP Compliance, and other compliance frameworks.
  • Balances security best practices and business drivers against framework requirements, business risk, and impact to make recommendations that minimize PPL’s risk profile.
  • Plays a role in complex problem analysis and makes recommendations for how to advance PPL’s cybersecurity compliance profile and culture with a team of motivated individuals.
  • Contributes to developing, implementing, and evaluating project plans, goals, and timelines for the implementation of internal controls across all applicable standards.
  • Effectively communicates with clients, peers and management in security matters in both verbal and written form.
  • Identifies opportunities for continuous improvement in Cybersecurity’s compliance program.
  • Performs other duties as assigned.


Qualifications

Education:

  • Bachelor’s degree in Computer Science, Information Security, and/or a related field or an equivalent level of work related experience.


Experience:

  • 2 or more years of work experience in a compliance or audit focused position or equivalent (Intermediate)
  • 5 or more years of work experience in a compliance or audit focused position or equivalent (Senior)
  • Experience with NERC CIP regulatory requirements, such as standards development, controls framework development, or compliance.
  • Experience with applying compliance frameworks, to successfully comply with security policies, standards, and guidelines.
  • Experience in examining and evaluating internal controls based on regulatory requirements to ensure adherence to the requirements is performed.
  • Proven experience establishing, managing, and validating compliance requirements with internal and external parties.
  • Experience creating, implementing, and documenting internal processes and technology to enhance compliance, efficiency, and education.
  • Understanding of requirements gathering, discovery, service mapping, problem management, asset management, project management, and service catalogs as they relate to regulatory compliance.
  • Experience preparing and presenting complex topics to non-technical audiences, at various levels within the organization.
  • Effective written, verbal, and interpersonal communication skills along with outstanding attention to detail with dedication to encouraging a culture of compliance and security.
  • Critical thinking skills with the ability to identify and solve complex problems with limited managerial oversight.
  • Demonstrated ability to lead projects and assignments and perform multiple activities concurrently.
  • Working knowledge of security related frameworks and activities including, but not limited to, NIST Cybersecurity Framework, SOC 1, SOC 2, etc.
  • Collaborative and effective in cross-functional team environments.
  • Strong analytical skills to assess risks and vulnerabilities in complex systems.

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Utilities

Referrals increase your chances of interviewing at PPL Corporation by 2x

Get notified about new Senior Information Technology Security Analyst jobs in Louisville, KY.

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Medicaid Senior IT Privacy and Security Analyst -Remote

Jobs via Dice

Lincoln

Remote

USD 90,000 - 120,000

5 days ago
Be an early applicant

Medicaid Senior IT Privacy and Security Analyst - Remote

Novalink Solutions LLC

Lincoln

Remote

USD 90,000 - 130,000

Today
Be an early applicant

IT Security Analyst (Remote)

TieTalent

Ohio

Remote

USD 70,000 - 100,000

Today
Be an early applicant

It security analyst

University of Louisville

Louisville

Remote

USD 80,000 - 100,000

21 days ago

Security Operations Center Analyst

3i People

Lincoln

Remote

USD 90,000 - 120,000

6 days ago
Be an early applicant

IT Security Analyst (Remote)

BlueOrange Compliance

Columbus

Remote

USD 70,000 - 100,000

4 days ago
Be an early applicant

IT Security Analyst III

IIBA (International Institute of Business Analysis)

Dallas

Remote

USD 85,000 - 120,000

4 days ago
Be an early applicant

IT Security Analyst

Vivent Health

Milwaukee

Remote

USD 80,000 - 89,000

5 days ago
Be an early applicant

Health IT Specialist Part-Time (Remote) National

IQVIA

Philadelphia

Remote

USD 78,000 - 130,000

4 days ago
Be an early applicant