Security Engineer I — SIEM & NERC CIP Focus

Duquesne Light Company

Pittsburgh (Allegheny County)

Hybrid

USD 120,000 - 150,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Duquesne Light Company in Pittsburgh is seeking an Information Security Engineer I to strengthen our cybersecurity program with a focus on NERC CIP compliance, SIEM operations, and incident response. The role protects critical infrastructure and collaborates with stakeholders to improve cyber resilience.

Candidates should have 7+ years of related experience and hands-on experience with SIEM (Splunk) and configuration monitoring.

Qualifications

  • Bachelor's degree in Information Security, Computer Science, Engineering or a related field, or equivalent professional experience, required.
  • Seven (7) or more years of experience in cybersecurity engineering, security operations or compliance-focused security roles, required.
  • Hands‑on experience with SIEM technologies, such as Splunk, required.
  • Experience with configuration monitoring and file integrity monitoring tools, including Tripwire Enterprise or equivalent solutions, required.

Responsibilities

  • Conduct risk assessments and gap analyses related to NERC CIP requirements and cybersecurity leading practices.
  • Administer, monitor and optimize SIEM platforms to support threat detection, alerting, log correlation and incident investigation.
  • Develop and tune SIEM use cases, correlation rules, dashboards and reporting capabilities.
  • Provide technical guidance, knowledge sharing and operational support to junior security analysts and engineers.
  • Collaborate with infrastructure, network, application and operations teams to improve system hardening and secure configuration practices.
  • Support and maintain compliance with applicable NERC CIP standards across enterprise and operational technology environments.
  • Participate in NERC CIP audits, assessments, evidence collection, remediation tracking and compliance reporting activities.
  • Collaborate with internal stakeholders to implement and maintain cybersecurity controls aligned with regulatory and organizational requirements.
  • Assist in the development, review and maintenance of cybersecurity policies, standards, procedures and technical documentation.
  • Analyze security events and alerts to identify indicators of compromise, suspicious activity or policy violations.
  • Integrate log sources from enterprise and OT systems into centralized monitoring platforms.
  • Manage and support configuration monitoring and file integrity monitoring solutions.
  • Develop and maintain baselines for critical cyber assets and monitor for unauthorized changes.
  • Investigate configuration drift, integrity violations and security exceptions.
  • Participate in cybersecurity incident response activities, including detection, triage, containment, eradication, recovery and post-incident analysis.
  • Support incident investigations involving enterprise and OT/ICS environments.
  • Maintain incident response documentation, playbooks and lessons-learned reports.
  • Assist in coordinating tabletop exercises and cybersecurity readiness activities.
  • Participate in cross-functional cybersecurity projects and strategic initiatives.
  • Participate in an on-call rotation for cybersecurity incidents and operational support.

Skills

Incident response
Network security
System hardening
Vulnerability management
Access control
NIST/CIS/IEC frameworks
EDR/Threat intel
Analytical skills
Communication
Collaboration
Mentoring

Education

Bachelor's degree in Information Security

Tools

Splunk
Tripwire Enterprise

Job description

Duquesne Light Company in Pittsburgh is seeking an Information Security Engineer I to strengthen our cybersecurity program with a focus on NERC CIP compliance, SIEM operations, and incident response. The role protects critical infrastructure and collaborates with stakeholders to improve cyber resilience.

Candidates should have 7+ years of related experience and hands-on experience with SIEM (Splunk) and configuration monitoring.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior InfoSec Engineer — SIEM, NERC CIP & OT/ICS
Senior InfoSec Engineer — SIEM, NERC CIP & OT/ICS

Duquesne Light Company • Pittsburgh

Hybrid
USD 90,000 - 130,000
Info Security Engineer I
Info Security Engineer I

Duquesne Light Company • Pittsburgh

Hybrid
USD 120,000 - 150,000
Sr. Info Security Engineer
Sr. Info Security Engineer

Duquesne Light Company • Pittsburgh

Hybrid
USD 90,000 - 130,000
InfoSec Analyst/Engineer — Network Security & Incident Response
InfoSec Analyst/Engineer — Network Security & Incident Response

Pittsburgh Supercomputing Center • Pittsburgh

On-site
USD 70,000 - 90,000
Information Security Compliance Analyst
Information Security Compliance Analyst

Eagle Creek Renewable Energy LLC • North Carolina

On-site
USD 70,000 - 90,000
Security Engineer
Security Engineer

Liberty Personnel Services, Inc. • Feasterville-Trevose

Hybrid
USD 90,000 - 120,000
Security Analyst – SIEM/EDR Specialist (On-Site)
Security Analyst – SIEM/EDR Specialist (On-Site)

PNC • Pittsburgh

On-site
USD 75,000 - 138,000
Medical/prescription drug coverage
Dental and vision options
401(k) with PNC match
+3
IT Security Analyst/Engineer – 2024582
IT Security Analyst/Engineer – 2024582

Pittsburgh Supercomputing Center • Pittsburgh

On-site
USD 70,000 - 90,000
SOC Security Analyst: SIEM, EDR & Threat Mitigation
SOC Security Analyst: SIEM, EDR & Threat Mitigation

PNC Financial Services Group, Inc. • Pittsburgh, Northern (KY)

Hybrid
USD 75,000 - 138,000
Health insurance
401(k) with company match
Pension and stock purchase plans
+1
Security Specialist — SIEM, DLP & CSIRT Lead
Security Specialist — SIEM, DLP & CSIRT Lead

Philadelphia Comapny • Chicago (IL)

On-site
USD 75,000 - 95,000