Supervisor, Vulnerability Management and Application Security

PSEG Long Island LLC

Bethpage (NY)

On-site

USD 120,000 - 160,000

Full time

15 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical
Dental
Vision
Paternal leave
401(k) with company match
Life insurance
Tuition reimbursement
Generous paid time off

Job summary

PSEG Long Island is seeking a Senior Cyber Security leader to oversee risk assessment, policy development, and vulnerability management across IT systems. You will identify, prioritize, and track security gaps, conduct assessments, and run penetration testing to strengthen defenses.

The role requires broad information security expertise, DevSecOps experience, and the ability to communicate with executives. Leadership and table-top exercise experience are highly valued for strengthening our

Qualifications

  • Bachelor's degree and 8 years of relevant cyber security experience.
  • Experience in vulnerability/compliance management, penetration testing, and/or threat hunting.
  • Ability to present to all levels of management and executive leadership.
  • CISSP, or equivalent certification is preferred.

Responsibilities

  • Oversee the lifecycle of the Cyber Assessment & Vulnerability Management program.
  • Inform, advise, and partner with IT, Security, and other units to secure operations.
  • Participate in Change Management, vulnerability scanning, and remediation before go-live.
  • Engage in incident response activities and track SLAs for findings.
  • Develop and operationalize vulnerability metrics and dashboards.
  • Conduct security assessments and penetration tests; review threat intel for action.
  • Lead tabletop exercises mimicking adversaries and improve defenses.

Skills

Cyber security
Vulnerability management
Penetration testing
Threat hunting
Communication with management
Team leadership
DoE 10 CFR 810 compliance
CISSP or equivalent
Incident response

Education

Bachelor's degree in Cyber Security or related field

Job description

We’re one of the country’s largest energy companies, with a vision of powering a future where people use energy more efficiently and it’s safer and delivered more reliably than ever. We’re also deeply connected to the communities we serve, with more than 13,000 employees working together to support our customers and make a difference every day.

Here, you’ll have the stability and exciting opportunities that come with being a Fortune 500 company — along with a supportive, friendly work environment where your contributions are valued. We know life isn’t one-size-fits-all, and neither is work. That’s why we offer flexible work options depending on the role.

In support of this model, roles have been categorized into one of three work location categories:

1. Onsite – roles where employees are expected to be onsite daily.

2. Hybrid fixed – roles that are a mix of remote work and onsite work fixed days each week.

3. Hybrid flexible – roles that are a mix of remote work and onsite work, but the onsite requirements have greater flexibility. (i.e. 5-8 days a month vs. set days each week).

As an employee, if you are regularly scheduled to work 20 or more hours per week, you will have access to a wide range of comprehensive benefits designed to support your total well-being:

  • medical
  • dental
  • vision
  • paternal leave and family leave programs
  • behavioral health programs
  • 401(k) with company match
  • life insurance
  • tuition reimbursement
  • generous paid time off

More than 13,000 people already call PSEG their work home, taking pride in providing safe, reliable service to millions of customers. If you’re looking for a place where you can build a meaningful career and help power and support our communities, we’d love to welcome you to the team.

PSEG is not offering visa sponsorship for this position.

Job Summary

This position leads Information Security staff in the evaluation of risks and threats, development, implementation, communication, operation, monitoring and maintenance of the IT security policies and procedures to promote secure and uninterrupted operation of all IT systems, applications and infrastructure. In this role, you will be responsible for proactively identifying, prioritizing, and tracking security vulnerabilities across the PSEG’s network and systems. You will also be responsible for conducting security assessments, running penetration tests, review Cyber threat intelligence and providing relevant data to parties to action upon. This role will perform red team exercises mimicking adversary practices while leveraging similar tools and techniques. To be successful in this role you must have a broad understanding of information security and experience in application security, DevSecOps (Development, Security, and Operations) vulnerability management, and cyber exploitation techniques in an evolving artificial intelligence driven world. You must also possess excellent problem-solving and communication skills and proven people management experience.

Job Responsibilities
  • Cyber Assessment & Vulnerability Management lead is responsible for the overall lifecycle of the Cyber Assessment & Vulnerability Management program.
  • Inform, advise, and partner with IT, Security, and other business units to help better secure their operations. Identify gaps in current processes, workflows, and design and recommend changes or enhancements as needed.
  • Participate in Change Management Process, from early Assessment of proposed changes/enhancements, through Vulnerability scanning and recommended remediation before go-live.
  • Participate in incident response activities as needed. Ensure cross-company processes around threat & vulnerability management are adhered to. This includes tracking SLAs, discovery, and handling of any finding. Maintain situational awareness, identification, tracking, and ensuring action on industry news related to software vulnerabilities, including zero-day vulnerabilities and emergency patching.
  • Implement and operationalize advanced Vulnerability Management reporting tools. Design, develop and operationalize Vulnerability Management metrics. Design and Implement advanced Vulnerability dashboards. Evaluate performance, perform career development, coaching and counseling and manage compensation for Cyber assessment staff.
  • Responsible for conducting security assessments & penetration tests. Review Cyber threat intelligence and ensures and provide relevant data to parties within the Cyber Assessment & Vulnerability management teams to action upon. Oversee regular red team exercises to proactively emulate attackers TTP and report back findings so security engineering and operations can improve their defenses.
  • Create, perform tabletop exercises exercising mimicking adversary practices testing PSEG LI’s ability to respond to cyber incidents.
Job Specific Qualifications
  • Bachelor's degree and 8 years of relevant cyber security experience
  • Candidates without a degree, will need 12 years of cyber experience
  • Experience within vulnerability/compliance management, penetration testing, and/or threat hunting
  • Ability to present to all levels of management and executive leadership
  • Excellent teamwork, facilitation, relationship building, and negotiation skills
  • Able to maintain positive working relationships both leading and as part of a team
  • Effective time management skills and able to multi-task effectively
  • Able to communicate effectively with both technical and non-technical individuals
  • Compliance with the Department of Energy's regulation 10 CFR 810 is required
  • Certified Information Systems Security Professional (CISSP), or equivalent

Some positions at PSEG require access to information covered by the Department of Energy’s regulation 10 CFR 810 (Part 810). If applicable, the successful applicant must prove they are: (1) a citizen or national of the USA; OR (2) a lawful permanent resident of the United States (Non-Conditional Permanent I-551 / Green Card / Permanent Resident Card holder); OR (3) a citizen, national, or permanent resident of a “Generally Authorized” destination on the attached list and not also a citizen, national, permanent resident of any country not listed; OR (4) a “Protected Individual” under the Immigration and Naturalization Act (8 U.S.C 1324b(a)(3)).

As an employee of PSEG Long Island, you should be aware that during storm/outage restoration efforts, you may be required to perform functions different from normal operations and work extended hours beyond your regular work schedule. You may also be required to work on premise or in an alternate location as directed by the company.

For all roles, PSEGLI’s drug and alcohol testing program includes pre-employment testing, testing for cause, and post-incident/accident testing.

Employees who are hired or transfer into a federally regulated role (including positions covered by USDOT, PHMSA, or NRC regulations) are subject to random drug and alcohol testing, inclusive of marijuana. Although numerous states throughout the country have legalized marijuana/cannabis products recreationally and medically, the use of these products are prohibited for employees in federally regulated roles. Please note that the use of CBD products may result in a positive drug test for THC/Marijuana and such use is not a legitimate medical explanation for a positive result.

If you are a current PSEG employee and offered an opportunity with PSEG Long Island, you will be treated as a new hire. Please note that as a new hire to the Long Island subsidiary, your benefits will change and generally will be consistent with other similarly situated PSEG Long Island new hires. Similarly, for PSEG Long Island employees who accept job opportunities with PSEG or any of its subsidiaries (other than PSEG Long Island), their benefits will change and generally be consistent with other similarly situated new hires of that company.

PSEGLI is an equal opportunity employer, dedicated to a policy of non-discrimination in employment, including the hiring process, based on any legally protected characteristic. Legally protected characteristics include race, color, religion, national origin, sex, age, marital status, sexual orientation, disability or veteran status or any other characteristic protected by federal, state, or local law in locations where PSEG employs individuals.

PSEGLI is committed to providing reasonable accommodations to individuals with disabilities. If you have a disability and need assistance applying for a position, please call 973-430-3845 or email accommodations@pseg.com.

If you need to request a reasonable accommodation to perform the essential functions of the job, email accommodations@pseg.com. Any information provided regarding a disability will be kept strictly confidential and will not be shared with anyone involved in making a hiring decision.

ADDITIONAL EEO INFORMATION (Click link below)

Know your Rights: Workplace Discrimination is Illegal

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Vulnerability Management and Application Security
Manager, Vulnerability Management and Application Security

PSEG • Town of Oyster Bay (NY)

Hybrid
USD 140,000 - 200,000
Medical benefits
Dental benefits
Vision benefits
+4
Director Cybersecurity Operations
Director Cybersecurity Operations

PSEG • United States

Hybrid
USD 161,000 - 300,000
Lead Performance Measurement Analyst
Lead Performance Measurement Analyst

PSEG Long Island • Hicksville (NY)

Hybrid
USD 94,000 - 148,000
Medical, dental, vision
401(k) with company match
Paternal leave
+2
IT Auditor
IT Auditor

PSEG • Town of Oyster Bay (NY)

On-site
USD 120,000 - 160,000
12097 AI Engineer - Solutions & LLMOps
12097 AI Engineer - Solutions & LLMOps

PSEG • Newark (NJ)

Hybrid
USD 79,000 - 126,000
Distribution Supervisor ED
Distribution Supervisor ED

PSEG • Moorestown Township (NJ)

On-site
USD 108,000 - 170,000
9504 Sr IT Mgr
9504 Sr IT Mgr

PSEG.com • The Ironbound (NJ)

Hybrid
USD 137,000 - 224,000
Medical Insurance
Dental Insurance
Vision Insurance
+5
10949 Associate IT Technician
10949 Associate IT Technician

PSEG.com • Hancocks Bridge (NJ)

On-site
USD 59,000 - 89,000
Benefits from day one
Principal Engineer - Technical Supervisor
Principal Engineer - Technical Supervisor

PSEG • Hicksville (NY)

On-site
USD 150,000 - 190,000
Fully Qualified Lineman/Linewoman
Fully Qualified Lineman/Linewoman

PSEG.com • Secaucus (NJ)

On-site
USD 31,000 - 64,000
Sign-on bonus
401(k) with company match
Tuition reimbursement
+1