Talent.com
IT Security Analyst
IT Security AnalystPPL Corporation • Louisville, KY, US
serp_jobs.error_messages.no_longer_accepting
IT Security Analyst

IT Security Analyst

PPL Corporation • Louisville, KY, US
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Join to apply for the IT Security Analyst role at PPL Corporation

Company Summary Statement

As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE : PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities — PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy — provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL's companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today.

Overview

PLEASE NOTE : THIS POSITION IS HYBRID - IN OFFICE 3 DAYS A WEEK - TO ONE OF OUR LOCAL OFFICES IN : LOUISVILLE, KY OR ALLENTOWN, PA.

The Cybersecurity organization advances the overall state of security at PPL through critical initiatives and coordination of large security and customer-focused projects. The organization builds and procures technologies, tools, and processes to better enable teams at PPL to develop secure platforms and protect data and systems with appropriate security controls. Enterprise Cybersecurity also develops systems to monitor and respond to attacks against our systems, provides educational awareness to the corporation on security best practices, and ensures data sharing relationships with third parties securely protect PPL information.

Purpose

As a key member of the Enterprise Cybersecurity Compliance team, the Enterprise Cybersecurity Compliance Analyst is an experienced and detail-oriented compliance professional. The position will oversee technical and business controls, within their scope, and work on a team of cybersecurity professionals to help build a strong strategy and culture of compliance for the NERC Critical Infrastructure Protection (CIP) Reliability Standards, TSA gas pipeline security directive, Controls & Regulatory Compliance for the IT department, and other cybersecurity compliance regulations, directives, and frameworks. This position will assist with developing and implementing policies, procedures, technologies, and programs to maintain, demonstrate, and improve compliance. The position drives compliance direction for Cybersecurity in NERC CIP, TSA security directive, and other compliance areas including participating as a subject matter expert (SME).

Responsibilities

  • Participates in compliance activities including providing consulting assistance with business areas and IT groups for cybersecurity compliance standards, policies, procedures, and measures.
  • Performs assessments, helps the organization institute, and monitor compliance with cybersecurity framework and regulatory requirements.
  • Supports teams in regulatory audits, spot-checks, and self-certifications including mock audits.
  • Assists in preparing for compliance audits where responsibilities include developing Reliability Standard Audit Worksheets (RSAWs) and compiling supporting evidentiary documentation.
  • Collaborates with relevant stakeholders in the development of audit responses and remediation plans for any identified findings.
  • Coordinates event and root cause analysis to identify gaps in controls including advising and supporting management in defining appropriate remedial actions and tracking.
  • Provides high level research on internal projects, recommending strategic directions and plans that address company-wide security issues. This includes projects related to CIP implementations.
  • Maintains accurate and up-to-date documentation related to NERC CIP Compliance, and other compliance frameworks.
  • Balances security best practices and business drivers against framework requirements, business risk, and impact to make recommendations that minimize PPL's risk profile.
  • Plays a role in complex problem analysis and makes recommendations for how to advance PPL's cybersecurity compliance profile and culture with a team of motivated individuals.
  • Contributes to developing, implementing, and evaluating project plans, goals, and timelines for the implementation of internal controls across all applicable standards.
  • Effectively communicates with clients, peers and management in security matters in both verbal and written form.
  • Identifies opportunities for continuous improvement in Cybersecurity's compliance program.
  • Performs other duties as assigned.

Qualifications

Education

  • Bachelor's degree in Computer Science, Information Security, and / or a related field or an equivalent level of work related experience.
  • Experience

  • 2 or more years of work experience in a compliance or audit focused position or equivalent (Intermediate)
  • 5 or more years of work experience in a compliance or audit focused position or equivalent (Senior)
  • Experience with NERC CIP regulatory requirements, such as standards development, controls framework development, or compliance.
  • Experience with applying compliance frameworks, to successfully comply with security policies, standards, and guidelines.
  • Experience in examining and evaluating internal controls based on regulatory requirements to ensure adherence to the requirements is performed.
  • Proven experience establishing, managing, and validating compliance requirements with internal and external parties.
  • Experience creating, implementing, and documenting internal processes and technology to enhance compliance, efficiency, and education.
  • Understanding of requirements gathering, discovery, service mapping, problem management, asset management, project management, and service catalogs as they relate to regulatory compliance.
  • Experience preparing and presenting complex topics to non-technical audiences, at various levels within the organization.
  • Effective written, verbal, and interpersonal communication skills along with outstanding attention to detail with dedication to encouraging a culture of compliance and security.
  • Critical thinking skills with the ability to identify and solve complex problems with limited managerial oversight.
  • Demonstrated ability to lead projects and assignments and perform multiple activities concurrently.
  • Working knowledge of security related frameworks and activities including, but not limited to, NIST Cybersecurity Framework, SOC 1, SOC 2, etc.
  • Collaborative and effective in cross-functional team environments.
  • Strong analytical skills to assess risks and vulnerabilities in complex systems.
  • J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    It Security Analyst • Louisville, KY, US

    Job_description.internal_linking.related_jobs
    IT Governance Risk Compliance Analyst

    IT Governance Risk Compliance Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT Governance, Risk and Compliance Analyst.Key Responsibilities Support daily GRC operations, policy development, and audit readiness Evaluate IT control effectivenes...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    SOC Analyst

    SOC Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a SOC Analyst to review data and identify anomalies for further investigation.Key Responsibilities Review data to identify anomalies requiring further investigation Perf...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Cybersecurity Assurance Analyst

    Cybersecurity Assurance Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Assurance Analyst responsible for ensuring IT systems are secure and compliant with regulations. Key Responsibilities Assist with regular audits of user ac...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyber Security Architect III

    Cyber Security Architect III

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Security Architect / Engineer III.Key Responsibilities Guide the design and implementation of secure solutions across business and IT support areas Develop securit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Information Security Engineer

    Information Security Engineer

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Engineer III.Key Responsibilities Monitor cybersecurity devices and investigate events and incidents Escalate or mitigate incidents and conduct c...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    IT Security Consultant

    IT Security Consultant

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT-Security Consultant focused on Vulnerability Management.Key Responsibilities Plan, execute, and optimize regular vulnerability scans, including defining targets and...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_less • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Cyber Analyst with OSINT Expertise

    Cyber Analyst with OSINT Expertise

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Analyst (OSINT) to join their team in Charlotte, North Carolina.Key Responsibilities Monitor and investigate digital footprints across open web, social, and dark-...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Cyber Threat Analyst

    Senior Cyber Threat Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Cyber Threat Intelligence Analyst to join their cybersecurity team.Key Responsibilities Conduct in-depth analysis of cyber threats, identifying patterns, indicat...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Analyst with DoD Clearance

    Security Analyst with DoD Clearance

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Analyst-Mid Level.Key Responsibilities : Perform ongoing security analysis and compliance assessments under DoD Risk Management Framework (RMF) processes Utili...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cybersecurity Compliance Analyst

    Cybersecurity Compliance Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity & Compliance Analyst to manage cybersecurity compliance for clients within Managed Compliance Services. Key Responsibilities Act as the primary point of co...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Principal IT Analyst

    Principal IT Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Principal IT Analyst - Veeva Quality.Key Responsibilities Plan and implement enhancements and updates to the Veeva Vault Training application Collaborate with cross-fu...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Cyber Security Analyst

    Cyber Security Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Security Analyst.Key Responsibilities Monitor and analyze security events using SIEM tools and threat intelligence platforms Investigate and respond to security ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Information Security Awareness Lead

    Information Security Awareness Lead

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Awareness Lead to design and deliver security awareness initiatives.Key Responsibilities Develop and execute a multi-year security awareness train...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Analyst

    Security Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Analyst to enhance the protection of its systems, networks, and applications.Key Responsibilities Monitor security dashboards, alerts, and logs; assist in tria...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Insider Threat Analyst

    Senior Insider Threat Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    Key Responsibilities Identify and respond to insider threat security events Analyze alerts from DLP, UEBA, and other monitoring tools to detect anomalous activity Develop insider threat use cas...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Threat Intelligence Analyst

    Senior Threat Intelligence Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Threat Intelligence Analyst.Key Responsibilities Act as a threat intelligence subject matter expert in areas such as malware analysis, exploit / vulnerability anal...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Cybersecurity Analyst - Top Secret Clearance

    Cybersecurity Analyst - Top Secret Clearance

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for two Cybersecurity Analysts to provide advanced cybersecurity operations and compliance management support for a Department of Defense enterprise environment.Key Responsibil...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Threat Analyst

    Senior Threat Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Analyst II (FNSS) to support intelligence requirements and client deliverables in a remote setting. Key Responsibilities Support client deliverables and produce q...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Lead IT Compliance Analyst

    Lead IT Compliance Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for a Lead IT Compliance Analyst (remote).Key Responsibilities Lead and manage the annual PCI DSS compliance program, including evidence collection and gap remediation Serve...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Identity Security Analyst

    Identity Security Analyst

    VirtualVocations • Louisville, Kentucky, United States
    serp_jobs.job_card.full_time
    A company is looking for an Identity Security Analyst (Contract).Key Responsibilities Triage, analyze, and respond to identity hygiene issues and defects in ISPM platforms Coordinate with assura...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted