Duquesne Light Company - Pittsburgh, PA

posted 3 months ago

Full-time - Mid Level
Pittsburgh, PA
Utilities

About the position

Duquesne Light Company, headquartered in downtown Pittsburgh, is a leader in providing electric energy and has been at the forefront of the electric energy market, with a history rooted in technological innovation and superior customer service. The company continues its role as a leader in the transmission and distribution of electric energy, providing a secure supply of reliable power to more than half a million customers in southwestern Pennsylvania. The Information Security Governance, Risk, and Compliance ("GRC") team is responsible for ensuring that Duquesne Light's information security objectives are met. This group focuses on compliance with the company's IT and Information Security policies and procedures. The position of Gov Risk & Comp Analyst II involves developing, enhancing, and maintaining information systems, platforms, and IT operating compliance procedures and processes. The analyst will ensure timely completion of various Information Security compliance deliverables, including risk assessments, remediation, and compliance efforts such as documentation reviews, recovery exercises, asset baselines, and user reviews. Additionally, the role requires monitoring metrics that measure the IT and Information Security Framework and tracking resolutions to all audit/review issues relating to security. The analyst will assist with the execution and tracking of the 3rd party vendor risk assessment program and utilize analytical skills to develop future strategies to resolve compliance issues. Preparing for and supporting compliance audits conducted by internal resources, consultants, or regulatory organizations is also a key responsibility. The analyst will provide Information Security risk advisory and consultative services to internal customers, including IT, business, and risk and compliance stakeholders, and will guide operational staff, including training new project managers and other employees in compliance practices and procedures.

Responsibilities

  • Develop, enhance and maintain information systems, platforms and IT operating compliance procedures and processes.
  • Ensure timely completion of various Information Security compliance deliverables including: risk assessment, remediation, and compliance efforts including documentation reviews, recovery exercises, asset baselines and user reviews.
  • Monitor metrics that measure the IT and Information Security Framework.
  • Track and ensure adequate and timely resolutions to all audit/review issues relating to security.
  • Assist with execution and tracking of the 3rd party vendor risk assessment program.
  • Utilize analytical skills to assist in developing future strategies to resolve compliance issues.
  • Prepare for and support compliance audits conducted by internal resources, consultants or regulatory organizations.
  • Provide Information Security risk advisory and consultative services to internal customers, including IT, business, and risk and compliance stakeholders.
  • Provide guidance to other operational staff, including training to new project managers and other employees in completion of compliance practices and procedures.

Requirements

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related discipline required.
  • Two (2+) or more years of relevant experience required.
  • Excellent verbal and written communication skills.
  • Ability to work collaboratively within various levels of the Company and across all disciplines.
  • Ability to coordinate and prioritize multiple tasks.
  • Strong organizational skills.
  • Strong attention to detail.
  • Experience with SQL, Powershell.

Nice-to-haves

  • Experience in the electric energy sector.
  • Familiarity with regulatory compliance frameworks.

Benefits

  • Hybrid work model with a minimum of two days in the office.
  • Opportunities for professional development and training.
  • Inclusive workplace culture.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service