Duquesne Light Company - Pittsburgh, PA
posted 3 months ago
Duquesne Light Company, headquartered in downtown Pittsburgh, is a leader in providing electric energy and has been at the forefront of the electric energy market, with a history rooted in technological innovation and superior customer service. Today, the company continues its role as a leader in the transmission and distribution of electric energy, providing a secure supply of reliable power to more than half a million customers in southwestern Pennsylvania. Duquesne Light Company is committed to creating a culture of inclusion, valuing and respecting the unique differences and experiences of its employees. The company believes that these differences lead to better collaboration, innovation, and outcomes, and invites you to join their team. The Sr. Information Security Analyst I will be part of the Cybersecurity Operations (“CyberOps”) team, directly supporting NERC CIP requirements and critical infrastructure security. This role requires a deep understanding of the organization's information security strategy and the ability to contribute to the development, maintenance, and implementation of the overall system-wide information security program necessary for the protection of Duquesne Light. The analyst will need to possess business acumen and the ability to assess security risks while considering system operational needs and adherence to regulatory requirements. They will be responsible for anticipating and articulating potential operational impacts of policy and controls changes, utilizing various tools and methods to provide support to end users, technology teams, and projects on a regular and ad hoc basis. The Information Security Analyst will work collaboratively across the enterprise to conduct cybersecurity activities, including analyzing information security risk and threat data, monitoring and investigating anomalies, developing security controls/solutions, and risk mitigation recommendations. They will execute system and application hardening, conduct vulnerability assessments, determine information security-related business needs for potential projects, and diligently monitor networks and systems for signs of infection, compromise, and misconfiguration. This position is hybrid, requiring a minimum of two days in the office and the remaining days working remotely, with the location based in downtown Pittsburgh, Pennsylvania at the Woods Run Complex.