Cyber Security Supervisor

Date: Apr 19, 2024

Location: Newark, NJ, US

Company: PSEG

Requisition: 78240

PSEG Company: PSEG Services Corp.    

Salary Range: $ 114,500 - $ 188,100 

Incentive: PIP 15%   

Work Location Category: Remote Local  

 

PSEG operates under a Flexible Work Model where flexible work is offered when job requirements allow. In support of this model, roles have been categorized into one of four work location categories: onsite roles, hybrid roles that are a blend of onsite and remote work, remote local roles that are primarily home-based but require some level of purpose-driven in-person interaction and living within a commutable distance, and remote non-local roles that can be effectively performed remotely with the ability to work in approved states.

PSEG offers a unique experience to our more than 12,000 employees – we provide the resources and opportunities for career development that come with being a Fortune 500 company, as well as the attention, camaraderie and care for one another you might typically associate with a small business. Our focus on combatting climate change through clean energy technology, our new net zero climate vision for 2030 and enhanced commitment to diversity, equity and inclusion; and supporting the communities we serve make this a particularly exciting time to join PSEG.

Job Summary

Under the direction of the management, this position is responsible for the day-to-day operations of cyber security program and processes. The Cybersecurity Supervisor develops, recommends, and administers policies, procedures, risk management, testing, audit efforts, and the enforcement of security controls.

Job Responsibilities

  • In collaboration with management, plans, organizes, leads, administers, and evaluates the projects and activities of the Risk Management / Governance and Compliance function.
  • Supervises a work group cyber security professional. Hires, evaluates, trains, disciplines, schedules and assigns work, and recommends promotions, transfers, or terminations as necessary.
  • Provides guidance on design, implementation, administration, and enforcement of information security controls to application systems and tools, including network security and monitoring, intrusion prevention, intrusion and endpoint detection and response, virus protection, and identity and access management.
  • Evaluates risks and designs controls to manage risks. Documents and reports control failures and gaps to stakeholders. Provides remediation guidance and prepares management reports to track remediation activities.
  • Manages the implementation of projects and processes such as GRC (Governance, Risk and Compliance) to automate and continuously monitor information security controls, exceptions, risks, and testing. Leads the development of reporting metrics, dashboards, and evidence artifacts.
  • Provides technical expertise and guidance of security control implementation.
  • Remains current on information security management and technological advancements. Maintains comprehensive knowledge of the current cyber threat landscape, cyber security product categories and their application, and available and immerging technologies.
  • Evaluates technology and current and future security-related requirements and develops or recommends technical and operational solutions 
  • Actively participates in strategic planning and leads tactical planning to coordinate the delivery of products and services. Provides project management for applicable technology deployments.
  • Participates in the development and administration of section budget; implements and allocates resources following budget approval; approves expenditures.
  • Improves PSEG security positioning through process, policy, and procedure development.
  • Performs other duties as assigned.

Job Specific Qualifications

Required:

- Bachelor's degree in Computer Science, Information Systems, Cyber Security, Engineering or related discipline and minimum of 6 years of experience in Information Security. In lieu of a degree, minimum of 10 years of experience in information security role or related experience.
- Knowledge of information security risk management frameworks and compliance practices.
- Knowledge of securing network technologies, client, and server operating systems.
- Ability to develop security standards and guidelines based on best practices and industry standards.
- Excellent oral and written communication skills. Excellent leadership, planning and organizing, results orientation, technical/professional knowledge.
- Ability to foster working relationships with the team, IT Management and Client departments.
- Ability to explain technical concepts to the business users in the context of business requirements.
- Technical experience includes: information/data/network/computer security design, administration and/or assessment.
- Broad knowledge of information systems including Windows security, network security, systems development, communication networks, security software/hardware and operating systems.

Specific Experience Required:
- Supervise team tasked with ensuring suppliers remains in compliance with cybersecurity requirements and industry best practices.
- Responsible for maintaining pertinent risk information pertaining to vendor, and communicate this data via consistent reporting to senior leadership, pertinent stakeholders.
- Responsible for developing and report on key risk metrics for the vendor risk management program.
- Lead the development and implementation of the system-wide risk management function of the information security program to ensure cyber security risks are identified and monitored.
- Lead the system-wide information security compliance program, ensuring cyber activities, processes, and procedures meet defined requirements, policies and regulations.
- Develop and implement effective and reasonable policies and practices to secure protected and sensitive data and ensure cyber security and compliance with relevant legislation and legal interpretation.
- Work with Internal and External Auditors as appropriate on required security assessments and audits.

Desired:
- Experience in Operational Technology (OT) Security is a plus.
- ISC2 Certified Information Systems Security Professional (CISSP) or equivalent.
- Programming Experience in Python.

Minimum Years of Experience

6 years of experience

Education

Bachelors

Certifications

None Noted

Disclaimer

Certain positions at the Company may require you to have access to Part 810-Controlled Information.  Under the law, the Company is limited in who it can share this information with and in certain circumstances it is necessary to obtain specific authorization before the Company can share this information.  Accordingly, if the position does require access to this information, you must complete a 10 CFR Part 810 Export Control Compliance Nationality Request Form, a copy of which will be provided to you by Talent Acquisition if an offer is made.  If there is a need for specific authorization, due to the time it takes to obtain authorization from the government, we will likely not be able to further proceed with an offer.

PSEG is an equal opportunity employer, dedicated to a policy of non-discrimination in employment, including the hiring process, based on any legally protected characteristic. Legally protected characteristics include race, color, religion, national origin, sex, age, marital status, sexual orientation, disability or veteran status or any other characteristic protected by federal, state, or local law in locations where PSEG employs individuals.

 

As an employee of PSEG you should be aware that during storm restoration efforts, you may be required to perform functions outside of your routine duties and on a schedule that may be different from normal operations.

 

For all roles, PSEG’s drug and alcohol testing program includes pre-employment testing, testing for cause, and post-incident/accident testing. For employees in federally regulated roles (including positions covered by USDOT, PHMSA, or NRC regulations), this also includes random testing. Although numerous states throughout the country have legalized marijuana/cannabis products recreationally and/or medically, it is prohibited for employees in federally regulated roles. Employees who are hired or transfer into a federally regulated role are subject to drug and alcohol testing, inclusive of marijuana. Please note that the use of CBD products may result in a positive drug test for THC/Marijuana and such use is not a legitimate medical explanation for such a positive result.

 

PSEG employees must apply for jobs internally through emPower which can be accessed through sharepoint.pseg.com by clicking on the emPower icon, then selecting careers. This site (PSEG Careers and Job Openings) is strictly for candidates who are not currently PSEG employees, with the exception of PSEG employees who do not have company email addresses.

PSEG is committed to providing reasonable accommodations to individuals with disabilities. If you have a disability and need assistance applying for a position, please call 973-430-3845 or email accommodations@pseg.com.

If you need to request a reasonable accommodation to perform the essential functions of the job, email accommodations@pseg.com. Any information provided regarding a disability will be kept strictly confidential and will not be shared with anyone involved in making a hiring decision.

ADDITIONAL EEO/AA INFORMATION (Click link below)

Know your Rights: Workplace Discrimination is Illegal

Pay Transparency Nondiscrimination Provision


Nearest Major Market: Newark
Nearest Secondary Market: New York City

Job Segment: Testing, Compliance, Risk Management, Information Security, Recruiting, Technology, Legal, Finance, Human Resources