Principal, NERC Cybersecurity Compliance (CIP)
Core
Principal providing advanced OT/IT and cybersecurity technical knowledge to support reliability regulatory compliance assignments addressing physical and electronic cybersecurity.
Role type
Principal, NERC Cybersecurity Compliance (CIP)
Builds
NERC CIP policies, procedures, job aides, and training programs for internal support groups and external stakeholders
Domain
Energy infrastructure / Utility cybersecurity / Regulatory compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
OT/IT and cybersecurity technical acumen, NERC CIP program implementation, regulatory compliance, policy advocacy, training development, critical thinking, complex problem solving, stakeholder navigation, technical regulatory translation, firewall/networking/vulnerability scan proficiency, MS SharePoint/KPI applications
Preferred skills
Advanced NERC rules and framework knowledge, CISSP/CISM/CISA certifications, organizational/presentation/facilitation skills
Technologies
MS SharePoint, KPI Applications, firewall, networking, vulnerability scan technologies
Responsibilities
Drive end-to-end planning, coordination, and execution of assigned deliverables supporting program continuous improvement and internal controls; Provide OT/IT/cybersecurity/SCADA proficiency guidance regarding compliance fitness; Support RTO/ISO and NERC Medium/High Impact performance demonstration obligations; Oversee maintenance of NERC CIP policies, procedures, and job aides; Develop and deliver NERC training to internal and external stakeholders; Maintain awareness of emerging utility industry and cybersecurity developments through benchmarking; Answer specific queries and provide guidance requiring advanced technology knowledge
Seniority
Principal, strategy & mentorship