Cyber Security Analyst-ServiceNow

Requisition ID: 66207

Job Function/Category: Information Technology

Employment Type: Exempt Full Time

This is an exciting time to be joining PSEG. Our commitments, which include safety, integrity, customer focus, and diversity & inclusion, are the fabric of our culture and help drive the success of our business. We are fortunate to have an outstanding workforce of diverse and highly skilled talent who move us forward in our operational excellence journey. PSEG has more than 12,000 employees who are dedicated to the communities we serve and embody our vision: People providing Safe, Reliable, Economic and Greener Energy.

Job Summary

This is an experienced senior level security analyst responsible for performing assessments of systems, networks, and applications within the organizational environment and identifies where those systems/networks/applications deviate from acceptable security configurations, New Jersey State information security policies and standards, or other statutory, regulatory, or contractual security requirements.

The analyst is the ServiceNow SecOps and Vendor Risk Management (VRM) risk subject matter expert providing support to stakeholders; assumes appropriate administrative, project management, team lead, and/or supervisory responsibilities as delegated by superiors; and performs other related duties as assigned. The position requires excellent communication skills and the ability to confidently interact with all levels, from executive and business unit leadership to staff.

Job Responsibilities

Responsibilities include but are not limited to
  • Manage and develop ServiceNowSecOps and VRM module
  • Maintain knowledge of applicable cyber defense policies, regulations, and compliance documents specifically related to cyber defense auditing.
  • Make recommendations regarding the selection of cost-effective security controls to mitigate risk (e.g., protection of information, systems and processes).
  • Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
  • Manage and/or assist with protective or corrective measures when a vendor cybersecurity incident or vulnerability is discovered.
  • Identify and recommend cybersecurity hardening measures and procedures within the organization and across the enterprise in consultation with relevant stakeholders.
  • Participate in industry groups such as EI-ISAC, MS-ISAC, US-CERT, DHS, FBI, NJSP, and other industry peers and partners to gain and understand security threats and intelligence.
  • Collaborate on cyber privacy and security policies and procedures.
  • Collaborate with key stakeholders to establish a cybersecurity vendor risk management program.
  • Verify minimum security requirements are in place for all applications.
  • Perform other cybersecurity-related and administrative duties as assigned


    Job Specific Qualifications

    This is a multi-level position and placement is dependent upon skills, knowledge and experience, scope and number of products managed by the selected candidate. For a Cyber Security Analyst must have at least 4 or more years of experience in Information Security or related field . For a Sr. Cyber Security Analyst, must have at least 6 years or more years of experience in Information Security or related field .

    Please note this is a NERC CIP position and requires NERC CIP background investigation prior to start

    In addition to the requirements listed below, this position also requires:
    • Experience managing and developing in ServiceNowSecOps and VRM module

    Required:
    • Bachelor’s degree in Computer Science, Information Systems, Cyber Security, Engineering plus 4 or more years of experience in information security, cyber security or related field i.e. Information Technology
    • Or Associate’s degree with 8 or more years of experience in information security, cyber security or related field i.e. Information Technology
    • Experience with cloud computing and can implement strong security to protect cloud first environment.
    • Experience with key information security technologies such as SIEM, firewalls, intrusion detection/prevention systems, vulnerability assessment, encryption, identity and access control systems, anti-malware, and security event analysis.


    Minimum Years of Experience

    4 years of experience

    Disclaimer

    Certain positions at the Company may require you to have access to Part 810-Controlled Information. Under the law, the Company is limited in who it can share this information with and in certain circumstances it is necessary to obtain specific authorization before the Company can share this information. Accordingly, if the position does require access to this information, you must complete a 10 CFR Part 810 Export Control Compliance Nationality Request Form, a copy of which will be provided to you by Talent Acquisition if an offer is made. If there is a need for specific authorization, due to the time it takes to obtain authorization from the government, we will likely not be able to further proceed with an offer.

    As an employee of PSE&G or PSEG Long Island, you should be aware that during storm restoration efforts, you may be required to perform functions outside of your routine duties and on a schedule that may be different from normal operations.

    This site ( http://www.pseg.com ) is strictly for candidates who are not currently PSEG employees. PSEG employees must apply for jobs internally through empower which can be accessed through the mypseg homepage by clicking on the employee center tab, then under the empower header, choose careers.

    Business needs may cause PSEG to cancel or delay filling position at any time during the selection process.

    Certain positions at the Company may require you to have access to Part 810-Controlled Information. Under the law, the Company is limited in who it can share this information with and in certain circumstances it is necessary to obtain specific authorization before the Company can share this information. Accordingly, if the position does require access to this information, you must complete a 10 CFR Part 810 Export Control Compliance Nationality Request Form, a copy of which will be provided to you by Talent Acquisition if an offer is made. If there is a need for specific authorization, due to the time it takes to obtain authorization from the government, we will likely not be able to further proceed with an offer.

    Public Service Enterprise Group (PSEG) is an equal opportunity employer, dedicated to a policy of non-discrimination in employment, including the hiring process, based on any legal protected characteristic. Legally protected characteristics included, race, color, religion, national origin, sex, age, marital status, sexual orientation, disability, or veteran status or any other characteristic protected by federal, state, or local law in locations where PSEG employs individuals.

    Need to request an accommodation?

    If you have a disability and need assistance submitting your resume, applying for a position or registering for a test, please call 973-430-3845. Any information provided regarding a disability will be kept strictly confidential and will not be shared with anyone involved in making a hiring decision.