Basic Purpose
Develops and implements appropriate policies, procedures and programs to maintain compliance with NERC Critical Infrastructure Protection (CIP) Reliability Standards and manages risk resulting from cyber and physical attacks that could compromise the reliability of the bulk power system.
Essential Duties and Responsibilities
Supports the development, implementation, and maintenance of policies, procedures, and records necessary to demonstrate NERC CIP compliance.
Implements internal compliance self-assessment activities to review applicable requirements, current practices, and evidence.
Participates in compliance activities, including external audits, preparation of self-certifications and ad-hoc requests. Ensures scheduled compliance activities and events are completed and documented.
Collaborates with EMS support team, Subject Matter Experts, corporate security, and other departments to ensure adherence to CIP requirements.
Provides technical and compliance assistance regarding implementation of the NERC CIP requirements and documents appropriately.
Prepares, reviews, and submits regulatory filings and reports of events that impact the reliability of the bulk power system.
Assists in preparation and maintenance of NERC CIP Reliability Standard Audit Worksheets (RSAWs).
Develops and administers required training, awareness programs, and targeted procedure training.
Assists the IT Security team to manage security tools to maintain compliance and security of the Emergency Management System network.
Ensures all compliance aspects of position are known and followed; understands and complies with all policies, codes and regulations applicable to position and company.
Performs related duties as assigned.
Essential Education, Skills, and Environment
Education and Work Experience
Bachelor’s degree in Computer Science, Business, Management or related discipline from an accredited school and 6 years of related experience. Required NERC Training.
Candidates that do not possess a bachelor’s degree must have a minimum of 10 years of related work experience. Required NERC Training.
Specialized Knowledge and Skills
Demonstrated knowledge of:
- NERC CIP Standards.
- Electric utility experience in strategic or business planning, information technology, energy management systems or compliance auditing.
Skills such as:
- Planning, analytical, interpersonal and communication.
Equipment and Applications
PCs, MS Office applications, Share Point, Visio, spreadsheet and database.
Work Environment and Physical Demands
General office environment. No special physical demands required.
NOTE:
Depending on qualifications of applicants, this position may be filled at a lower level than that which is posted.