Critical Infrastructure Compliance Specialist
Role details
Job location
Tech stack
Job description
This position is responsible for supporting the Compliance and Regulatory Department by executing processes or performing actions designed to maintain PEC's compliance with applicable laws, regulations, and standards., + Inspect and review data and information for accuracy to maintain compliance with North American Electric Reliability Corporation's (NERC) Critical Infrastructure Protection (CIP) Standards for its Operational Technology (OT) and Informational Technology (IT) environments utilized to operate PEC's transmission and distribution systems.
-
Analyze and evaluate reporting from PEC's automated systems and PEC's IT and Supervisory Control and Data Acquisition (SCADA) groups to ensure the effective compliance of NERC CIP Reliability Standards.
-
Verify operating system updates, patches, and configuration changes were performed in accordance with NERC Reliability Standards.
-
Verification of baseline documentation are completed and updated in accordance with NERC Reliability Standards.
-
Verify system diagrams and documentation for installation of new and modified hardware, software, and networks.
-
Verify system configuration for proper logging.
-
Verify system backup and recovery policies and procedures including routine automated and manual backups and offsite storage for compliance.
-
Verify backup and recovery procedures are per industry standards and/or regulatory compliance.
-
Responsible for participating in performance audits on overall system architecture and system integration between various energy management system (EMS) applications and interfaces with other PEC systems.
-
Verifying account administration, system hardening and vulnerability scans.
.
-
Assist in development of procedures for specifying and maintaining servers, storage, and special purpose work stations.
-
Assist in the development of requirements and verify the reliability and compliance reports related to the construction, operation, and maintenance of PEC's Facilities and systems using a personal computer and Microsoft Office software.
-
Analyze technical information and data needed to prepare reports.
-
Develop reports and fill information and data requests.
-
Assist subject matter experts in researching and preparing work plans, goals, procedures, and proposed solutions to complex reliability and compliance related issues.
-
Recommend revisions to reliability and compliance related policies and procedures as a result of data gathered and feedback from staff performing NERC/Texas Reliability Entity (Texas RE) reliability and compliance related activities.
-
Assist in the development of Self Reports, Mitigation Plans, and other external and internal reliability and compliance related documents.
-
Lead internal cross functional teams to gather and verify reliability and compliance related data from a team of IT/OT System Administrators, Operations, and others.
-
Maintain current technical knowledge of NERC/Texas RE Requirements in order to update policies and procedures.
-
Implement required policies, procedures, and configurations; make recommendations for improvements.
-
Prepare and present reliability and compliance related materials to a wide variety of audiences including senior management.
-
Participate in industry stakeholder groups including CIPWG at ERCOT.
-
Review and verify other types of information related to 693 Operations and Planning Standards.
-
Prepare for and participate in Texas RE Audits., + Performs other related duties as necessary or assigned
Requirements
-
Knowledge of using computer systems, which may include setting up and using hardware and software programs, entering data, configuration, or processing information
-
Knowledge of principles and processes for providing customer service
-
Skilled in time management
-
Skilled in prioritizing and managing changing priorities
-
Ability to communicate effectively verbally and in writing
-
Ability to maintain confidentiality
-
Ability to listen and understand information verbally and in writing
-
Ability to anticipate, identify, analyze and resolve conflict and problems, + Bachelor's Degree in a related field
-
Three years of directly related experience including but not limited to NERC, CIP, cyber security compliance, IT systems administration or network administration background experience
-
Directly related experience may substitute for education
-
Valid Driver's License, + The employee may be required to lift, carry, push, pull or move up to 25 pounds