Info Security Engineer I
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+3 more
Job description
The Information Security Engineer I supports and enhances the Company’s cybersecurity program, with a strong emphasis on North American Electric Reliability Corporation Critical Infrastructure Protection (NERC CIP) compliance, security information and event management (SIEM), configuration monitoring and incident response. The position safeguards critical infrastructure systems, supports regulatory compliance activities, monitors enterprise and operational technology security controls, and provides technical guidance and knowledge sharing to junior cybersecurity personnel.
The role applies hands-on cybersecurity engineering experience across industrial control system (ICS), operational technology (OT) and enterprise environments and works collaboratively with business and technical stakeholders to strengthen cyber resilience., + Conduct risk assessments and gap analyses related to NERC CIP requirements and cybersecurity leading practices.
-
Administer, monitor and optimize SIEM platforms to support threat detection, alerting, log correlation and incident investigation.
-
Develop and tune SIEM use cases, correlation rules, dashboards and reporting capabilities.
-
Provide technical guidance, knowledge sharing and operational support to junior security analysts and engineers.
-
Collaborate with infrastructure, network, application and operations teams to improve system hardening and secure configuration practices.
-
Support and maintain compliance with applicable NERC CIP standards across enterprise and operational technology environments.
-
Participate in NERC CIP audits, assessments, evidence collection, remediation tracking and compliance reporting activities.
-
Collaborate with internal stakeholders to implement and maintain cybersecurity controls aligned with regulatory and organizational requirements.
-
Assist in the development, review and maintenance of cybersecurity policies, standards, procedures and technical documentation.
-
Analyze security events and alerts to identify indicators of compromise, suspicious activity or policy violations.
-
Integrate log sources from enterprise and OT systems into centralized monitoring platforms.
-
Manage and support configuration monitoring and file integrity monitoring solutions.
-
Develop and maintain baselines for critical cyber assets and monitor for unauthorized changes.
-
Investigate configuration drift, integrity violations and security exceptions. .
-
Participate in cybersecurity incident response activities, including detection, triage, containment, eradication, recovery and post-incident analysis.
-
Support incident investigations involving enterprise and OT/ICS environments.
-
Maintain incident response documentation, playbooks and lessons-learned reports.
-
Assist in coordinating tabletop exercises and cybersecurity readiness activities.
-
Participate in cross-functional cybersecurity projects and strategic initiatives.
-
Participate in an on-call rotation for cybersecurity incidents and operational support.
Additional Responsibilities:
-
Perform other job-related duties as assigned
-
Storm team duties as assigned
Requirements
-
Bachelor’s degree in Information Security, Computer Science, Engineering or a related field, or equivalent professional experience, required.
-
Seven (7) or more years of experience in cybersecurity engineering, security operations or compliance-focused security roles, required.
-
Hands-on experience with SIEM technologies, such as Splunk, required.
-
Experience with configuration monitoring and file integrity monitoring tools, including Tripwire Enterprise or equivalent solutions, required.
Preferred Qualifications:
-
Experience in electric utility, energy, industrial control system or operational technology environments preferred.
-
Experience supporting or implementing NERC CIP compliance programs preferred.
-
Experience supporting regulatory audits and compliance evidence management preferred.
-
Experience managing or supporting infrastructure or network systems, such as server or network administration, preferred.
-
Industry certification such as CISSP, GCIH, GCIA, Security+, CEH or a Splunk certification preferred.
Skills/Abilities:
-
Knowledge of cybersecurity incident response processes and methodologies.
-
Understanding of network security, system hardening, vulnerability management and access control principles.
-
Familiarity with cybersecurity frameworks such as the NIST Cybersecurity Framework, NIST SP 800-53, CIS Controls or IEC 62443.
-
Experience with endpoint detection and response, vulnerability management and threat intelligence platforms preferred.
-
Strong analytical, troubleshooting and problem-solving skills.
-
Ability to interpret technical and regulatory requirements and translate them into practical cybersecurity controls and documentation.
-
Ability to communicate clearly and effectively, verbally and in writing, with technical and nontechnical stakeholders.
-
Ability to collaborate across cybersecurity, infrastructure, network, application, operations and compliance teams.
-
Ability to mentor and support junior cybersecurity personnel through technical guidance and knowledge sharing.
About the company
Duquesne Light Company (Sumter, SC)
Duquesne Light Company, headquartered in downtown Pittsburgh, is a leader in providing electric energy and has been in the forefront of the electric energy market, with a history rooted in technological innovation and superior customer service. Today, the company continues its role as a leader in the transmission and distribution of electric energy, providing a secure supply of reliable power to more than half a million customers in southwestern Pennsylvania.
Duquesne Light Company is committed to creating a culture of inclusion. We value and respect the unique differences and experiences of our employees. We believe that our differences lead to better collaboration, innovation and outcomes. We want you to join our team!
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
The 12 Best Jobs for Software Engineers
The Most Popular IT Jobs on the Market
A Guide to Green Tech and Green IT Careers