Job Posting
Advisor IT Security Analyst or below
Puget Sound Energy
Bellevue, WA US
Job Summary & Responsibilities
Puget Sound Energy’s IT Security and Risk department is looking for an Advisor IT Security Analyst or below, depending on
qualifications, to join our team. This role will develop, deliver, maintain or monitor IT security policies, standards, and best
practices. There will be opportunities to implement, integrate, maintain, report or monitor security and compliance risk
management procedures to reduce financial loss and critical business services. The ideal candidate will also perform
security, vulnerability and threat assessments and security incident management. The candidate will oversee the compliance
requirements, audit services and be an integral part of proper implementation of our disaster reocvery procedures in
alignment with enterprise business continuity, development and testing. Diligently upholds the safety compliance standards
inherent in PSE’s operating and/or field procedures related to work responsibilities. Promotes and supports a culture of total
safety.
This is an excellent opportunity to play an integral role within PSE to help us better serve the environment, our customers and
the communities in which they live. PSE provides an environment where all employees are valued, respected and provided
with the opportunity to achieve maximum performance. We offer a comprehensive pay package that includes competitive
compensation, annual goals-based incentive bonuses, comprehensive cafeteria-style benefits, 401(K), and a company paid
retirement pension plan and an employee assistance and wellness program. Gain the energy to do great things through a
career with Puget Sound Energy!
Qualifications/Skills/Abilities
- Bachelor’s degree and 8 years of experience or combination of specialized training/experience and 8 years of directly
relevant experience.
- Technical proficiency in security-related hardware and software; ability to function as a consultant to other IT groups on
security matters as a recognized technical expert and to lead teams
- Knowledge of security frameworks such as: ISO 27001, NIST 800-53, COBIT and COSO
- Experience with implementation and management of compliance requirements such as NERC and SOX
- Understanding and experience with other security products and techniques such as token-based dialup authentication,
modem callback and password management is desirable
- Ability to effectively adapt to and apply rapidly changing technology to business needs
- Strong knowledge and understanding of business needs, with the ability to establish and maintain a high level of customer
trust and confidence
- Proven ability to work under stress in emergencies; flexibility to handle pressure coming from all directions at one time
- Strong analytical and problem-solving skills
- Strong customer focus and ability to manage client expectations
DESIRED QUALIFICATIONS:
- 1+ year experience configuring or managing eGRC Archer systems and solutions
- 1+ year experience configuring or managing an enterprise dependent solution in support of multiple business processes
- RSA Archer Administration and RSA Archer Advanced Administration Certification a plus
- Experience in various database design technique.
- Highly desirable are certifications in one or more of the following:
- Certified Information Security Manager (CISM)
- Certified Information Systems Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- Certified Network Security Professional (CNSP) or Associate (CNSA)
- Certified Protection Professional (CPP)
- Cisco Certified Security Professional (CCSP)
- CyberSecurity Forensic Analyst
- EC-Council Certified Security Analyst
- InfoSys Security Architecture Professional (ISSAP/CISSP)
- InfoSys Security Engineering Professional (ISSEP/CISSP)
- InfoSys Security Engineering Professional (ISSEP/CISSP)
- Internet Computer Security Engineer (ICSE)
- Prosoft CIW Security Professional (CIW-SP)
- SANS-GIAC certifications family
- Security Plus
This position will be filled as an advisor security analyst, senior security analyst or security analyst