empty

Analyst Sr (Cybersecurity Technical Writer)

Entergy

Job Description

Posted on: 
November 12, 2024

Summary and company overview

Summary Information about the Role:

The Security & Regulatory Technical Writer will be responsible for documenting the framework to ensure that the security organization’s practices remain observant to security and compliance directives required by North American Electric Reliability Corporation (NERC), Critical Infrastructure Protection (CIP), Nuclear Regulatory Commission (NRC), Nuclear Cyber (10 CFR 73.54), Sarbanes Oxley (SOX), Heath Insurance Portability Accountability Act (HIPAA), cyber risk, etc. The Technical Writer, presents, and trains on the programs and processes required to secure Entergy’s critical systems and assets as well as meet or exceed Entergy’s commitment and obligation to the various regulatory bodies and internal Entergy groups.

This position is expected to have operational expertise in areas of Information Security, Operational Technology, Cybersecurity, electrical power, professional auditing, and risk-based compliance processes.

This role will participate in communications with information sharing centers, and industry peers on the status of Entergy’s documentation status.

Company Overview:

NA

Responsibilities

  • Utilizes applicable change management methodology to assure effective implementation of documentation changes (e.g. policies, procedures, standards, etc.) changes including interfacing between multiple business units.
  • Conducts and/or obtains necessary program and process champion or owner reviews.
  • Participates in corrective action program activities including self-assessments, benchmarking and condition reporting and response.
  • Exhibits strong teamwork and problem-solving skills.
  • Ensures compliance with applicable requirements, regulations, and procedures such as NERC CIP compliance, SOX, HIPAA, etc. and is familiar with routine supply chain operating data, corrective action reports, and evaluates data as needed to support compliance and process improvement.
  • Proposes, develops, and writes documentation changes that improve efficiency and compliance.
  • Serves as a shared resource as required.
  • Performs other activities such as presentation development, training material development, etc.
  • Exhibits subject matter expertise in one or more areas of compliance and/or cybersecurity.

Job Requirements

Required Qualifications:

  • Bachelor’s degree strongly preferred in computer science, cybersecurity, internal audit or a related discipline or equivalent work experience, Master’s degree a plus.
  • Minimum 6 years of regulatory compliance and auditing experience as it relates to IS
  • Good communication skills with internal stakeholders
  • Strong writing skills
  • Experience with cybersecurity operations
  • Experience working with direct, indirect, and outsourced resources
  • Exposure to operations playbooks, run books, and performance measures
  • Some experience maintaining operations leveraging industry best practices

Preferred Qualifications:

  • Experience with data analysis, data integration, and data validation activities with large, regulated utilities or related industry preferred
  • ISACA certification, such as CISSP, CISM, CISA preferred

Additional commentary

Working Conditions:

As a provider of essential services, Entergy expects its employees to be available to work additional hours, to work in alternate locations, and/or to perform additional duties in connection with storms, outages, emergencies, or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties.

Please Note:

Authorization to work in the United States is a precondition to employment in this position. Entergy will not sponsor candidates for work visas for this position.

EEO Statement:

The Entergy System of Companies provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a protected veteran in accordance with applicable federal, state, and local laws.

Accessibility:

Entergy provides reasonable accommodations for online applicants. Requests for a reasonable accommodation may be made orally or in writing by an applicant, employee, or third party on his or her behalf.

Additional Responsibilities:

As a provider of essential services, Entergy expects its employees to be available to work additional hours, to work in alternate locations, and/or to perform additional duties in connection with storms, outages, emergencies, or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties.

Entergy Pay Transparency Policy Statement:

The Entergy System of Companies (the Company) will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.

Summary and company overview

Summary Information about the Role:

The Security & Regulatory Technical Writer will be responsible for documenting the framework to ensure that the security organization’s practices remain observant to security and compliance directives required by North American Electric Reliability Corporation (NERC), Critical Infrastructure Protection (CIP), Nuclear Regulatory Commission (NRC), Nuclear Cyber (10 CFR 73.54), Sarbanes Oxley (SOX), Heath Insurance Portability Accountability Act (HIPAA), cyber risk, etc. The Technical Writer, presents, and trains on the programs and processes required to secure Entergy’s critical systems and assets as well as meet or exceed Entergy’s commitment and obligation to the various regulatory bodies and internal Entergy groups.

This position is expected to have operational expertise in areas of Information Security, Operational Technology, Cybersecurity, electrical power, professional auditing, and risk-based compliance processes.

This role will participate in communications with information sharing centers, and industry peers on the status of Entergy’s documentation status.

Company Overview:

NA

Apply now