Manager, Specialized Cybersecurity
Southern Company Atlanta, Georgia, United States
Utilities · 10,001+ employees
About the role
The manager will oversee the architecture, implementation, and operations of cybersecurity systems across various energy business units. They are responsible for leading technical teams, managing budgets, and ensuring compliance with NERC CIP and other industry standards.
What they look for
Requirements
Candidates must have at least 8 years of information security leadership experience, preferably with a bachelor's degree in Engineering or Computer Science. A strong background in industrial control systems and energy sector security regulations is required.
Benefits
Full description
Title: Cyber Security Manager - Generation/Gas/Transmission/PowerSecure
Location: Birmingham, AL; Energy Center or Atlanta, GA (GPC HQ)
Status: Full-time employee
Department Name: Specialized Cyber Security
Reports to: Director, Cybersecurity
Purpose: This position oversees the architecture, implementation, and operations of the cyber security systems and processes in support of Generation, Gas, Transmission, PowerSecure, and Southern Power. This role combines business knowledge with an extensive understanding of security technology to lead a team to consult and engineer technology security strategies and solutions to secure the company’s energy operations.
Education / Experience:
- Extensive breadth and depth of knowledge of technology and cybersecurity concepts and best practices
- Success in a senior leadership position in a large-scale, complex organization in a highly regulated industry
- Demonstrated knowledge of energy sector industrial control system security technologies, operations, trends, and challenges
- Experience leading management, expert level technical talent, and managing complex multi-million-dollar budgets
- A solid track record of applying knowledge, experience and leadership to anticipate, identify and solve complex problems and threats
- Understanding of generation operations, substations, and their associated industrial control systems – includes both “big iron”, renewable, and distributed generation systems.
- Experience with information security regulation as it applies to the energy and utility industry particularly NERC CIP Cyber Security regulations
- Ability to present recommendations to executive management and system sponsors and influence outcomes by obtaining buy-in and budget
- 8+ years in information security leadership is required
- A bachelor’s degree in Engineering, Computer Science or related field preferred
- Industry certifications highly preferred (CISSP, CISA, CISM, GIAC)
Job Responsibilities:
- Lead and enhance an organization that is capable of achieving its defined mission; including talent development, succession management, and team building.
- Establish and maintain excellent working relationships and collaboration partnerships with the management team throughout the Generation, Gas, Transmission, PowerSecure, and Southern Power organizations as well as the Technology Organization
- Communicate and brief executive management regarding Generation, Gas, Transmission, PowerSecure, and Southern Power security and compliance risk, posture, threats, remediation, implementations, and incidents
- Work with IT and business units across Southern Company to deliver on business requirements, especially as they pertain to cyber security and compliance risk and mitigation
- Lead IT cyber security engineering, implementation, and support for Generation, Gas, Transmission, PowerSecure, and Southern Power
- Perform capital expense and operating expense financial management for the organization and across business units for project implementations
- Provide guidance, direction, and decision making when it comes to the selection and support of security technologies used by the organization as well as Generation, Substation, PowerSecure, and Southern Power
- Lead the technology efforts to comply with NERC CIP and other applicable standards for Southern Company Operations
- Provide leadership for design and implementation of Southern Company Generation, Gas, Transmission, PowerSecure, and Southern Power cyber security projects to protect control system cyber assets
Additional Information
- Must be able to pass both standard and insider threat program background requirements
- This position requires frequent (up to 15%) travel to plant locations. Overnight travel is expected.
- Must be eligible to obtain US Security Clearance
This position falls under the company’s Insider Threat Program and will have access to, and control over sensitive data, systems or assets. Enhanced personnel screening, which includes a background review, drug screen and psychological assessment, will be required if you are selected for this position
About Southern Company
Southern Company (NYSE: SO) is a leading energy provider serving 9 million customers across the Southeast and beyond through its family of companies. Providing clean, safe, reliable and affordable energy with excellent service is our mission. The company has electric operating companies in three states, natural gas distribution companies in four states, a competitive generation company, a leading distributed energy solutions provider with national capabilities, a fiber optics network and telecommunications services. Through an industry-leading commitment to innovation, resilience and sustainability, we are taking action to meet customers' and communities' needs while advancing our goal of net-zero greenhouse gas emissions by 2050. Our uncompromising values ensure we put the needs of those we serve at the center of everything we do and are the key to our sustained success. We are transforming energy into economic, environmental and social progress for tomorrow. Our corporate culture has been recognized by a variety of organizations, earning the company awards and recognitions that reflect Our Values and dedication to service. To learn more, visit www.southerncompany.com.
Southern Company invests in the well-being of its employees and their families through a comprehensive total rewards strategy that includes competitive base salary, annual incentive awards for eligible employees and health, welfare and retirement benefits designed to support physical, financial, and emotional/social well-being. This position may also be eligible for additional compensation, such as an incentive program, with the amount of any bonus/awards subject to the terms and conditions of the applicable incentive plan(s). A summary of the benefits offered for this position can be found here https://seo.nlx.org/southernco/pdf/SOCO-Benefits.pdf. Additional and specific details about total compensation and benefits will also be provided during the hiring process.
Southern Company is an equal opportunity employer where an applicant's qualifications are considered without regard to race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, gender identity or expression, or any other basis prohibited by law.
Southern Company Services
Similar roles
-
Information System Security Engineer III
TRISTAR INC Bloomington, Indiana, United States
-
Information System Security Engineer II
TRISTAR INC Bloomington, Indiana, United States
-
Network & Cybersecurity Engineer | C-sUAS
Sherpa 6 Alexandria, Virginia, United States · $165K–$200K/yr
-
Senior Cybersecurity Engineer
WSI (Warehouse Specialists, LLC) Town of Grand Chute, Wisconsin, United States
-
Associate Security Engineer
JPMorgan Chase & Co. Dublin, Leinster, Ireland
-
Cloud Security Engineer
Security Risk Advisors Philadelphia, Pennsylvania, United States · $90K–$130K/yr