Link copied to clipboard!
Back to Jobs
Security Risk Coordinator, Sr. at Entergy
Entergy
The Woodlands, TX
Logistics
Posted 0 days ago
Job Description
Job Title:Security Risk Coordinator Sr.Work Place Flexibility: HybridLegal Entity:Entergy Services LLC***This position can be located in The Woodlands TX New Orleans LA Little Rock AR or Jackson MS Other locations within Entergys service territory may be considered*** Job Summary/PurposeThe Risk Coordinator Senior serves as a security and risk subject matter expert to help manage security risk and enable alignment to the Enterprise Security Programs security risk agenda via coordinating and facilitating cyber and physical risk management processes and data to be presented to executive management.The Risk Coordinator Sr. assesses the appropriateness of security reliability privacy and data protection exceptions for business units from inputs provided and recommends where business units can enhance security protocol or execution to meet risk appetite.Job Duties/ResponsibilitiesRisk Identification and AssessmentLead and enhance programs for risk assessment /advisement on new technologies critical infrastructure protection logical cyber and physical security controls and data protection measuresIdentify evaluate and prioritize risk treatmentConduct security reviews of corporate and operational technology infrastructureRisk Management ProgramDevelop and acquire expertise in the areas of technology and regulations to ensure Entergys security posture and reliability standards are appropriately aligned to target risk thresholdsProvide security risk expertise and guidance to a diverse set of Entergy enterprise and operational technology stakeholdersExecute and create security risk management program practices and execution of security policies and requirements Lead and drive the creation maintenance and implementation of enterprise operational and critical infrastructure protection risk activitiesApply cybersecurity & risk management framework knowledge to drive risk identification across the enterpriseCompliance Reporting and Risk MetricsDesign and communicate risk details to team members during risk ranking sessions and ensure risk trends are identifiedTrack and manage risks identified through the security exception process or the cyber or physical risk review processDevelop key risk indicator (KRI) metrics and reporting processes associated with Entergys security risk to be utilized in executive reporting and dashboards including the use of technology including GRC platforms and artificial intelligence risk methodsCoordinationCoordinate with peer CSO functions to address security gaps within the three lines of defense as they arise through the risk exception process including identifying root causes and trendsLiaise with Lines of Business on security and reliability risks identified through the exception process or as new technologies and related projects are initiatedGuide business unit stakeholders on the mitigation strategies for requested exceptionsFacilitate line of business understanding of the impact of all mission critical business processesApply cybersecurity & risk management framework knowledge to drive risk identification across the enterpriseProcedure DevelopmentDevelop and assist in data and risk management process and procedure developmentData Protection & PrivacyAssist in data protection and privacy program governance and oversight activitiesMinimum RequirementsMinimum education required of the positionBachelors Degree in Information Systems Information Assurance Risk Management or related degreeMinimum experience required of the position5 years ofinformation security critical information protection information technology risk management data analysis or project management experienceMinimum knowledge skills and abilities for the positionPlanning organizational and project management skills; detail and process-oriented; able to juggle multiple priorities in a fast-paced environmentProblem-solving/decision making abilityWritten and verbal communication skills able to explain complex issues in clear and concise termsInterpersonal skills including teamwork facilitation and negotiationHighly collaborative able to work cross-functionally; possessing the ability to forge relationships and partner effectivelyDesired knowledge skills and abilities for the position but not requiredUnderstanding of risk management frameworks (NIST 800-39 Managing Information Security Risk NISTIR 8286 Integrating Cybersecurity and Enterprise Risk Management (ERM) The Open FAIR (Factor Analysis of Information Risk) COSO Enterprise Risk Management etc.)Understanding of logical and physical security technologies and controls (NIST CSF NIST 800-53 etc.)Understanding of privacy protection best practices and technical requirementsTechnology (Archer GRC/ServiceNow GRC or GRC platforms Microsoft Power BI or other Data Analytics Quantitative Risk other risk management platforms)Any certificates licenses etc. required for the positionThe following certifications are desired but not required for this position;Certified Information Systems Manager (CISM)Certified Information Systems Security Professional (CISSP)Certified in Risk and Information Systems Control (CRISC)Certified in the Governance of Enterprise IT (CGEIT)Certified Information Systems Auditor (CISA)Certified Protection Profession (CPP)Primary Location: Texas-The WoodlandsTexas : The WoodlandsArkansas : Little RockDistrict of Columbia : WashingtonLouisiana : New OrleansMississippi : JacksonJob Function: All Other JobsFLSA Status: ProfessionalRelocation Option: No Relocation OfferedUnion description/code: NON BARGAINING UNITNumber of Openings: 1Req ID: 121717Travel Percentage:Up to 25%An Equal Opportunity Employer Minority/Female/Disability/Vets. Please click here to view the EEO page or see statements below.EEO Statement:The Entergy System of Companies provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race color religion sex gender sexual orientation gender identity or expression national origin age disability genetic information marital status amnesty or status as a protected veteran in accordance with applicable federal state and local laws. The Entergy System of Companies complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment including but not limited to recruiting hiring placement promotion termination layoff recall transfer leaves of absence compensation and training.The Entergy System of Companies expressly prohibits any form of unlawful employee harassment based on race color religion sex gender sexual orientation gender identity or expression national origin age genetic information disability or veteran status. Improper interference with the ability of the Entergy System of Company employees to perform their expected job duties is absolutely not tolerated.Accessibility:Entergy provides reasonable accommodations for online applicants. Requests for a reasonable accommodation may be made orally or in writing by an applicant employee or third party on his or her you are an individual with a disability and you are in need of an accommodation for the recruiting process please clickhereand provide your name contact number the accommodation requested and the requisition number that you are requesting the accommodation for. Employee Services will contact you regarding your request.Additional Responsibilities:As a provider of essential services Entergy expects its employees to be available to work additional hours to work in alternate locations and/or to perform additional duties in connection with storms outages emergencies or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties.Know Your Rights: Workplace Discrimination is IllegalThe non-confidential portions of the affirmative action program for individuals with disabilities and protected veterans shall be available for inspection upon request by any employee or applicant for employment. Please to schedule a time to review the affirmative action plan during regular office hours.EEI Testing:One way that Entergy has found to identify and assess the abilities and skills needed for certain jobs is through pre-employment testing. If this position does require an EEI test the type of test will be located under the qualifications section of the job posting. If you are invited to a test session we strongly recommend you review and complete the practice test as well as review the testing brochure for your respective test. The test brochure will give you critical information on the test such as time allocated and numberof questions. Also keep in mind that the actual test is timed; you should practice timing yourself while doing the practice tests. The practice test information and test brochures can be located by going to the EEI website Logon ID: entergy password: practice test (2 words).Travel expenses incurred in connection with EEI testing are non-reimbursable.In addition to EEI testing there is also Fit-for-Duty testing which will identify and assess the abilities and skills needed for certain jobs. If this position does require Fit-for-Duty testing the type of test will be located under the qualifications section of the job posting.WORKING CONDITIONS: As a provider of essential services Entergy expects its employees to be available to work additional hours to work in alternate locations and/or to perform additional duties in connection with storms outages emergencies or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties.Please note: Authorization to work in the United States is a precondition to employment in this position. Entergy will not sponsor candidates for work visas for this position.Required Experience:Senior IC Key Skills IT Experience,Splunk,IDS,Network security,Military Experience,PCI,System Security,Security,Security System Experience,Information Security,Administrative Experience,Epic Employment Type : Full-Time Experience: years Vacancy: 1
Resume Suggestions
Highlight relevant experience and skills that match the job requirements to demonstrate your qualifications.
Quantify your achievements with specific metrics and results whenever possible to show impact.
Emphasize your proficiency in relevant technologies and tools mentioned in the job description.
Showcase your communication and collaboration skills through examples of successful projects and teamwork.