Security Policy & Compliance Coordinator or Sr Coord Job at Entergy
Posting End Date: 05/23/2023
Work Place Flexibility: Hybrid
Legal Entity: Entergy Services, LLC
*** This position may be located in New Orleans, LA or Woodlands, TX ***
**
This position will be filled as a Policy & Comp Coordinator or Sr Policy & Comp Coordinator depending on experience.**
Job Summary/Purpose
The Security Policy & Compliance Coordinator is responsible for developing, managing, and coordinating enterprise-wide policies, standards, and guidelines in accordance with Entergy System policies, regulatory requirements, and industry best practices. They work directly with all lines of business to produce policies, track compliance performance, raise employee awareness around managing security risk and protecting company critical infrastructure and assets, and perform security data analytics leading to the production of relevant and efficient dashboard and reporting mechanisms. This role drives the mitigation of risk, enables operations, and supports procedure and protocol development.
Job Duties/Responsibilities:
- Liaise with External and Internal Audit and regulators to identify pending legislation and potential regulatory changes that would impact policy
- Identify pertinent areas for new or revised policies under the Policy Framework
- Work with pertinent business SMEs to draft policy
- Support the Enterprise Security strategy via policy, standard, and procedure development
- Develop and disseminate training on how adhere to security policies, including understanding of changing roles and responsibilities
- Develop reports around security, risk and compliance training effectiveness
- Draft communications for policy roll out or policy update
- Distribute communications
- Facilitate the security policy lifecycle process
- Support process for centralizing, monitoring and reporting of performance against company security policies, including business unit self-adherence and reporting
- Determine if adherence variance violates regulatory requirements
- Support development of Security Performance Metrics and perform data analysis
- Report security compliance through the Compliance Dashboard
- Support the development and release of security awareness and training materials
- Develop reports around security, risk and compliance training effectiveness
Minimum Requirements:
Minimum education required of the position
Bachelor’s Degree or equivalent work experience
Master’s Degree preferred
Minimum experience required of the position
Policy & Comp Coordinator: Bachelor’s Degree and 6+ years’ experience in compliance, audit, risk management and/or security or in lieu of a degree 10+ years’ experience
Policy & Comp Coordinator, Sr: Bachelor’s Degree and 10+ years’ experience in compliance, audit, risk management and/or security or in lieu of a degree 14+ years’ experience
Minimum knowledge, skills and abilities required of the position
- Strong oral and written communication skills
- Strong visual design skills
- Ability to analyze large amounts of technical data and structure such information for the purposes of clearly documenting and demonstrating security performance with all applicable security policies
- Proficiency with Microsoft Office Suite
- Familiarity with Power BI or similar business analytics tools
- Strong analytical, critical thinking and decision-making skills
- Strong audit skills
- Strong knowledge of generally applicable and accepted audit and risk frameworks (e.g. COBIT, CAG 20 Critical Security Controls, NIST, UCF). Subject matter expert knowledge in one or more areas is preferred
- Strong understanding of regulatory requirements impacting the utility industry (SOX, HIPAA, NERC CIP, Smart Meter/Smart Grid, FCC etc.); Subject matter expert knowledge in one or more areas is preferred
- Ability to establish control objectives based on complex regulatory requirements, company policy, standards, and guidelines, and risk analysis
- Ability to identify complex control gaps and the related business risk
- Independent judgment and discretion in matters of significance with high complexity
- Independently drive work efforts to resolution
- Independently sets priorities and work schedule with input on only the most complex projects
- Exercises independent judgment and discretion in matters of significance with broad scope and high complexity
Any certificates, licenses, etc. required for the position
This role prefers one or more of the following certifications:
- Certified Information Systems Manager (CISM)
- Certified Information Systems Security Professional (CISSP)
- Certified in Risk and Information Systems Control (CRISC)
- Certified in the Governance of Enterprise IT (CGEIT)
- Certified Information Systems Auditor (CISA)
- Certified Protection Profession (CPP)
#LI-SB1
#LI-HYBRID
Primary Location: Louisiana-New Orleans Louisiana : New Orleans || Texas : The Woodlands
Job Function: Professional
FLSA Status: Professional
Relocation Option: No Relocation Offered
Union description/code: NON BARGAINING UNIT-NBU
Number of Openings: 1
Req ID: 111430
Travel Percentage:Up to 25%
Job Function: Professional
FLSA Status: Professional
Relocation Option: No Relocation Offered
Union description/code: NON BARGAINING UNIT-NBU
Number of Openings: 1
Req ID: 111430
Travel Percentage:Up to 25%
An Equal Opportunity Employer, Minority/Female/Disability/Vets. Please click here to view the EEO page, or see statements below.
EEO Statement: The Entergy System of Companies provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a protected veteran in accordance with applicable federal, state and local laws. The Entergy System of Companies complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment including, but not limited to, recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
The Entergy System of Companies expressly prohibits any form of unlawful employee harassment based on race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of the Entergy System of Company employees to perform their expected job duties is absolutely not tolerated.
The Entergy System of Companies expressly prohibits any form of unlawful employee harassment based on race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of the Entergy System of Company employees to perform their expected job duties is absolutely not tolerated.
Accessibility: Entergy provides reasonable accommodations for online applicants. Requests for a reasonable accommodation may be made orally or in writing by an applicant, employee, or third party on his or her behalf. If you are an individual with a disability and you are in need of an accommodation for the recruiting process please click
here and provide your name, contact number, the accommodation requested and the requisition number that you are requesting the accommodation for. Employee Services will contact you regarding your request.
Additional Responsibilities: As a provider of essential services, Entergy expects its employees to be available to work additional hours, to work in alternate locations, and/or to perform additional duties in connection with storms, outages, emergencies, or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties.
Entergy Pay Transparency Policy Statement: The Entergy System of Companies (the Company) will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company’s legal duty to furnish information. 41 CFR 60-1.35(c).
Equal Opportunity and
Pay Transparency.
Pay Transparency Notice:
Pay Transparency Nondiscrimination Provision (dol.gov)
The non-confidential portions of the affirmative action program for individuals with disabilities and protected veterans shall be available for inspection upon request by any employee or applicant for employment. Please contact HRCompliance@entergy.com to schedule a time to review the affirmative action plan during regular office hours.
WORKING CONDITIONS:
As a provider of essential services, Entergy expects its employees to be available to work additional hours, to work in alternate locations, and/or to perform additional duties in connection with storms, outages, emergencies, or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties.
As a provider of essential services, Entergy expects its employees to be available to work additional hours, to work in alternate locations, and/or to perform additional duties in connection with storms, outages, emergencies, or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties.
Please Note :
clarksqn.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, clarksqn.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, Site.com is the ideal place to find your next job.