Cyber Security Operations Analytics and Reporting

LaBella Associates DPC

  • Rochester, NY
  • 2 days ago
  • $85,000–$110,000 Per Year

Highlights

The primary responsibility of the Cyber Analytics and Reporting will be to Support the Senior Manager of Third Party Risk Management in Corporate Security to protect the client's network and data by ensuring all company purchases complete a third-party risk review. Review business area vendor requests, ensure proper documentation is submitted, work with business areas to correct missing documentation, and recommend risk exceptions where needed.

Numbers & Facts

LocationRochester, NY
Salary$85,000–$110,000 Per Year

Description

LaBella Associates was established in 1978 and is a certified Great Place to Work. We are headquartered in Rochester, NY with offices across New York, Ohio, Pennsylvania, Connecticut, Maine, Virginia, North and South Carolina, and Madrid, Spain. LaBella is a multi-disciplined architectural and engineering firm dedicated to client satisfaction through teamwork, respect, and trust. We provide services that take a project from start to finish-from an initial study to determine a project's feasibility to construction administration and start up, and everything in between.

We are currently hiring anAnalytics and Reporting position in our Program Management Services division at our client's Rochester office(5 days in office).

The primary responsibility of the Cyber Analytics and Reporting will be to Support the Senior Manager of Third Party Risk Management in Corporate Security to protect the client's network and data by ensuring all company purchases complete a third-party risk review. . The Analyst works with Subject Matter Experts and management to provide specialized technical expertise and support for compliance program development and compliance performance tracking and reporting.

Salary Range: $85,000 - $110,000

The specific salary offered may be influenced by a variety of factors including but not limited to the candidate's relevant experience, education, and work location.

Responsibilities

  • The primary goal of the Cyber Analytics and Reporting is to assist in gathering data, performing administrative functions, and providing reports as they relate to the Avangrid Security Program.
  • · Analyze and revise as needed client compliance program infrastructure including the administration and maintenance of compliance policies, programs, and procedures related to the NERC CIP Standards and the Avangrid Security Program
  • Maintain applicable NERC-CIP-013 controls and associated actions.
  • Review business area vendor requests, ensure proper documentation is submitted, work with business areas to correct missing documentation, and recommend risk exceptions where needed.
  • Develop expertise in OneTrust and Kaseware to fully document TPRM processes and document management.
  • Work with application subject matter experts to evaluate the TPRM process, discuss AI enhancements, and improve the workflow and system.
  • Compile data and metrics on a weekly basis to provide reportable information to communicate the status of vendor submissions, team feedback, and documentation.
  • Continuous process improvement activities as required to align with corporate policies.
  • Complete additional assigned duties/task as needed. Assist in maintaining and updating operational policy and procedure documentation.
  • Assist in the review and updates of policies and procedures in conjunction with SME
  • Conduct annual document management reviewed and updates to demonstrate standards compliance
  • Help to ensure effective regulatory compliance to the North American Reliability Corporation (NERC) Critical Infrastructure Protection (CIP) Standards
  • Monitor regulatory changes and work closely with the SMEs to determine impacts and ensure compliance.
  • Preparing for, coordinate and support meetings with internal resources, consultants or regulatory organizations
  • Other duties as assigned