Senior Cybersecurity Solution Analyst ensuring resilience of supply chains against cyber threats at PG&E. Lead assessments and improve cybersecurity posture while collaborating with various stakeholders.
Responsibilities
Lead and execute strategic supply chain cybersecurity risk assessments, audits, and verification activities for third-party vendors and partners.
Evaluate supply chain risk and collaborate with business units and third parties throughout the assessment lifecycle, ensuring comprehensive risk identification, documentation, and mitigation.
Develop and maintain supply chain security metrics, documentation, and reporting for leadership and operational teams.
Validate that security controls are operating effectively across the supply chain, interpreting evidence and test results to inform risk decisions.
Develop and refine control test procedures, analytical tools, and vulnerability testing methods tailored to supply chain environments.
Partner with procurement, legal, and compliance teams to integrate cybersecurity requirements into supplier contracts and onboarding processes.
Support the review and modification of supply chain security controls as business needs and threats evolve.
Maintain situational awareness of emerging supply chain threats, vulnerabilities, and industry best practices.
Foster partnerships with business owners and operational stakeholders to address control deficiencies and enhance supply chain security posture.
Perform other tasks as needed to ensure the effectiveness of the supply chain risk management program.
Requirements
Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field or equivalent experience
Utility industry experience
Experience in IT-Information Technology, 3 years IT-Information Technology Security certification
Masters Degree in Computer Science or equivalent experience (Desired)
Utility industry experience 5+ years of experience in IT security, risk management, or supply chain cybersecurity.
Strong knowledge of cybersecurity frameworks and standards (e.g., NIST, ISO, etc.).
Excellent analytical, communication, and stakeholder engagement skills.
Relevant certifications (e.g., CISSP, CISM, CRISC, CCSK) are highly desirable.
Ability to travel up to 10%.
Experience in utility, critical infrastructure, or large enterprise supply chain environments.
Technical documentation and project management skills.
Ability to lead cross-functional teams and drive initiatives to completion.
Extensive IT, security, and privacy skills with versatile experience.
Offers technical leadership and acts as a senior-level subject matter expert within their area(s) of expertise.
Cloud Security Engineer supporting and securing client environments across AWS and hybrid infrastructures. Collaborating with Cloud Operations to monitor, investigate, and remediate security events.
Cybersecurity Risk Coordinator at Globo ensuring operational security across digital content. Analyzing risks and developing strategies to enhance business resilience.
Account Cybersecurity Lead providing cybersecurity governance and oversight at Capgemini. Leading client relationships, security management systems, and risk compliance oversight.
Senior SAP Security Specialist managing SAP Security responsibilities and projects. Collaborating on security tools and conducting workshops in Hamburg.
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.
Cybersecurity Assessment Expert at IT - Strat managing A&A of information systems for U.S. federal clients. Ensuring compliance with DOD cybersecurity policies and standards in complex IT environments.
Senior Security Engineer responsible for deploying and maintaining endpoint security solutions. Collaborating across teams to enhance security posture and supporting incident response activities.