Dominion Energy

Information Security Analyst or Senior Information Security Analyst


PayCompetitive
LocationRichmond/Virginia
Employment typeFull-Time

This job is now closed

  • Job Description

      Req#: 46645

      Dominion Energy is committed to providing reliable, affordable, and increasingly clean energy that powers our customers every day. If you want to work for a purpose-driven company that values safety and collaboration, we’re looking for you. You won’t just find a job here; you’ll find your career. Review the position below and apply today.

      We offer a hybrid work schedule (one week in the office, one week of teleworking) to accommodate the need for flexibility.

      Military service members and veterans with ranks from E5-E9, W1-CW5, or O3-O6, plus appropriate equivalent combination of education and years of experience as outlined below will be considered for this opportunity.

      At this time, Dominion Energy cannot transfer or sponsor a work visa or employment authorization for this position.

      This position does not offer relocation assistance.

      Job Summary

      It's no secret that Dominion Energy provides a critical resource to millions of customers. What's not always known is what goes on behind the scenes to ensure that we do so reliably and securely. If you follow the news, you've probably noticed the increasing number of cyber-attacks on critical infrastructure like ours and how impactful it can be to our communities and economy. In this role, you will join us in our mission to protect some of our most critical systems from cyber-attacks and other potential threats by ensuring our adherence to regulatory compliance requirements.

      You will become part of a cross-functional team of talented and diverse IT professionals who are passionate about the work that they do and embrace teamwork to achieve success. You will have an opportunity to gain exposure to unique technologies and interact with many other teams across IT, Security and Power Generation. Most importantly, you will be doing meaningful work that plays a role in keeping our communities energized and thriving each day. If you have a background in compliance/cybersecurity, a questioning mindset, keen attention to detail, and great communication and organizational skills, this may be a great fit for you. No existing regulatory compliance experience, but an enthusiastic and quick learner? We'll work with you to get up to speed.

      Here's what some of our analysts have to say:

      "I personally enjoy and look forward to the audits associated with NERC Compliance as it is my way to say, "challenge accepted". The ongoing audits provide an opportunity to prove and showcase the results of our day-to-day evidence collection and really shine. You have to have a passion for this type of work and be willing to put yourself on top of that virtual wall and say, nothing is going to get through today, not on my watch."

      "This job is more about being a Swiss army knife than being a specialist. If you're good at switching between people, documentation, technical discussions, and writing, it's a job you'll love."

      Job Summary -
      Maintains compliance for various IT system(s) and supporting operational processes. The position leverages regulatory guidelines and business best practices to meet current and ever-changing requirements, improve processes, and strengthen compliance within the organization. Responsibilities include but are not limited to the creation and maintenance of documented technical procedures, contributions to reducing human performance errors, and elimination of audit findings. Ideal candidate must be a team player and comfortable working in an IT operations area governed by regulatory requirements.

      Leads compliance related system operations tasks utilizing comprehension of regulatory requirements. Strong knowledge of cyber security architecture & technology best practices is essential to ensure effective compliance processes and procedures are implemented for systems supported. Expectation is process improvement by continuous evaluation of existing processes and tools for failure points resulting in the implementation of controls to mitigate future potential failures. Position is responsible for generation and collection of compliance evidence required to demonstrate compliance with regulatory requirements.

      Coordinates with cyber security, compliance & application teams to recognize and implement technical solutions to comply with regulatory standards while identifying and implementing automation of repetitive tasks prone to human performance error.

      (One position available to be filled at the level commensurate with the skills and experience of the candidate.)

      Required Knowledge, Skills, Abilities & Experience

      Information Security Analyst: 3+ years related experience

      Senior Information Security Analyst: 5+ years related experience

      All levels:

      • 3+ years of system administration experience with common IT system platforms/operating systems.
      • 2+ years of cyber or IT audit, compliance experience. (Note: A Master's degree can count towards one year of experience).
      • Strong problem-solving skills and detail oriented.
      • Experience with configuration or baseline management principles.
      • Experience with vulnerability and patch management.
      • Comfortable with Cyber regulatory standards and requirements with a desire to master it.
      • Ability to navigate through complex technologies with subject matter experts.
      • Understands IT Technology to successfully improve and maintain a compliance program.
      • Strong communication skills (written and verbal).
      • Must work well with others.
      • Understands current security architecture best practices.
      • Possesses strong drive to independently learn and adapt to new system administration responsibilities.
      • Proactively identifies & leads implementation efforts to improve processes and/or automate functions to better support compliance tasks.
      • Demonstrated ability to handle multiple deadlines and associated pressures.
      • Must possess a strong desire and aptitude to learn technical compliance concepts.
      • Ability to work independently, set goals and prioritize, to achieve desired results.

      Additional skills desired:

      • Prior experience with NERC CIP
      • Knowledge or experience with ICS (Industrial Control System) environments
      • Technical project coordination/management in an operations setting.
      • Root cause analysis understanding and/or training.
      • Human performance failure analysis training and/or understanding.

      Education Requirements

      Degree or an equivalent combination of education and demonstrated related experience may be accepted in lieu of preferred level of education: Bachelor
      Preferred disciplines: Computer Science; Information Systems; Information Systems Security; Information Technology - Cyber Security

      Licenses, Certifications, or Quals Description

      Working Conditions

      Office Work Environment 76 -100%
      Travel Up to 25%

      Other Working Conditions

      Hybrid work schedule - on-site every other week

      Test Description

      No Testing Required

      Export Control


      Certain positions at Dominion Energy may involve access to information and technology subject to export controls under U.S. law. Compliance with these export controls may result in Dominion Energy limiting its consideration of certain applicants.

      Other Information


      We offer excellent plans and programs for employees. Employees are rewarded with a competitive salary and comprehensive benefits package which may include: health benefits with coverage for families and domestic partners, vacation, retirement plans, paid holidays, tuition reimbursement, and much more. To learn more about our benefits, click here dombenefits.com.

      Dominion Energy is an equal opportunity employer and is committed to a diverse workforce. Qualified applicants will receive consideration for employment without regard to their protected veteran or disabled status.

      You can experience the excitement of our company – it's the difference between taking a job and starting a career.

  • About the company

      Dominion Energy, Inc., commonly referred to as Dominion, is an American power and energy company headquartered in Richmond, Virginia that supplies electricity in parts of Virginia, North Carolina, and South Carolina and supplies natural gas to parts of...