More jobs:
Cybersecurity Associate Director-Energy Providers
Job in
McLean, Fairfax County, Virginia, USA
Listed on 2026-01-12
Listing for:
Guidehouse
Full Time
position Listed on 2026-01-12
Job specializations:
-
Engineering
Cybersecurity, Systems Engineer
Job Description & How to Apply Below
Job Family: Cyber Consulting
Travel Required: Up to 25%
Clearance Required: None
What You Will DoWe are seeking a highly skilled professional to design and implement secure, compliant architectures for enterprise and operational environments for our commercial energy provider clients. This role requires deep expertise in regulatory frameworks, cybersecurity best practices, and advanced data architecture within the Power/Electric Utilities industry. Work experience in Banking, Healthcare, Pharma, Manufacturing, Mining, Construction, or DoD is NOT applicable for this role.
Key Responsibilities- Design enterprise data models, data lakes, warehouses, and integration frameworks for structured and unstructured data.
- Architect secure systems aligned with NIST, ISO 27001, and CIS controls to ensure compliance.
- Implement NERC CIP standards (002–013), including audit preparation, evidence gathering, and mitigation planning.
- Secure data flows across AWS, Azure, and on-prem environments using encryption, IAM, and network segmentation.
- Develop and enforce RBAC, ABAC, MFA, and privileged access management in compliance with technical CIP standards or similar regulations.
- Create secure architectures that anticipate attack vectors, supported by playbooks and detection strategies.
- Protect OT environments such as EMS, SCADA, DCS, and other industrial control systems within the Bulk Electric System.
- Maintain data integrity, availability, and confidentiality through metadata standards, classification, retention, and purging policies.
- Collaborate with compliance, operations, IT, and engineering teams to align technical architecture with regulatory and business needs.
- Due to nature of client engagements must be a US Permanent Resident or US Citizen.
- Associate Director - Bachelor’s degree in a business, cybersecurity, security management, homeland security, information security, or related discipline AND Seven (7+) plus years post‑graduation working experience within the electric utility industry or a NERC related regulator;
Or Master’s degree in a business, cybersecurity, security management, homeland security, information security, or related discipline AND Five (5+) plus years post‑graduation work experience within the electric utility industry or a NERC related regulator. - Work experience for all levels must be an emphasis on North American NERC Reliability Standards (USA and/or Canada) supporting regulatory framework and processes around NERC Critical Infrastructure Protection (CIP) and Regional Entities.
- In‑depth knowledge of implementing NERC CIP standards (002–013), audit preparation, evidence gathering, and mitigation planning.
- Designs and implements RBAC, ABAC, MFA, and privileged access management aligned with CIP‑007 and CIP‑005 requirements.
- Familiar with securing OT environment such EMS, SCADA, DCS, and other industrial control systems within the Bulk Electric System.
- Strong writing skills for creating security architecture diagrams, CIP evidence packages, procedures, and training materials.
- Works effectively with compliance, operations, IT, and engineering teams to align technical architecture with regulatory and business needs.
- Ability to travel to include potential international as needed.
- Ability to work onsite in a Guidehouse Office or Client Office location.
- Currently reside in the contiguous United States.
- Preference will be given to candidates within reasonable driving distance of listed core Guidehouse Office or Client Office Location.
- Ensures integrity, availability, and confidentiality of data through metadata standards, classification, retention, and purging policies. Ability to design secure architectures that anticipate attack vectors, supported by playbooks and detection strategies.
- Experience in designing enterprise data models, data lakes, warehouses, and integration frameworks using structured and unstructured data.
- Deep understanding of NIST, ISO 27001, and CIS controls to architect secure systems and enforce security compliance.
- Proficient in securing data flows across AWS, Azure, and on‑prem environments with encryption, IAM, and network segmentation.
- Specific…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×