Technical Specialist-Information Security Governance, Risk & Compliance
Listed on 2026-03-01
-
IT/Tech
Cybersecurity, Information Security
Technical Specialist-Information Security Governance, Risk & Compliance Job Info
- Job Identification 5972
- Job Category Support
- Posting Date 02/18/2026, 01:17 PM
- Locations 4 Irving Pl Headquarters
- Apply Before 03/21/2026, 03:59 AM
- Job Schedule Full time
- Job Shift Regular
- Minimum Salary $
- Maximum Salary $
Mission Statement:
Consolidated Edison Company of New York, Inc. (Con Edison), Orange & Rockland Utilities (O&R), and Consolidated Edison Transmission (CET) employees are required to follow health, safety, and environmental policies, EEO, Standards of Business Conduct, and all other applicable company policy and procedures. We all share a responsibility to advance the company’s mission by excelling at our three corporate priorities – safety of our people and the public, operational excellence in all that we do, and ensuring the best possible customer experience.
We are dedicated to supporting the physical, mental, and financial health of our employees and their families. This commitment extends beyond the workplace to foster personal growth and holistic wellbeing. Our life‑changing rewards package includes:
- Health Savings Accounts
- Health Care and Dependent Care Flexible Spending Accounts
- 401(k) with robust matching
- Employee Stock Purchase Plan with a generous matching contribution
- State of the art Employee Assistance Program
- Generous paid time off plus paid holidays
- Family support: emergency backup child, & elder care assistance
- Social responsibility and volunteer opportunities
- Employee discount program
- Culture of growth and learning: career development; tuition reimbursement; recognition program
- Life and Long-Term Disability Benefits
* Please be aware that some benefits may not apply to provisional or part‑time job titles.
Job DescriptionCome join us as a Technical Specialist where you will play a key role in strengthening our Information Security (Info Sec) Governance, Risk & Compliance (GRC) capabilities across the enterprise. In this experienced individual contributor role, you will develop, maintain, and execute the frameworks, policies, standards, and processes used to identify, assess, manage, and report information security risk. You will ensure our security practices align with regulatory requirements, industry standards, and business objectives through hands‑on analysis, thorough documentation, and disciplined execution.
Success in this role requires a highly self‑directed professional who can operate with minimal supervision, demonstrates exceptional organizational skills and attention to detail, and consistently delivers high‑quality, actionable outcomes. If you are passionate about driving strong security governance and making a measurable impact on enterprise risk, we strongly encourage you to apply and help shape the future of our security program.
Core Responsibilities
- Contribute to information security policies and governance frameworks aligned with national energy security priorities in compliance with regulatory requirements and industry standards.
- Collaborate with internal stakeholders (IT, OT, Legal, Risk, Operations) and external partners (regulators, government agencies, industry groups).
- Facilitate incident response planning, exercises, and post‑incident reviews to strengthen organizational readiness.
- Support incident response planning and champions a culture of cyber accountability and resilience across the organization.
- Support internal and external audits while driving continuous improvement of GRC maturity.
- Provide executive‑level reporting on cybersecurity posture, compliance status, and resilience metrics.
- Serve as a key liaison between Info Sec, IT, Audit, Legal, peers in Info Sec Compliance, and business stakeholders to ensure security risks are clearly communicated and appropriately governed.
- Support internal and regulatory compliance efforts, including NERC CIP, TSA, Coast Guard, and other applicable federal and state mandates.
- Facilitate and maintain cyber resilience strategies to ensure continuity of operations during and after cyber incidents.
Required Education/Experience
- Master's Degree and 6 years of work experience in IT or Utility environments…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).