Senior Cybersecurity Solution Analyst ensuring resilience of supply chains against cyber threats at PG&E. Lead assessments and improve cybersecurity posture while collaborating with various stakeholders.
Responsibilities
Lead and execute strategic supply chain cybersecurity risk assessments, audits, and verification activities for third-party vendors and partners.
Evaluate supply chain risk and collaborate with business units and third parties throughout the assessment lifecycle, ensuring comprehensive risk identification, documentation, and mitigation.
Develop and maintain supply chain security metrics, documentation, and reporting for leadership and operational teams.
Validate that security controls are operating effectively across the supply chain, interpreting evidence and test results to inform risk decisions.
Develop and refine control test procedures, analytical tools, and vulnerability testing methods tailored to supply chain environments.
Partner with procurement, legal, and compliance teams to integrate cybersecurity requirements into supplier contracts and onboarding processes.
Support the review and modification of supply chain security controls as business needs and threats evolve.
Maintain situational awareness of emerging supply chain threats, vulnerabilities, and industry best practices.
Foster partnerships with business owners and operational stakeholders to address control deficiencies and enhance supply chain security posture.
Perform other tasks as needed to ensure the effectiveness of the supply chain risk management program.
Requirements
Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field or equivalent experience
Utility industry experience
Experience in IT-Information Technology, 3 years IT-Information Technology Security certification
Masters Degree in Computer Science or equivalent experience (Desired)
Utility industry experience 5+ years of experience in IT security, risk management, or supply chain cybersecurity.
Strong knowledge of cybersecurity frameworks and standards (e.g., NIST, ISO, etc.).
Excellent analytical, communication, and stakeholder engagement skills.
Relevant certifications (e.g., CISSP, CISM, CRISC, CCSK) are highly desirable.
Ability to travel up to 10%.
Experience in utility, critical infrastructure, or large enterprise supply chain environments.
Technical documentation and project management skills.
Ability to lead cross-functional teams and drive initiatives to completion.
Extensive IT, security, and privacy skills with versatile experience.
Offers technical leadership and acts as a senior-level subject matter expert within their area(s) of expertise.
Developing modern didactic concepts in the Cyber Security environment within a talent community. Collaborating with specialists to create structured learning paths and training materials.
Senior Cybersecurity Consultant joining KPMG to enhance client security measures and participate in multidisciplinary projects reinforcing safety and compliance with standards.
Responsable Support Santé Sécurité at Lafarge improving health and safety for operations in Midi - Pyrénées and Occitanie. Collaborating with teams while ensuring compliance and reporting.
Intern focusing on the construction and deployment of the SSE/MASE system for I3P. Taking responsibility for documentation and procedure establishment with direct impact on corporate structure.
Senior Cyber Security Specialist responsible for IAM onboarding and security risk management at RBC. Collaborating with teams to ensure security and compliance standards are met.
Senior IT Risk Analyst evaluating IT controls and assisting with regulatory risk mitigation in financial services. Collaborating across teams for control assessments and documenting findings.
Ouvrier Poseur installing fall protection systems in construction projects. Leading installation from planning to site handover with safety standards and deadlines.
Ouvrier/Chef d’équipe dans la sécurité en hauteur, pilotant l’installation de dispositifs antichute. Assurant la conformité et la sécurité dans les projets techniques avec FMI.
Architect defining security patterns that enable safe scaling for Chain IQ's cloud platform. Focus on adaptable security design for automated systems handling sensitive data.
Graduate role in HPE's Security Lab, focusing on innovation and technology collaboration. Ideal for recent computer science graduates with strong skills in Python, Rust, C, or Go.