Security & Compliance, Advisor
Date: Sep 23, 2025
Location: Alhambra, CA, US, 91803-0000
Company: Southern California Edison
Join the Clean Energy Revolution
Become a Security & Compliance, Advisor at Southern California Edison (SCE) and build a better tomorrow. In this job, you’ll lead and manage Security and Compliance for Information Technology (IT)/Operational Technology (OT) high impact programs and projects for determining and leading strategic methods to meet company initiatives.
The Security & Compliance Advisor, leads business requirements, performs gap analysis, and identifies strategies for controls and risk mitigation. Identifies significant regulatory challenges and commercial opportunities, for the current and future regulatory environments. Advises and counsels on new consumer products and product structures and compliance with changing regulatory rules and varying political environment. This position contributes to and leads complex aspects of NERC CIP and other Grid compliance and security reporting requirements. Work is generally independent and collaborative in nature. Provides guidance to cross-functional organizations on considering preventative measures on corrective action responses.
The Security & Compliance, Advisor of NERC CIP Compliance resides in the Grid Services department within Southern California Edison’s (SCE) Information Technology department. Assists and advises on NERC CIP standards along with the Program Manager. The Program Advisor ensures efficiency in the operations and manages compliance. He/ She leads and manages the overall program deliverables and provides direction and guidance to other personnel working within the program and provides updates to leadership and stakeholders. The Program Advisor ensures day to day compliance to the NERC standards as applicable. Will be working with other Organization Units such as: T&D, Corp. Security, Generation, Energy Procurement and Ethics and Compliance.
As a Security & Compliance, Advisor, your work will help power our planet, reduce carbon emissions and create cleaner air for everyone. Are you ready to take on the challenge to help us build the future?
Responsibilities
- Reviews system logs and real time alerts for infrastructure to identify trends, investigate abnormalities, and report exceptions to the information security program
- Monitors the IT related accepted risks for adding, updating, and removing accepted risks based on changes in technology and vulnerabilities
- Monitors the configuration of company-wide applications to verify they meet the standards required by the information security program
- Updates the information security program and corresponding cybersecurity policies, procedures, and controls annually based on regulatory changes, feedback from the information security committee, and the results of audits and assessments
- Researches, implements, and maintains an information security framework through ongoing compliance monitoring of the framework
- Completes the preparation of risk assessments that are performed for new critical technologies, applications, or devices that are implemented, revised, and installed
- Monitors that security risk management practices are embedded into key business processes, enables security risk reduction by working collaboratively with business partners and security programs to identify, prioritize, and mitigate security risks
- Fulfills security goals, scenarios, and selects cases to develop acceptable parameters of security risks or guardrails. Recommends changes to processes, software, systems, and platforms based upon security risk
- Coordinates enterprise security policies and communications, gathers business participants input, implements changes to policies, and advises the business on policy changes
- Supports, installs and maintains security tools and systems, and tracks security patches and incidents
- A material job duty of all positions within the Company is ensuring the protection of all its physical, financial and cybersecurity assets, and properly accessing and managing private customer data, proprietary information, confidential medical records, and other types of highly sensitive information and data with the highest standards of conduct and integrity.
Minimum Qualifications
- Seven or more years of experience in information technology, information security and/or cybersecurity.
Preferred Qualifications
- Bachelor’s Degree in Engineering, Business, Information Technology, JD, or related field.
- Five or more years of experience implementing and managing common control frameworks aligned with industry best practices such as COBIT, ITIL, ISO, NIST, and CSF, in support of compliance and security requirements.
- Five or more years of experience leading projects/program.
- Intermediate knowledge of electric utility operations.
- CISA/CISSP/CISM or any Governance certification.
Additional Information
- This position’s work mode is hybrid. The employee will report to an SCE facility for a set number of days with the option to work remotely on the remaining days. Unless otherwise noted, employees are required to work and reside in the state of California. Further details of this work mode will be discussed at the interview stage. The work mode can be changed based on business needs.
- Visit our Candidate Resource page to get meaningful information related to benefits, perks, resources, testing information, hiring process, and more!
- Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
- Position will require up to 10% traveling and being out in the field throughout the SCE service territory.
- This position has been identified as a NERC/CIP impacted position - Prior to being hired, the successful candidate must pass a Personnel Risk Assessment (PRA) or Background Investigation. Once hired, the candidate must complete specified training prior to gaining un-escorted access to assigned work location and performing necessary job duties.
- This position has an option for a 9/80 Alternate Work Schedule or 40hrs/5 days a week.
- Relocation does not apply to this position.
About Southern California Edison
The people at SCE don't just keep the lights on. Our mission is so much bigger. We’re fueling the kind of innovation that’s changing an entire industry, and quite possibly the planet. Join us and create a future with cleaner energy, while providing our customers with the safety and reliability they demand. At SCE, you’ll have a chance to grow personally and professionally, making a real impact in Southern California and around the world.
Southern California Edison is a proud Equal Opportunity Employer, including disability and protected veteran status. We are committed to ensuring that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodations at (833) 343-0727.