Power Plant NERC CIP Specialist
Boston, Massachusetts, US
Summary
Summary/Objective
As a Power Plant NERC CIP Specialist, you'll play a crucial role in managing client engagements and executing projects related to NERC and FERC compliance. Your expertise in both Critical Infrastructure Protection (CIP) and Operations and Planning (O&P) Standards will be vital. You'll develop and execute project schedules, maintain working relationships, and ensure client satisfaction. Additionally, you'll guide clients through audits, self-certifications, and spot checks, applying project management methodologies to report status and quality metrics. You'll also provide oversight on Compliance Programs, ensure timely reporting, and assess the impact of new NERC CIP standards on clients, developing cybersecurity and O&P policies and procedures.
Position Description
Essential Functions
Regulatory Compliance:
- Develop and implement compliance programs to meet NERC, NERC CIP, FERC, and other regulatory requirements.
- Prepare and submit compliance reports and documentation to regulatory bodies.
- Build and maintain effective relationships with federal agencies like NERC and FERC, collaborating with internal teams to resolve regulatory issues.
Risk Management:
- Conduct risk assessments and impact analyses related to regulatory compliance, focusing on Cybersecurity, NERC CIP, and IT/OT systems.
- Develop and execute corrective action plans to address compliance deficiencies and mitigate risks.
Audit and Reporting:
- Facilitate internal and external audits by preparing documentation and managing audit responses.
- Maintain detailed records of compliance activities and outcomes.
Training and Support:
- Develop and deliver training programs on regulatory compliance, IT/OT systems, and industry best practices.
- Provide guidance and support to business units, including energy policy, regulated utilities, IT/OT operations, renewables, and corporate communications.
Policy Development:
- Develop and update policies and procedures to reflect evolving regulations and industry standards.
- Stay current with industry trends, regulatory changes, and best practices related to NERC, NERC CIP, FERC, and IT/OT systems.
Operational Technology (OT) Management:
- Oversee OT systems, ensuring effective integration with IT systems and addressing operational challenges.
- Utilize experience with SCADA systems for managing protocols, data, network support, and operational issues.
Position Description Continued
Collaboration:
- Work with JERA Americas management and various business units to identify and prioritize regulatory issues and compliance strategies.
Competencies
- Technical and practical knowledge of IT operations, cybersecurity and physical security requirements of power generation facilities
- Effective communication and interpersonal skills with a strong ability to collaborate
- Solid understanding of regulatory compliance and data protection requirements and how to organize for the management of same
- Excellent leadership and managerial skills with the ability to inspire and motivate
- Strong problem-solving and decision-making abilities with a strategic mindset
- Strong understanding of digitization and desire to continually learn about new technologies
Supervisory Responsibility
This position has no supervisory responsibilities.
Work Environment
This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines.
Physical Demands
This is largely a sedentary role; however, some filing is required. This would require the ability to lift files, open filing cabinets and bend or stand as necessary.
Primary Work Location
USA-Northeast
Expected Hours of Work
Days and hours of work are established between the employee and the supervisor.
Travel
Travel up to 50%, or approximately once a month, for meetings and workshops at various US power plants.
Qualifications
Required Education and Experience
- Bachelor’s degree in Business Administration, Engineering, Environmental Science, Computer Science, or a related field, or equivalent experience in NERC CIP and Cybersecurity systems.
- Minimum of 3 years of experience in IT and OT within a regulatory utility environment, demonstrating a solid understanding of business processes and IT systems.
- At least 3 years of experience with OT systems, including familiarity with the distinctions between OT and IT ecosystems related to power generation and renewable facilities.
- Minimum of 3 years of experience with regulatory compliance requirements, specifically NERC/CIP, FERC, and related standards.
- At least 3 years of experience working with SCADA systems, including protocols, data management, network support, and addressing operational challenges.
- Background in providing executive level presentations to senior management, in relation to NERC CIP audits and findings.
- Strong analytical, problem-solving, and communication skills.
- Knowledge and understanding of on-site power plant systems (e.g., PI Servers, ETRM, CMMS systems, etc.).
- Demonstrated ability to work independently as well as collaboratively across teams and departments.
Preferred Education and Experience
Advanced degrees or certifications (e.g., PMP, CCEP, CISA, ISO 27001, etc.) are a plus, but not required.
Qualifications Continued