Cybersecurity Senior Specialist- Incident Response Team Coordinator (CSIRT)

Southern California Edison (SCE)

• $108K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Five or more years of experience in information technology, information security, and/or cybersecurity
  • Bachelor's degree preferred
  • Three or more years managing cross-functional programs or projects
  • Familiarity with Security Operations Centers and Incident Response teams
  • Experience translating technical information for non-technical audiences
  • Strong organizational skills, able to handle multiple tasks under pressure
  • Effective communicator in high-pressure situations

Responsibilities

  • Lead incident response activities as CSIRT Coordinator
  • Conduct security risk assessments and business impact analysis
  • Monitor project status, timeline, and budgets for assigned security projects
  • Implement security controls across information systems with IT teams
  • Investigate suspected attacks and manage security incidents
  • Develop metrics, alerts, dashboards, and reports for security monitoring
  • Maintain and execute incident response plans per established guidelines

Benefits

  • Hybrid work mode with both in-office and remote options
  • Role located in Rosemead, CA with potential travel within SCE territory
  • Consideration for applicants with arrest or conviction records
  • Eligibility for relocation assistance
  • Access to comprehensive candidate resources including benefits and testing information
Full Job Description
Become a Cybersecurity Senior Specialist at Southern California Edison (SCE) and build a better tomorrow. In this job, you'll serve as Cybersecurity Incident Response Team (CSIRT) Coordinator, leading the coordination of incident response activities across the enterprise, while partnering with Cybersecurity Operations Center (CSOC) analysts, IT, legal, and business stakeholders to ensure a fast, unified response to security incidents. You'll drive continuous improvement of playbooks and runbooks, maintain our Cybersecurity Incident Response Plan (CSIRP), support the development and facilitation of cybersecurity exercises, lead post-incident lessons learned reviews and action item tracking, engage with third-party cybersecurity incident response vendors, communicate with various levels of leadership during incident response, and serve as a liaison between the CSOC and key internal and external stakeholders to help strengthen the organization's overall security posture.

As a Cybersecurity Senior Specialist, your work will help power our planet, reduce carbon emissions and create cleaner air for everyone. Are you ready to take on the challenge to help us build the future?

Responsibilities

  • Performs security risk, vulnerability assessments, and business impact analysis for medium complexity information systems.
  • Carries out project reporting for assigned projects, monitoring project status, timeline and budgets. Assists in the planning and implementation of current and future security domains including those which may introduce new service areas.
  • Adopts and follows security controls, processes, and procedures to manage risk across all information system environments (infrastructure, network, and applications) with the assistance of the application and infrastructure management teams.
  • Monitors technology risk, identifies root cause or key themes, recommends for resolution. Investigates suspected attacks and manages security incidents. Uses forensics where appropriate. Reviews and shapes the production of evidence to support internal and external audits.
  • Implements appropriate security measures for information systems and applications that control access to data, and prevents unauthorized modification, destruction, or disclosure of information.
  • Develops and maintains metrics, alerts, dashboards, and reports for security monitoring.
  • Maintains incident response plans and performs incident response activities as directed and in accordance with established procedures and guidelines and those of federal authorities.
  • A material job duty of all positions within the Company is ensuring the protection of all its physical, financial and cybersecurity assets, and properly accessing and managing private customer data, proprietary information, confidential medical records, and other types of highly sensitive information and data with the highest standards of conduct and integrity.


Minimum Qualifications

  • Five or more years of experience in information technology, information security and/or cybersecurity. US Citizenship Required.


Preferred Qualifications
  • Bachelor's Degree
  • Three or more years of experience managing cross-functional programs or projects.
  • Experience working in Security Operations Centers and/or Incident Response teams.
  • Experience translating technical information for a non-technical audience.
  • Experience engaging with a wide range of personnel up to and including executives.
  • Experience working with programs used to track data and produce metrics.
  • Strong organizational skills, able to track multiple action items, timelines, and decisions in real time during high-pressure incidents.
  • Ability to communicate effectively in high-pressure, time-sensitive situations both verbally and in writing.


Additional Information
  • This position's work mode is hybrid. The employee will report to an SCE facility for a set number of days with the option to work remotely on the remaining days. Unless otherwise noted, employees are required to work and reside in the state of California. Further details of this work mode will be discussed at the interview stage. The work mode can be changed based on business needs.
  • Visit our Candidate Resource page to get meaningful information related to benefits, perks, resources, testing information, hiring process, and more!
  • Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
  • The primary work location for this position is Rosemead, CA.However, the successful candidate may also be asked to work for an extended amount of time at various work locations throughout the SCE service territory.
  • Position will require up to 10% traveling and being out in the field throughout the SCE service territory.
  • This position has been identified as a NERC/CIP impacted position - Prior to being hired, the successful candidate must pass a Personnel Risk Assessment (PRA) or Background Investigation. Once hired, the candidate must complete specified training prior to gaining un-escorted access to assigned work location and performing necessary job duties.
  • Relocation may apply to this position.

Similar Jobs

More Jobs at Southern California Edison (SCE)

More Information Technology Jobs

Find similar Cybersecurity Senior Specialist- Incident Response Team Coordinator (CSIRT) jobs: