Xcel Energy

Principal Security Risk Analyst

Xcel Energy$97K — $138K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT or related field in risk management.
  • 8+ years of security experience (physical or cyber), with 3+ years in risk assessments or audit.
  • Experience with security lifecycle management and auditing methodologies.
  • Ability to document and communicate risks to both business and technical stakeholders.
  • Strong understanding of information security policies and frameworks (e.g., ISO 27001, NIST).
  • Proven business acumen to connect business needs with technology solutions.

Responsibilities

  • Analyze and publish security risk handbooks and implementation procedures according to standards.
  • Manage risk identification, assessment, and monitoring processes while recommending best practices.
  • Assess external market dynamics to derive actionable insights for management.
  • Communicate business risks clearly across the organization and partner with business teams.
  • Coordinate the security risk program including risk modeling and regulatory reporting.
  • Develop presentations for senior audiences and potentially mentor junior colleagues.

Benefits

  • Annual Incentive Program
  • Comprehensive medical, dental, and vision plans
  • Life insurance and dependent care reimbursement
  • Health Savings and Flexible Spending Accounts
  • Generous paid time off and holidays
  • Tuition reimbursement and employee recognition programs
  • Pension and 401(k) plan options
  • Parental Leave and Volunteer Paid Time Off programs
Full Job Description
Position Summary

Designs and executes critical aspects of the Enterprise Security Risk Management function. Develops, recommends and implements controls and cost-effective approaches to minimize the organization's risks effects. Partners with the business and technology teams to promote understanding of the business landscape in order to facilitate security risk-based discussions. Collaborates with executive and technical leadership to embed a security-focused mindset in all areas.

Essential Responsibilities

  • Analyzes organizational security risks, interactions, develop and publish security risk handbook, and procedures for implementation ensuring alignment with appropriate standards and frameworks.
  • Manage and execute risk identification, assessment and quantification, aggregation reporting, and monitoring processes. Interprets internal or external business issues and recommends solutions/best practices. Solves complex problems; takes a broad perspective to identify solutions.
  • Analyzes external market dynamics and other data sources to assess trends and develop actionable insights and recommendations to management, via understanding of the business model and the information available for analysis. Assist in coordinating the security risk within the context of the security risk model.
  • Assesses and communicates information regarding business risks with functions across the organization. Builds and maintains relationships with business partners, including understanding their specific risk landscape. Uses professional knowledge, skills, and experience to influence and guide, monitor, and credibly challenge business areas as they manage risk and make risk decisions.
  • Coordinates the security risk program efforts including risk modeling, comprehensive periodic risk assessments, and regulatory reporting standards and expectations.
  • Develops presentations appropriate for senior level audiences and external regulators. May mentor and give work direction to less experienced colleagues.


Minimum Requirements
  • Bachelors degree or higher in an IT or risk management related field.
  • Minimum of 8 years of experience working in security (physical or cyber). 3 years of experience with risk assessments, audit or control testing. Experience and expertise in security and lifecycle management, auditing methodology, and technology risk assessments.
  • Self-starter; adaptable to change; motivated to set personal and program goals and proactively track performance against goals and initiatives.
  • Ability to document and explain risks and vulnerabilities to both business and technical stakeholders to influence peers and management; ability to team cross-functionally and form relationships to achieve objectives.
  • Solid understanding of information security policies, standards, industry best practices, and frameworks. (ISO 27K, NIST 800-53, FISMA, BITS etc.).
  • Strong business acumen with the proven ability to bridge the gap between business and technology.


Non-Bargaining

The anticipated starting base pay for this position is: $97,600.00 to $138,600.00 per year

This position is eligible for the following benefits: Annual Incentive Program, Medical/Pharmacy Plan, Dental, Vision, Life Insurance, Dependent Care Reimbursement Account, Health Care Reimbursement Account, Health Savings Account (HSA) (if enrolled in eligible health plan), Limited-Purpose FSA (if enrolled in eligible health plan and HSA), Transportation Reimbursement Account, Short-term disability (STD), Long-term disability (LTD), Employee Assistance Program (EAP), Fitness Center Reimbursement (if enrolled in eligible health plan), Tuition reimbursement, Transit programs, Employee recognition program, Pension, 401(k) plan, Paid time off (PTO), Holidays, Volunteer Paid Time Off (VPTO), Parental Leave

Benefit plans are subject to change and Xcel Energy has the right to end, suspend, or amend any of its plans, at any time, in whole or in part.

In any materials you submit, you may redact or remove age-identifying information including but not limited to dates of school attendance and graduation. You will not be penalized for redacting or removing this information.

Deadline to Apply: 06/12/26

All Xcel Energy employees and contractors share responsibility for protecting the company's information and systems by adhering to cybersecurity policies, standards, and best practices, recognizing that cybersecurity is everyone's responsibility.

ACCESSIBILITY STATEMENT

Xcel Energy endeavors to make https://www.xcelenergy.com/ accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact Xcel Energy Talent Acquisition at [email protected]. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.

About Xcel Energy

Xcel Energy Careers

Join the dynamic team at Xcel Energy, where innovation meets expertise in the pursuit of sustainable energy solutions. As a leading energy company, Xcel Energy offers unparalleled job opportunities that empower professionals to advance their careers while contributing to environmental stewardship.

Work You’ll Do

At Xcel Energy, you’ll collaborate with skilled professionals dedicated to pioneering advancements in the energy sector. Our team is at the forefront of developing sustainable energy technologies that revolutionize how people consume energy. By joining us, you will be part of a culture that values diversity, leadership, and professional growth.

Innovate and Lead

Step into a role where your skills will directly enhance our capabilities in delivering reliable and sustainable energy. Xcel Energy is a hub for innovation, where your ideas can lead to groundbreaking solutions that shape the future of energy. Our leadership is committed to fostering an environment where creativity and strategic thinking are at the core of our operations.

Career Development

Xcel Energy is deeply invested in the professional development of its team members. With a variety of career paths available, from engineering to customer service, your journey with us is filled with endless possibilities. We support your growth with robust training programs, leadership development opportunities, and diversity training that prepare you for success.

Join Our Team

Explore the numerous employment opportunities at Xcel Energy, from entry-level positions to senior roles. We are hiring individuals who are passionate about making a difference and ready to contribute their expertise to our mission of delivering safe, clean, and reliable energy.

Internship Programs

Kickstart your career with an internship at Xcel Energy. Our internships provide hands-on experience in real-world projects that matter. You’ll gain invaluable insights into the energy sector while developing essential skills that will enhance your resume and increase your marketability.

Benefits and Culture

Xcel Energy is not just about work; we care about our employees' well-being. We offer competitive benefits, including health care, retirement plans, and wellness programs, designed to keep you at your best. Our inclusive culture encourages collaboration and offers networking opportunities that foster connections and professional growth.

Stay Connected

Keep up to date with the latest at Xcel Energy: - **Search Xcel Energy Jobs**: Find positions that match your skills and interests. We look for driven, curious, and innovative team players. - **Read Careers Blog**: Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. - **Job Alert Emails**: Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding opportunities that await at Xcel Energy. Join Xcel Energy today and be part of a team that is dedicated to building a sustainable future. Your career at Xcel Energy is not just a job; it’s an opportunity to excel in an environment that appreciates your contribution and supports your professional growth.
Learn more about Xcel Energy
Size
11,321 employees
Market Cap
$38.6 billion
Industry
Net Income
$1.4 billion
Founded
2000
5 Year Trend
+3.9%
Revenue
$11.5 billion
NASDAQ

Similar Jobs

More Jobs at Xcel Energy

More Information Technology Jobs

Find similar Principal Security Risk Analyst jobs: