Senior Manager, Global Information Technology

NovaSource Power

$120K — $145K *
Energy & Utilities
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a relevant technical field or equivalent experience.
  • 5+ years in IT/OT governance, risk, compliance, information security, and auditor technology risk management, with 3+ years in regulated environments.
  • Direct NERC CIP experience in areas such as evidence management and audit readiness.
  • Knowledgeable in IT/OT security including access control, vulnerability management, and monitoring.
  • Understanding of operational constraints in OT environments, such as legacy systems and real-time operations.
  • Strong documentation skills for producing operationally usable and audit-defensible materials.
  • Excellent communication skills for explaining technical compliance to various stakeholders.

Responsibilities

  • Act as the compliance liaison across departments for technology obligations and audits.
  • Govern design and documentation of technical controls, ensuring audit readiness.
  • Collaborate with control owners to clarify roles and compliance practices.
  • Support NERC CIP compliance, managing evidence and auditor requests.
  • Maintain governance artifacts across IT, OT, and compliance domains.
  • Embed compliance into change management and technology processes.
  • Assess compliance impact of technological changes and vendor services.

Benefits

  • Competitive Pay + Paid Time Off (PTO).
  • Quarterly performance-based bonus program.
  • Comprehensive health coverage available on the first day.
  • Flexible Spending & Health Savings Accounts to reduce healthcare costs.
  • Career growth opportunities with clear advancement paths.
  • Company-paid short-term and long-term disability insurance.
  • Access to legal assistance services.
  • Confidential employee assistance program for counseling and support.
  • 401(k) plan with employer matching contributions.
  • Additional benefits including pet insurance.
Full Job Description
Position Summary

The Technology GRC Senior Manager leads the technology governance, risk and compliance function for regulated IT/OT environments. This role translates compliance obligations into practical technical controls, maintains audit-ready evidence, and serves the designated technical subject-matter expert (SME) for NERC CIP and Global regulatory electricity compliance (Including Europe, Chile, and Australia) within the technology organization including customer, and supply-chain requirements. The role owns governance and control integrity, while operational teams remain accountable for daily infrastructure, cloud, network, tooling, and OT operations.

Key Responsibilities
  • Act as the IT/OT compliance interface to Legal, Corporate Compliance, Information Security, IT, OT and business teams for technology obligations, audits, reviews, and customer commitments.
  • Own and govern technical control design, control documentation, evidence quality, control monitoring, remediation, validation, and audit-readiness routines for regulated environments.
  • Partner with compliance and operational control owners to establish clear roles, review cadence, escalation paths and defensible evidence for access, change, configuration, vulnerability, malware, logging, and monitoring controls.
  • Support NERC CIP compliance activities including evidence management, self-certification, auditor data requests, mitigation tracking, technical attestations and control demonstrations.
  • Maintain policies, standards, procedures, exception processes and governance artifacts across IT, OT, security, compliance, and vendor-risk domains.
  • Embed compliance requirements into change management, incident response, recovery, access management, data protection, vendor risk and technology lifecycle processes.
  • Assess technology, vendor, customer, cloud, SaaS, MSP, software, hardware and OT changes for compliance impact, risk exposure, evidence needs and operating feasibility.
  • Build practical workflows, dashboards and reporting that reduce manual evidence collection, improve leadership visibility and escalate compliance gaps or risk acceptance needs.
  • Support third-party and supply-chain risk management for applicable technology products and services, including remote access, vulnerability communication, software integrity and vendor assurance expectations.
  • Promote a compliance-minded culture through documentation discipline, awareness support, continuous improvement and clear communication with technical and nontechnical stakeholders.

Required Qualifications
  • Bachelor's degree in a relevant technical field, or equivalent experience.
  • 5+ years in IT/OT governance, risk, compliance, information security, auditor technology risk management, including 3+ years supporting technical controls in regulated environments.
  • Direct NERC CIP experience, such as evidence management, audit readiness, self-certification, RFI response, mitigation tracking or compliance program coordination.
  • Working knowledge of IT/OT security, including segmentation, access, change/configuration, vulnerability, patch, malware prevention, logging, monitoring and recovery controls.
  • Understanding of OT operating constraints, including availability priorities, legacy systems, real-time operations and controlled change windows.
  • Strong documentation discipline with the ability to produce operationally usable and audit-defensible materials.
  • Strong written and verbal communication skills; able to translate technical implementation and compliance requirements for engineers, legal, compliance and senior leadership.

Preferred Qualifications
  • Experience in renewable generation, storage, remote monitoring or industrial control environments.
  • Relevant certifications such as GICSP, CISSP, CCNP/CCNA, Security+, CISM or equivalent.
  • Experience preparing for or supporting NERC CIP audits, self-certifications or regulatory reviews.
  • Familiarity with supply-chain, remote access, internal monitoring and governance/control frameworks such as NIST CSF, NIST 800-53, IEC 62443, ITIL, ISO 31000 or similar.


Benefits:
• Competitive Pay + Paid Time Off (PTO).
• Quarterly Bonus Program: Performance-based incentive opportunities.
• Health Coverage: Comprehensive and affordable medical, dental, and vision plans effective on your first day.
• Flexible Spending & Health Savings Accounts (FSA/HSA): Options to help you save on healthcare costs.
• Career Growth: On-the-job training with a clear path for advancement.
• Income Protection: Company-paid short-term and long-term disability insurance.
• Legal Support: Access to legal assistance services.
• Employee Assistance Program (EAP): Confidential counseling and support resources.
• Retirement Savings: 401(k) plan with employer matching contributions.
• Additional Perks: Pet insurance and more employee benefits.

Office Physical Requirements

All positions in our office require interaction with people and technology while either standing or sitting. In order to best service our customers, internal and external, all associates must be able to communicate face-to-face and on the phone with or without reasonable accommodation. NovaSource is committed to compliance with its obligations under all applicable state and federal laws prohibiting employment discrimination. In keeping with this commitment, it attempts to reasonably accommodate applicants and employees in accordance with the requirements of the disability discrimination laws. It also invites individuals with disabilities to participate in a good faith, interactive process to identify reasonable accommodations that can be made without imposing an undue hardship.

Potential candidates will meet the education and experience requirements provided on the above job description and excel in completing the listed responsibilities for this role.

Similar Jobs

More Jobs at NovaSource Power

More Energy & Utilities Jobs

Find similar Senior Manager, Global Information Technology jobs: