Sr Information Compliance Analyst, Portland, OR #109827

Date: Feb 27, 2024

Location: PORTLAND, OR, US, 97232

Company: PacifiCorp

JOIN OUR TEAM

PacifiCorp is seeking customer-centric candidates to grow and sustain our commitment to a culture of customer service excellence, environmental sustainability and diversity, equity and inclusion.

General Purpose

Supports the implementation and maintenance of information security systems in support of ISO 27001 and ISO 27019 certification.  Supports change management of changes to the information security policy and procedures and supporting IT controls.  Manages continuous improvement program activities for cyber security for the one or more BHE US Affiliates. Performs risk assessments and manages remediation of risk mitigation actions. Researches, analyzes, develops and implements new strategies, programs, and/or processes in response to changing internal and external conditions. Coordinates or executes IT controls. 

Responsibilities

Responsibilities of Information Compliance Analyst 2/3 include the following:

•    Identify, prescribe, and implement key cyber security initiatives in support of ISO 27001 and ISO 27019 controls for the pipeline group.  Act as advocate for the programs.
•    Support the development and maintenance of Information Security Management System (ISMS) for one or more BHE US affiliate.
•    Support the development and maintenance of information security policies, procedures, standards, controls, and other related documents
•    Coordinate and lead interactions with internal and external cyber security auditors
•    Execute control activities to evidence our compliance with IT controls 
•    Lead cyber security maintenance and continuous improvement activity identified through internal processes or cyber security related audits.
•    Support the development and documentation BHE US Affiliate third party services and service levels for ISO 27001 and ISO 27019 scoping for the affiliates. 
•    Consult with management, teams, and individuals to provide strategical and tactical direction regarding enterprise information security requirements, policies, procedures and standards.
•    Coordinate updates to training materials that support the information security policies and procedures
•    Oversee and coordinate efforts to assess and mitigate cyber security risks and threats.
•    Coordinate with BHE IT and information security staff as well as BHE chief security officer staff to share best practices and cyber security initiatives.
•    Support reporting related to information security key performance indicators and status reporting  
•    Support business continuity planning, cyber security incident response and management.  Coordinate incident response plan creation and updates
•    Support the enterprise as an information security subject matter expert.
•    Manage and coordinate forensic and investigation activities 
•    Perform other duties as assigned

In addition, the responsibilities of the Sr Information Compliance Analyst position are:
•    Supports and/or leads special projects, studies and analyses, develops alternatives, presents recommendations to management and influences management decisions.
•    Researches, analyzes, develops and implements new strategies, programs, and/or processes in response to changing internal and external conditions.

 

Requirements

 Requirements for Information Compliance Analyst 2 include the following:

•    Bachelor’s degree in business, information systems, computer science, or a related technical field; or equivalent work experience. 
•    Two years of progressively advanced technical experience in an information security role. 
•    Demonstrated knowledge of information security best practices as evidenced through achievement or pursuit of one or more advanced certifications, such as CISM or CISSP.
•    Technical knowledge of operating systems, databases, networks and disaster recovery practices.
•    Excellent oral and written communication skills, including presentation skills.
•    Ability to recognize, respond, escalate and manage complex technical problems.
•    Effective interpersonal and customer relationship skills.
•    Effective analytical, problem-solving, and decision-making skills. 
•    Ability to prioritize and handle multiple enterprise level assignments.

In addition, the responsibilities of the Information Compliance Analyst 3 position are:
•    Four years of progressively advanced technical experience in an information security role, including three years supervisory/management responsibilities. 
•    Deep technical knowledge of operating systems, databases, networks and disaster recovery practices.

In addition, the responsibilities of the Sr Information Compliance Analyst position are:
•    Eight years of progressively advanced technical experience in an information security role, including three years supervisory/management responsibilities. 
•    Accessible after business hours to guide, manage and support on-call staff in escalation situations.
 

 

Additional Information

Req Id: 109827 
Company Code: PacifiCorp 
Primary Location: PORTLAND     
Department: PacifiCorp Corporate 
Schedule: Days
Personnel Subarea: Exempt
Hiring Range: $85,500-$133,000  
This position is eligible for an annual discretionary performance incentive bonus of up to 15.00% of salary.  

 

Benefits: Health care, retirement, paid time off, tuition assistance, paid short-term and long-term disability, paid bereavement leave. For more information, please visit: https://careers.pacificorp.com/content/New-Benefits-Page/?locale=en_US

 

Employees must be able to perform the essential functions of the position with or without an accommodation.


At PacifiCorp, we celebrate diversity, equity and inclusion. PacifiCorp is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion or religious creed, age, national origin, ancestry, citizenship status (except as required by law), gender (including gender identity and expression), sex (including pregnancy), sexual orientation, genetic information, physical or mental disability, medical condition, veteran or military status, familial or parental status, marital status or any other category protected by applicable local, state or U.S. federal law.


All offers of employment are contingent upon the successful completion of a background check and drug screening.


Nearest Major Market: Portland Oregon

Career Segment: Information Security, Compliance, Computer Science, Equity, Information Systems, Technology, Legal, Finance