Talent.com
Information Systems Security Engineer 2
Information Systems Security Engineer 2First Tek • Vancouver, WA, United States
No longer accepting applications
Information Systems Security Engineer 2

Information Systems Security Engineer 2

First Tek • Vancouver, WA, United States
13 days ago
Job type
  • Full-time
Job description

API_ISSE2_JS Draft_v4_20260123_CORA.docx

POSITION RESPONSIBILITIES POSITION RESPONSIBILITIES Note: All official drafts, documents and recommendations, as listed below, must be reviewed, finalized and approved / accepted by appropriate BPA manager or other federal personnel with the authority to do so.

  • Provide technical expertise on control center and field infrastructure security architecture and management for control center and field infrastructure systems and related matters.
  • pplies a broad knowledge of power system operations and associated control center and field systems including knowledge of security and regulatory (i.e. FISMA and NERC CIP) as it pertains to compliance computer networks, user interfaces, system software, data acquisition, telecommunications, substation field equipment, and related computer hardware areas.
  • Provide Information System Security Officer support and technical expert for the BPA control center and field General Support Systems and programs by providing expert technical advice, guidance, and recommendations to management and other technical and security specialists on critical operational issues relating to control center control and field infrastructure and data systems including the upgrade and enhancement of all systems in the two critical BPA control centers and field locations.
  • Recommend security strategies in the development of system, software and hardware architectures, technical plans and specifications, system designs, software designs, integration plans, test plans, and project plans.
  • Advises other OT experts and security practitioners throughout the control centers nd field on a variety of situations and issues that involve applying or adapting new security technology theories, concepts, applications, standards, and/or practices.
  • As the control center and field infrastructure security architect and expert, serve as the project security/compliance lead, on assigned projects, for an interdisciplinary project team of electrical engineering and operational technology staff assigned to execute on the most complex control center and field system projects.
  • Verifies that the project plans conform to applicable organizational, agency and external security and compliance standards, policies and guidelines.
  • Provide technical expertise and assistance with the recommendation, development and implementation of BPA management-approved operational cyber security and compliance strategies, processes, guidelines, and projects to safeguard critical cyber assets.
  • Provide technical input, recommendations and assistance with the implementation of both higher and granular-level cyber security approaches, methods and solutions that incorporate and maintain compliance to requirements resulting from laws, regulations, or Presidential directives.
  • Assist in developing / drafting, recommend and execute BPA management-approved testing plans, report results and recommendations.
  • Provide security engineering expertise and recommendations.
  • In collaboration with the BPA manager and per established procedures, develop a cyber-security architecture for the BPA control centers to include accurate, comprehensive applicable documentation.
  • Perform detailed and comprehensive security event analysis.
  • Provide guidance and input into technical reviews of proposed projects, and BPA's system security authorization processes.
  • Provide technical input and support to the Continuous Assessment and Monitoring Program.
  • ssist in drafts and recommend detailed project plans, timelines, milestones and objectives for upgrades, patches and other changes and/or for monitoring security measures for the protection of OT computer networks and information.
  • Perform risk assessments and execute tests of data processing systems to validate functioning of data processing activities and security measures.
  • Validate appropriate security controls are in place that will safeguard digital files and vital electronic infrastructure.
  • Coordinate, facilitate and assist with general support systems and major applications' security and compliance projects and program changes and initiatives that:
    • re designed to anticipate, assess, and minimize system vulnerabilities and weaknesses.
    • Integrate across disciplines, platforms and internal organizations; (people, processes, systems) .
    • Under the direction and leadership of BPA Management
  • Recommend the scope and level of detail for system security plans and collaborate and assist with draft policies, processes and procedures that are applicable to and promote Transmission Systems Operations security program.
  • Assist in development / drafting long-range plans and strategies for OT security systems that anticipate, identify, evaluate, mitigate, and minimize risks associated with OT systems vulnerabilities.
  • Keep abreast of current and new security technologies and threats.
  • Identify the need or potential opportunity for changes based on new security technologies and threats, present recommendations and supportive data for consideration.
  • Research and review proposed new systems, networks, and software designs for potential security risks and impacts; recommend mitigation, countermeasures or other options.
  • Identify integration issues related to the implementation of new systems within the existing infrastructure; recommend mitigation and/or resolution options.
  • Provide subject matter expertise, technical guidance and assistance to other Security Control Assessors, and Cyber Security personnel co-workers on a variety of ad hoc and standing projects requiring data / system process analysis.
  • Provide technical expertise, guidance and assistance to organizational co-workers with less experience, including cross-training as requested.
REQUIREMENTS Education & Corresponding Experience (required on matrix)
  • Bachelor of science in computer science, information technology or a directly related technical discipline is highly preferred.
    • 5 years of experience is required with an applicable bachelor's degree.
    • 7 years of experience is required with an applicable associate's degree.
    • 9 years of experience is required without a degree or an applicable.
  • Experience must include the following:
    • Hands-on technical implementation of networks and systems.
    • Experience evaluating various technical, operational, and management solutions to security problems, using written language and various media to present alternatives and recommendations.
    • Proven ability to develop documentation sufficient to arrive at logical and comprehensive conclusions and recommendations. The documentation must be of a sufficient professional level to stand as an artifact for reuse as part of the security architecture.
  • 3+ years previous experience effectively performing security control implementation on networks, servers and systems and/or vulnerability assessments.
Required Technical Skills & Experience (required on matrix)
  • One or more of the following networking or security certifications:
    • Certified Information Systems Security Professional (CISSP)
    • Certified Information Systems Auditor (CISA)
    • Certified Information Security Manager (CISM)
  • 2+ years of experience performing security control evaluation and testing.
  • 3+ years of experience with North American Electric Reliability Corporation, Critical Infrastructure Protection (NERC CIP) regulatory standards and requirements.
  • 5+ years of experience with the Risk Management Framework and the 800 series of National Institute of Standards & Technology (NIST) Special Publications (in particular 800-37, 800-39, 800-53, 800-53A, 800-82 and 800-115)
Preferred Skills & Experience (optional on matrix)
  • Expert knowledge of FISMA controls
  • Expert knowledge of NERC-CIP standards
  • Understanding and experience in Federal electrical utility operations and how it interplays with FISMA/NERC-CIP standards and compliance.
Create a job alert for this search

Information Systems Security Engineer 2 • Vancouver, WA, United States

Similar jobs

Advanced Security Engineer, Enterprise Security

RelativityPortland, Oregon, United States
Full-time

As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate security controls that protect Relativity's employee endpoints and the enterprise systems they acc...Show more

 • Promoted

IBM Power Systems Administrator

MetroSysPortland, OR, US
Full-time
Quick Apply

Overview MetroSys is seeking an experienced IBM Power Systems Administrator to take ownership of a customer’s IBM i environment across production, development, and disaster recovery systems.This is...Show more

Restaurant Delivery - Flexible Schedule

DoorDashColumbia City, OR, United States

DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day.As a Dasher, you’ll stay busy with a variety o...Show more

 • Promoted

Restaurant Delivery - Sign Up in Minutes

DoorDashColumbia City, OR, United States

DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day.As a Dasher, you’ll stay busy with a variety o...Show more

 • Promoted

Data Entry From Home

Data Entry JobsWoodland, WA
Full-time

Data Entry Specialist (Remote).We're looking for a detail-oriented Data Entry Specialist to join our team from home.In this role, you'll be responsible for accurately inputting, updating, and maint...Show more

 • Promoted

Senior Security Engineer - Pen Testing & GRC

Structured Communication Systems, IncClackamas, Oregon, United States
Full-time

Salary: $110,000 - 130,000 per year.We are seeking a proficient Senior Security Engineer with a specialization in Penetration Testing.To be eligible, you should possess a Bachelors degree (B.Previo...Show more

 • Promoted

Director, Product Security - Remote

New RelicPortland, OR, United States
Remote
Full-time

A leading observability platform provider is seeking a Security Leader in Portland, Oregon.In this pivotal role, you will drive the product security strategy, lead the product security team, and en...Show more

 • Promoted

Project Manager 2 - Systems & Process Improvement

Leupold & StevensBeaverton, Oregon, United States
Full-time

Project Manager 2 - Systems & Process Improvement.Starting Base Salary Range of $80,000 to $95,000 (DOE).We are seeking a Project Manager 2 to lead systems and process improvement projects that enh...Show more

 • Promoted

Senior Security Engineer

Pacific SeafoodClackamas, OR, US
Full-time
Quick Apply

At Pacific Seafood, we do more than just provide the world with the healthiest proteins on the planet.We are a family-owned, excellence-driven organization committed to being the brand of choice in...Show more

Information Systems Technician

U.S. NavyWoodland, Washington, US
Full-time

Job Title : Information Technology Professional (IT/CTN/IS) Category / Component : Enlisted - Both Overview Information Systems Technicians, Cryptologic Technician Networks, and Intelligence Specia...Show more

 • Promoted • New!

Director of Consumer Identity & Security (Remote Work Option)

NIKEBeaverton, OR, United States
Remote
Full-time

Open to remote work except in South Dakota Vermont and West Virginia.The annual base salary for this position ranges from $178900.Actual salary will vary based on a candidates location qualificatio...Show more

 • Promoted

Remote QGIS Expert

Micro1St. Helens, Oregon, US
Remote
Full-time

AI labs train foundational models and enterprises build AI agents.We provide frontier evaluations and reinforcement learning environments used to improve LLM capabilities, as well as contextual eva...Show more

 • Promoted

Software Engineer - Java and Python

employer prod testersWoodland, Washington, United States
Full-time

Salary: $89,430 - 107,701 per year.Proven experience in software development with languages such as Java, C++, Python, C#, and Ruby on Rails.Strong knowledge of IT infrastructure components, includ...Show more

 • Promoted

Business Systems Analyst II

Rivermark Community Credit UnionOregon City, OR, United States
Full-time

Oregon City - Oregon City, OR 97045.This position does not include relocation and is a hybrid work model, which will require working on-site at our Oregon City campus.Join our Team At Rivermark, we...Show more

 • Promoted

AI Security Engineer - AI Red Team (Enterprise)

C-ServPortland, OR, US
Full-time
Quick Apply

We are building an elite AI Red Team to stress-test and harden enterprise-scale AI products deployed to some of the world’s largest organizations.This is not a theoretical research role.This role s...Show more

Information Technology Project Manager

BBSIVancouver, Washington, United States
Full-time

The IT Project Manager leads strategic information technology projects from inception through delivery, ensuring that solutions are delivered on time, within scope, and within budget while advancin...Show more

 • Promoted

Remote Econometric Data Analyst (Stata SE)

Micro1St. Helens, Oregon, US
Remote
Full-time

Econometric Data Analyst (Stata SE).AI labs train foundational models and enterprises build AI agents.We provide frontier evaluations and reinforcement learning environments used to improve LLM cap...Show more

 • Promoted

Senior Software Engineer (ISS7) Remote Work

Public Employees Retirement SystemPortland, OR, United States
Remote
Full-time +1

Initial Posting Date :09 / 22 / 2025Application Deadline :10 / 06 / 2025Agency :Public Employees Retirement SystemSalary Range :$6679 - $10092Position Type :EmployeePosition Title :Senior Software ...Show more