Sr. Program Manager- IT Security
Crossfire Consulting - Uniondale, New York, United States, 11553
Work at Crossfire Consulting
Overview
- View job
Overview
Introduction A major utility organization is seeking an experienced
Sr. Program Manager
to serve as a subject matter expert (SME) in IT security. This leadership role will oversee the planning, execution, and delivery of cybersecurity programs and initiatives, ensure compliance with the NIST Cybersecurity Framework, and provide long-term oversight for large-scale system separation projects, with a focus on critical work bundles. The position supports the Director of Cyber Security in aligning security strategies with business goals, implementing effective security measures, and mitigating risks to protect sensitive systems and data.
Key Responsibilities Act as the organization's SME on all IT security-related matters, including NIST CSF compliance. Oversee planning, execution, and delivery of cybersecurity programs, including resource allocation, budgeting, and scheduling. Provide long-term oversight for major system separation projects, focusing on specific work bundles. Ensure alignment of security strategies with organizational goals. Monitor and evaluate implementation/migration of large-scale enterprise security tools and systems in a utility environment. Develop enterprise security architecture and ensure internal and third-party tools, processes, and services provide consistent, robust protection. Ensure compliance with relevant regulations and standards, particularly in an electric utility context. Lead and coordinate incident response efforts to minimize impact from security breaches and cyberattacks. Provide guidance on performance management practices, metrics development, monitoring, and evaluation. Qualifications
Strong understanding of cybersecurity principles, technologies, and best practices. Demonstrated experience in managing cybersecurity programs in areas such as budgeting, scheduling, and resource management. Familiarity with utility sector performance management practices. Ability to evaluate large-scale enterprise system migrations and tool implementations. Experience in enterprise security architecture design and execution. In-depth knowledge of security controls, policies, and compliance requirements for utilities. Proven incident response leadership in cybersecurity events. Detailed knowledge of utility cybersecurity standards and best practices (NIST CSF, NERC CIP). Minimum
15 years
developing, managing, and implementing cybersecurity plans and initiatives. Bachelor's degree in Computer Science or related Engineering discipline; Master's degree preferred. Current
CISSP
and
PMP
certifications required. Additional certifications in cybersecurity, program/project management, or strategic planning preferred.