Jobs and Careers
NO

Senior Manager, Global Information Technology

NovaSource Power Services
United Statesfull_timeVerifiedPosted 7 Aug 2026

About the role

NovaSource Power Services is the world’s #1-ranked solar operations and maintenance (O&M) provider and insight-driven total asset optimization partner for renewables asset owners ready to fuel smart growth. With over 20 years of operating experience and a presence on 5 continents, NovaSource has the global reach and strategic capabilities to achieve our clients’ renewables goals around the world. 

NovaSource’s comprehensive approach to total asset optimization in addition to O&M services includes value engineering, performance analysis, strategic supply chain management, and advanced monitoring systems. The company operates in key global markets managing over 30GW of solar power plants. NovaSource’s expertise extends beyond solar and includes battery energy storage systems (BESS), offering a complete suite of services for the evolving renewable energy landscape.

Position Summary

The Technology GRC Senior Manager leads the technology governance, risk and compliance function for regulated IT/OT environments. This role translates compliance obligations into practical technical controls, maintains audit-ready evidence, and serves the designated technical subject-matter expert (SME) for NERC CIP and Global regulatory electricity compliance (Including Europe, Chile, and Australia) within the technology organization including customer, and supply-chain requirements. The role owns governance and control integrity, while operational teams remain accountable for daily infrastructure, cloud, network, tooling, and OT operations.

Key Responsibilities

  • Act as the IT/OT compliance interface to Legal, Corporate Compliance, Information Security, IT, OT and business teams for technology obligations, audits, reviews, and customer commitments.
  • Own and govern technical control design, control documentation, evidence quality, control monitoring, remediation, validation, and audit-readiness routines for regulated environments.
  • Partner with compliance and operational control owners to establish clear roles, review cadence, escalation paths and defensible evidence for access, change, configuration, vulnerability, malware, logging, and monitoring controls.
  • Support NERC CIP compliance activities including evidence management, self-certification, auditor data requests, mitigation tracking, technical attestations and control demonstrations.
  • Maintain policies, standards, procedures, exception processes and governance artifacts across IT, OT, security, compliance, and vendor-risk domains.
  • Embed compliance requirements into change management, incident response, recovery, access management, data protection, vendor risk and technology lifecycle processes.
  • Assess technology, vendor, customer, cloud, SaaS, MSP, software, hardware and OT changes for compliance impact, risk exposure, evidence needs and operating feasibility.
  • Build practical workflows, dashboards and reporting that reduce manual evidence collection, improve leadership visibility and escalate compliance gaps or risk acceptance needs.
  • Support third-party and supply-chain risk management for applicable technology products and services, including remote access, vulnerability communication, software integrity and vendor assurance expectations.
  • Promote a compliance-minded culture through documentation discipline, awareness support, continuous improvement and clear communication with technical and nontechnical stakeholders.

Required Qualifications

  • Bachelor's degree in a relevant technical field, or equivalent experience.
  • 5+ years in IT/OT governance, risk, compliance, information security, auditor technology risk management, including 3+ years supporting technical controls in regulated environments.
  • Direct NERC CIP experience, such as evidence management, audit readiness, self-certification, RFI response, mitigation tracking or compliance program coordination.
  • Working knowledge of IT/OT security, including segmentation, access, change/configuration, vulnerability, patch, malware prevention, logging, monitoring and recovery controls.
  • Understanding of OT operating constraints, including availability priorities, legacy systems, real-time operations and controlled change windows.
  • Strong documentation discipline with the ability to produce operationally usable and audit-defensible materials.
  • Strong written and verbal communication skills; able to translate technical implementation and compliance requirements for engineers, legal, compliance and senior leadership.

Preferred Qualifications

  • Experience in renewable generation, storage, remote monitoring or industrial control environments.
  • Relevant certifications such as GICSP, CISSP, CCNP/CCNA, Security+, CISM or equivalent.
  • Experience preparing for or supporting NERC

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

NovaSource Power Services

View company profile →