Senior Information Security Analyst
S&C Electric CompanyAbout the role
As an S&C Electric team member, you’ll work on projects that have real-world impact. You’ll help transform the grid for resilient and reliable power worldwide. S&C has more than a 100-year history of innovation and has been 100% employee-owned since 2012. We continue this legacy as a trusted, forward-thinking leader in the electrical industry. You will advance a safer, more reliable, and more resilient electrical grid. Our products help the grid adapt to severe weather and transition to clean energy. We’re big enough to be a respected industry leader but small enough for you to impact our company directly. Our commitment gives you opportunities to impact on and off the job positively.
Join S&C to make an impact on tomorrow’s energy challenges and become an employee-owner!
Hours
- 8:00 am – 5:00 pm (Mon-Fri) Remote
At S&C, we are dedicated to providing competitive and equitable compensation for all our team members, and we are committed to transparency in our pay practices. The estimated annual base salary range for this position is $103,400 - $136,952. Individual pay within this salary range is determined by several compensable factors, including performance, knowledge, job-related skills and experience, and relevant education or training. This role is also eligible for S&C’s annual incentive plan (AIP), subject to eligibility criteria.
Join Our Team as a Senior Information Security Analyst!
The Information Technology team is responsible for designing, implementing, and maintaining a robust technology infrastructure to support the organization’s operations. Through improving cybersecurity and troubleshooting technical issues to driving innovation through cutting-edge solutions, the IT team ensures seamless connectivity, data security, and optimal functionality, empowering the company with a reliable and efficient digital ecosystem aligned with strategic goals.
The Senior Information Security Analyst is responsible for ensuring that information security processes and controls for managing risks are implemented effectively and conform to ISO/IEC 27001:2022 and other applicable standards and regulations. This role requires in-depth knowledge of information security, data privacy, and supply chain functions and ensures organizational alignment with applicable information security policies, regulatory standards, and best practices. The Senior Information Security Analyst is responsible for conducting key activities in support of the operationalization and maturation of Information Security Management System (ISMS) processes through cross-functional efforts, including risk assessments, maintaining an inventory of information assets, participating in audits as a subject matter expert, performing vendor and supplier assessments, responding to customer security questionnaires, and maintaining governance documents and implementation records.
Key Responsibilities:
- Support the continuous improvement and monitoring of the Information Security Management System (ISMS) across the organization, including third-party suppliers.
- Ensure that security measures are fully integrated, operational, and compliant with applicable regulations and standards.
- Assist in the planning, preparation, and execution of compliance audits.
- Ensure implementation of ISMS documentation and technology platform, such that all assigned security policies, procedures, and processes are accurately maintained, automated, and streamlined reducing manual intervention and improving efficiency.
- Integrate experience and insights into actionable ideas or solutions to manage information risk and advise cross-functional teams, third-party vendors, and other stakeholders.
- Assist in maintaining an accurate and up-to-date information asset inventory process, ensuring the completeness and accuracy of assets.
- Perform regular asset-based and scenario-based risk assessments to identify vulnerabilities and risks associated with assets and inclusion in the risk register.
- Identify, assess, and track treatment plans for information security and privacy-related risks and nonconformities for their severity, potential impacts, and their probability of recurrence.
- Coordinate and communicate updates to process, policies, and procedures based on the treatment of risks and nonconformities.
- Assist in completion and maturation of supply chain risk management activities and administer associated technology platforms to ensure conformance with the standard and compliance with legal, regulatory, and contractual requirements. Activities include, but are not limited to, tracking third-par
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s