Manager Cybersecurity Compliance
PPL
Company Summary Statement
As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE: PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities — PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy — provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL’s companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today.
Overview
PLEASE NOTE: this is a Hybrid role - on premise three times a week to one of our local offices in Louisville, KY; Allentown, PA or Providence, RI.
The Cybersecurity organization advances the overall state of security at PPL through critical initiatives and coordination of large security and customer-focused projects. The organization builds and procures technologies, tools, and processes to better enable teams at PPL to develop secure platforms and protect data and systems with appropriate security controls. IT Cybersecurity also develops systems to monitor and respond to attacks against our systems, provides educational awareness on security best practices, and ensures data sharing relationships with third parties securely protect PPL information.
The Manager-Cybersecurity Compliance leads a motivated cybersecurity team responsible for developing and implementing policies, procedures, technologies, and programs to maintain, demonstrate and improve IT security compliance. Working closely with the business and IT organization, implement and maintain compliance programs for IT NERC Critical Infrastructure Protection (CIP) Reliability Standards, Sarbanes-Oxley (SOX) Controls & Regulatory Compliance for the IT department, the Transportation Security Administration (TSA) security directive for natural gas pipeline security, and other cybersecurity compliance regulations, directives, and frameworks. This position is a manager level, requiring a senior compliance person with experience in negotiation, policy creation and advocacy. #INDPPL LI-Hy
Responsibilities
Drives the creation and implementation of the compliance strategic direction, including the development and maintenance of the IT Cybersecurity compliance programs for NERC CIP, SOX and TSA to mitigate the company’s cybersecurity related regulatory compliance risks.
Provides advice and counsel to other business and operations organizations in cybersecurity regulatory compliance requirements, including standards, policies, procedures and controls.
Drives complex problem analysis and makes recommendations for how to advance PPL’s cybersecurity compliance profile and culture with a team of motivated individuals.
Leads or assists team members in the identification, investigation and resolution of non-compliance incidents.
Provides oversight in developing, implementing, and evaluating project plans, goals, and timelines for the implementation of internal controls across all applicable standards.
Balances security best practices and business drivers against framework requirements, business risk, and impact to make recommendations that minimize PPL’s risk profile.
Leads teams in regulatory audits, spot-checks, and self-certifications including mock audits.
Assists in preparing for compliance audits where responsibilities include developing Reliability Standard Audit Worksheets (RSAWs) and compiling supporting evidentiary documentation.
Oversees and coordinates event and root cause analysis to identify gaps in controls including advising and supporting management in defining appropriate remedial actions and tracking.
Collaborates with applicable business areas and with IT groups to identify and implement technologies to automate or streamline compliance monitoring, reporting processes, or workflow automations.
Remains vigilant to new compliance concerns and partners with others, as necessary, to assist with events as they arise.
Develops and updates IT policies and procedures to provide oversight and guidance in regard to compliance responsibilities.
Prepares and delivers metrics, briefings, and training to represent the cybersecurity compliance program.
Tracks developments and participates with general and industry groups, monitors evolving cybersecurity regulatory landscape, may participate in industry cybersecurity standards development.
Qualifications
Basic Qualifications :
Bachelor's degree.
8 or more years of experience in IT Audit, Compliance, Cybersecurity or related field.
Two or more years of formal leadership experience.
Experience with NERC CIP or SOX regulatory requirements, such as standards development, controls framework development, or compliance.
Experience with applying compliance frameworks, to successfully comply with security policies, standards, and guidelines.
Proven experience establishing, managing, and validating compliance requirements with internal and external parties.
Experience creating, implementing, and documenting internal processes and technology to drive compliance, efficiency, and education.
Experience in examining and evaluating internal controls based on regulatory requirements to ensure adherence to the requirements is performed.
Effective written, verbal, and interpersonal communication skills along with outstanding attention to detail with dedication to encouraging a culture of compliance and security.
Critical thinking skills with the ability to identify and solve complex problems.
Working knowledge of security related frameworks and activities including, but not limited to, NIST Cybersecurity Framework, SOC 1, SOC 2, etc.
Preferred Qualifications :
Experience in developing and implementing NERC CIP or SOX compliance practices and processes.
Related work experience leading, building, and supporting compliance programs as a technical resource and owner that champions the vision for process improvements.
Experience in developing and implementing IT Cybersecurity governance practices and processes.
Knowledge and experience with Information Technology (IT) and Operational Technology (OT) equipment and infrastructure.
Master's degree in related technical discipline or MBA degree.
Relevant technical and security certifications such as CISSP, CISM, CISA, CCSP.
Basic Qualifications :
Bachelor's degree.
8 or more years of experience in IT Audit, Compliance, Cybersecurity or related field.
Two or more years of formal leadership experience.
Experience with NERC CIP or SOX regulatory requirements, such as standards development, controls framework development, or compliance.
Experience with applying compliance frameworks, to successfully comply with security policies, standards, and guidelines.
Proven experience establishing, managing, and validating compliance requirements with internal and external parties.
Experience creating, implementing, and documenting internal processes and technology to drive compliance, efficiency, and education.
Experience in examining and evaluating internal controls based on regulatory requirements to ensure adherence to the requirements is performed.
Effective written, verbal, and interpersonal communication skills along with outstanding attention to detail with dedication to encouraging a culture of compliance and security.
Critical thinking skills with the ability to identify and solve complex problems.
Working knowledge of security related frameworks and activities including, but not limited to, NIST Cybersecurity Framework, SOC 1, SOC 2, etc.
Preferred Qualifications :
Experience in developing and implementing NERC CIP or SOX compliance practices and processes.
Related work experience leading, building, and supporting compliance programs as a technical resource and owner that champions the vision for process improvements.
Experience in developing and implementing IT Cybersecurity governance practices and processes.
Knowledge and experience with Information Technology (IT) and Operational Technology (OT) equipment and infrastructure.
Master's degree in related technical discipline or MBA degree.
Relevant technical and security certifications such as CISSP, CISM, CISA, CCSP.
Drives the creation and implementation of the compliance strategic direction, including the development and maintenance of the IT Cybersecurity compliance programs for NERC CIP, SOX and TSA to mitigate the company’s cybersecurity related regulatory compliance risks.
Provides advice and counsel to other business and operations organizations in cybersecurity regulatory compliance requirements, including standards, policies, procedures and controls.
Drives complex problem analysis and makes recommendations for how to advance PPL’s cybersecurity compliance profile and culture with a team of motivated individuals.
Leads or assists team members in the identification, investigation and resolution of non-compliance incidents.
Provides oversight in developing, implementing, and evaluating project plans, goals, and timelines for the implementation of internal controls across all applicable standards.
Balances security best practices and business drivers against framework requirements, business risk, and impact to make recommendations that minimize PPL’s risk profile.
Leads teams in regulatory audits, spot-checks, and self-certifications including mock audits.
Assists in preparing for compliance audits where responsibilities include developing Reliability Standard Audit Worksheets (RSAWs) and compiling supporting evidentiary documentation.
Oversees and coordinates event and root cause analysis to identify gaps in controls including advising and supporting management in defining appropriate remedial actions and tracking.
Collaborates with applicable business areas and with IT groups to identify and implement technologies to automate or streamline compliance monitoring, reporting processes, or workflow automations.
Remains vigilant to new compliance concerns and partners with others, as necessary, to assist with events as they arise.
Develops and updates IT policies and procedures to provide oversight and guidance in regard to compliance responsibilities.
Prepares and delivers metrics, briefings, and training to represent the cybersecurity compliance program.
Tracks developments and participates with general and industry groups, monitors evolving cybersecurity regulatory landscape, may participate in industry cybersecurity standards development.
Remote Work
The company reserves the right to determine if this position will be assigned to work on-site, remotely, or a combination of both. Assigned work location may change. In the case of remote work, physical presence in the office/on-site may be required to engage in face-to-face interaction and coordination of work among direct reports and co-workers.
Equal Employment Opportunity
Our company is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, national origin, protected veteran status, sexual orientation, gender identify, genetic information, disability status, or any other protected characteristic.
- ...Access, MFA, PIM, and Identity Governance Intune device compliance, endpoint protection, and policy troubleshooting Monitor,... ..., reporting, and visibility. Vulnerability & Patch Management Design, implement, and operate a global vulnerability and...SuggestedFlexible hours
- These careers bring the expertise in all facets of Information Operations, making sure our fleet is capitalizing on the information vulnerabilities of our adversaries. Candidates seeking careers in this field should preferably have a degree that focuses on areas of study...SuggestedFull timePart timeWorldwide
$117k - $162k
...protecting the environment, making sure our food is safe or helping find cures for cancer. DESCRIPTION: Join our team as a Senior Manager of Demand Planning and play an important role in advancing our supply chain excellence. You'll lead and develop a team of demand...SuggestedTemporary workWork at office- ...organization for the continuous development of our Information Security Management System, and its rollout to other HYDAC entities. Furthermore,... ...matter expert. Execute control activities to evidence our compliance with IT controls. Consult management, teams, and...SuggestedTemporary workWork at officeLocal areaWorldwideRelocation
$89k - $143.75k
.... #Li-Hybrid We are searching for the best talent for a Cybersecurity Software Engineer, to be in Santa Clara, CA. Purpose: We... ...and product level quality processes outlined in the Quality Management System. Qualifications / Requirements: ~ BS or equivalent...SuggestedFull timeTemporary workWork at officeLocal areaRemote workNight shift$152.07k - $202.76k
Lumen is the trusted network for AI. We’re transforming how businesses connect, secure, and scale in an AI-driven world. By connecting people, data, and applications quickly, securely, and effortlessly, we help organizations move faster and unlock what’s next. At Lumen...Full timeTemporary workRemote work$122.6k
44443BR Requisition ID: 44443BR Business Unit: COR Job Description: The Senior Manager, Office Space Planning & Construction leads the strategic planning, portfolio optimization, and operational management of the firm’s office environment. This role is...Full timeContract workFor contractorsH1bWork at office$150k - $175k
...C-level executives and decision-makers at targeted clients Manage client and Extrahop relationships, creating value for accounts... ...successful outcomes Stay updated with emerging trends across cybersecurity Reporting & Cadence: (Monthly) Pipeline and deal...Full timeRemote workShift work$140k - $160k
...Strategy And Transformation Manager CAI is a global services firm with over 9,000 associates worldwide and a yearly revenue of $1.3 billion+. We have over 40 years of excellence in uniting talent and technology to power the possible for our clients, colleagues, and...Full timeWork at officeLocal areaRemote workWorldwide$69.2k - $86.5k
...Eligible Work Locations: Remote - Nationwide, United States Associate Strategic Resource Engagement Manager Preferred Location: Eastern or Central Time Zone USA Why WWT? At World Wide Technology, we work together to make a new world happen. Our important work...Full timeRemote workShift work- A leading technology firm in Coopersburg, PA is seeking a Senior Manager for Product Management to lead the growth of its Luxury Lighting category. The successful candidate will develop product positioning, oversee roadmap execution, and engage with cross-functional teams...
$63 per hour
AppleOne Employment Services is seeking a Finance Manager for a contract role in Center Valley, PA. This position requires a BS degree in accounting, finance, or a related field (MBA preferred) and a minimum of 6 years of relevant experience. Responsibilities include analyzing...Hourly payContract work- Olympus Corporation of the Americas in Center Valley, Pennsylvania is looking for a finance professional to support key strategic initiatives. The role focuses on analyzing financial results and enhancing operational efficiencies. Responsibilities include preparing budgets...
- A leading technology company in Coopersburg, PA is seeking a Shading Solutions Product Manager. This role involves leading product development and launch plans, collaborating with various teams to deliver successful shading solutions. Candidates should have over 10 years...
- A global leader in lighting control is seeking a Commodity Manager - Electronic Components to join their procurement team in Coopersburg, PA. The successful candidate will develop strategies to strengthen the supply chain and manage executive-level supplier relationships...
$118.98k - $195.47k
...Lead, Cyber Security Assurance Testing is a working-lead / "player-coach role" within Guardian's Cybersecurity Assurance organization. This role includes formal people management responsibility for a small number of senior engineers, with a focus on operational and...Full timeWork at officeImmediate startVisa sponsorshipWork visaFlexible hours3 days per week- ...Procurement Supervisor interacts with suppliers, with other departments in the company, and to a high degree with other Supply Chain Management personnel throughout the Business Area. · The Procurement Supervisor reports to the Head of Supply Chain Management within the...For contractorsWork experience placementImmediate startWorldwideVisa sponsorshipWork visaRelocation package
$90k - $115k
...Strategic Account Manager (Mid-Atlantic) Location: Remote, Mid-Atlantic Territory (ideally sites in NC, TN) Compensation: $90,000-$115,000 base + uncapped commission + car allowance & expenses Type: Direct Hire Overview A leading pharmaceutical organization is...Remote work3 days per week- ...medical device company focused on vascular access and medication management. Our mission is to improve the lives of patients worldwide by... ..., reduce costs, and enhance overall performance. ● Compliance and Regulation: Ensure that all activities adhere to regulatory...Contract workWorldwide
- ...Critical Control Points (CCPs) - Perform pre-operational visual inspections of packaging and product holding equipment - Assist QA Manager in product traceback exercise, inventory control, ordering, stock rotation and food safety and quality concerns - Complete,...Weekly payFull timeRelocationAll shiftsMonday to FridayShift workNight shiftWeekend workDay shiftAfternoon shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager Cybersecurity Compliance. Be the first to apply!
- no experience cyber security Allentown, PA
- senior cybersecurity engineer Allentown, PA
- cybersecurity software engineer Allentown, PA
- cyber security Allentown, PA
- regulatory compliance remote Allentown, PA
- vp compliance Allentown, PA
- customs compliance Allentown, PA
- regulatory affairs Allentown, PA
- vendor compliance Allentown, PA
- compliance lead Allentown, PA


