Lead Analyst, Cyber Security Compliance

Vistra Energy
United States
Workplace: OnsiteFull timeFunction: Legal, Risk & ComplianceExperience: 7-10 yearsSkills: ["Accuracy","Reliability","Written communication","Critical thinking","Stakeholder facilitation"]

Own cyber security compliance program procedures, tools, and internal control administration. Interpret regulations and translate standards (e.g., NERC CIP, ERCOT, ISO 27001, NIST 800-53) into clear obligations, evidence requirements, and documented impacts for stakeholders and executives. Lead audit support, investigate non-compliance variances with root-cause analysis, and design corrective action plans while partnering across plant teams, vendors, and governmental agencies.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Vistra Energy
Vistra Energy
4 weeks ago

Lead Analyst, Cyber Security Compliance

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 9 hours agoStatus: Live

Job Summary

Own cyber security compliance program procedures, tools, and internal control administration. Interpret regulations and translate standards (e.g., NERC CIP, ERCOT, ISO 27001, NIST 800-53) into clear obligations, evidence requirements, and documented impacts for stakeholders and executives. Lead audit support, investigate non-compliance variances with root-cause analysis, and design corrective action plans while partnering across plant teams, vendors, and governmental agencies.
Location: United States
Workplace: Onsite
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Mid level

Key Responsibilities

  • •Maintain extensive knowledge of Vistra Compliance regulations and develop, implement, and maintain program procedures, processes, and tools.
  • •Interpret regulations and create compliance behavior and evidence processes without adding undue administrative burden to plant staff.
  • •Administer the proprietary internal control system and ensure required compliance documentation is accurate and effective.
  • •Facilitate internal and external audit activities; investigate variances, escalate when needed, and perform root cause analysis for non-compliance.
  • •Design and manage corrective action plans and research/document processes supporting applicable regulations while seeking efficiency and automation within controls.

Key Requirements

  • •7-10 years of experience interpreting compliance and cybersecurity requirements including one or more of: NERC CIP, ERCOT Protocols, ISO 27001, NIST 800-53, SOX, PCI, NACHA, or NRC.
  • •Experience gained through college degree programs and/or certification in a business or technology related field, or equivalent experience.
  • •Demonstrate trustworthy, dependable behavior and strong reading comprehension plus written communication skills.
  • •Ability to learn quickly, be self-motivated to improve knowledge, and tackle new challenges.
  • •Working knowledge of application development or a coding technology language such as VBA, PowerShell, Python, Ruby, or C++.
Experience:7-10 yearsCybersecurity complianceISO 27001NIST 800-53NERC CIPERCOTSOXPCINACHAICSCloud security
Skills:AccuracyReliabilityWritten communicationCritical thinkingStakeholder facilitation
Certifications:CISMCISACISSPDigital Design
Tech Stack:NERC CIPERCOTISO 27001NIST 800-53SOXPCINACHANRCVBAPowerShellPythonRubyC++ICS devicesAgile

Company Brief

Vistra Energy
Operates a large integrated power generation and retail electricity business, serving residential, commercial, and industrial customers across the United States. The company focuses on electricity generation, retail energy sales, and related energy services.
Industry: Utilities
Company Size: Enterprise (1,001+ employees)
Revenue: USD 10M to 25M
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Irving, United States
Founded: 2016
Glassdoor
Glassdoor: 3.9
WebsiteLinkedInGlassdoor