Overview
Skills
Job Details
We are looking for a Security Engineer with utilities compliance experience in the Sacramento area for a project expected to be on site and very long term.
Possible travel covered for the right out of town resource.
We need someone with extensive NERC, CIP and FERC experience.
Some more details are below.
Please let me know if you are interested and when a good time is to get in touch with you.
Thanks for your time.
Job Summary:
We are seeking a detail-oriented and highly motivated Security Engineer to join our utility compliance team. This field-based role involves traveling to various electrical substations throughout the Sacramento region to conduct security assessments, evaluate regulatory compliance, and support the implementation of physical and cybersecurity controls aligned with NERC, FERC, and CIP standards.
Key Responsibilities:
- Conduct on-site security and compliance assessments of substations, ensuring adherence to NERC CIP (Critical Infrastructure Protection) standards and applicable FERC regulations.
- Perform physical security inspections, review access controls, surveillance systems, perimeter protections, and other infrastructure against compliance requirements.
- Evaluate substation cybersecurity postures, including control systems and communication networks, for regulatory alignment.
- Document findings, develop compliance reports, and recommend corrective actions for identified deficiencies or vulnerabilities.
- Work with internal stakeholders to implement remediation plans and support continuous improvement of security practices.
- Stay current with updates to NERC, FERC, and CIP guidelines and interpret their impact on existing systems.
- Coordinate with operational teams to schedule and execute assessments while minimizing disruption to critical infrastructure operations.
- Participate in audits and assist with evidence collection and response documentation for regulatory bodies.
Qualifications:
- Bachelor’s degree in Cybersecurity, Electrical Engineering, Information Technology, or related field (or equivalent experience).
- 3+ years of experience in utility, energy, or critical infrastructure environments, preferably in a security or compliance role.
- Strong knowledge of NERC CIP standards, FERC regulations, and related industry guidelines.
- Experience conducting field-based security assessments (physical and/or cyber) in a utility or industrial control systems (ICS/SCADA) environment.
- Familiarity with physical security technologies (e.g., access control systems, CCTV, intrusion detection).
- Excellent written and verbal communication skills for technical reporting and stakeholder engagement.
- Valid driver’s license and willingness to travel regularly within the Sacramento region.
Preferred Qualifications:
- Relevant certifications (e.g., GICSP, CISSP, CISM, CPP, or NERC Compliance-related certifications).
- Experience working with electric utility transmission and distribution systems.
- Understanding of risk management principles in a regulatory context.