Home
/
Comprehensive
/
Sr Cyber Security Engineer - HYBRID
Sr Cyber Security Engineer - HYBRID-March 2024
Owings Mills
Mar 28, 2026
About Sr Cyber Security Engineer - HYBRID

  Description

  We're powering a cleaner, brighter future.

  Exelon is leading the energy transformation, and we're calling all problem solvers, innovators, community builders and change makers. Work with us to deliver solutions that make our diverse cities and communities stronger, healthier and more resilient.

  We're powered by purpose-driven people like you who believe in being inclusive and creative, and value safety, innovation, integrity and community service. We are a Fortune 200 company, 19,000 colleagues strong serving more than 10 million customers at six energy companies -- Atlantic City Electric (ACE), Baltimore Gas and Electric (BGE), Commonwealth Edison (ComEd), Delmarva Power & Light (DPL), PECO Energy Company (PECO), and Potomac Electric Power Company (Pepco).

  In our relentless pursuit of excellence, we elevate diverse voices, fresh perspectives and bold thinking. And since we know transforming the future of energy is hard work, we provide competitive compensation, incentives, excellent benefits and the opportunity to build a rewarding career.

  Are you in?

  Primary Purpose

  The Cyber Security Engineer (CSE) will execute the highly technical, tactical elements of the Security Architects’ (and overall CISS) cyber security strategy, eliminating a functional cyber security capability gap while providing pro-active cyber security risk management. The CSE will act as a liaison to the Security Architect and Cloud and Infrastructure Operations/Engineering and Utility IT/OT teams to effectively communicate and assist in architecting and implementing effective security solutions. The CSE will also assist with vulnerability mitigation, incident remediation, and will help manage change requests in support of cyber vulnerability remediation efforts. The CSE will ensure the implementation of system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation, and will perform security reviews to identify gaps in security architecture. The CSE will assist in the development of appropriate security risk management plans.

  Note: This is a flex position meaning this role will be part remote and part in the office. This role is a HYBRID position - candidates must reside in one of the following states - IL, PA, NJ, DE, MD or Washington DC. This role is not eligible for relocation assistance.

  Primary Duties

  · Provide analytical and technical security recommendations to other team members, technical teams, and business clients, including:

  o Provide cybersecurity guidance to leadership

  o Work with stakeholders to resolve computer security incidents and vulnerability compliance

  o Provide input to implementation plans and standard operating procedures as they relate to information systems security

  o Develop specific cybersecurity countermeasures and risk mitigation strategies for systems and/or applications

  · Work closely with technical teams to implement effective security configurations/requirements, including:

  o Verify minimum security requirements are in place for all applications

  o Ensure application of security patches for commercial/custom products integrated into system design

  o Implement security measures to resolve vulnerabilities, mitigate risks, and recommend security changes to system or system components as needed

  o Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leadership

  o Verify and update security documentation reflecting the application/system security design features

  o Verify minimum security requirements are in place for all applications

  · Work closely with the Vulnerability Management and application teams to ensure secure transition of applications into production.

  · Assist with vulnerability mitigation, incident remediation, and associated change management activities.

  POSITION SCOPE:

  The Cyber Security Engineer (CSE) will work closely (and primarily) with Cloud and Infrastructure Operations/Engineering and Utility IT/OT clients to implement effective security configurations and requirements; provide analytical and technical security recommendations to other team members, technical teams, and business clients; act as a senior technical lead for all Exelon security remediation efforts; meet with Exelon business clients and management to help specify and negotiate application security requirements; work closely with Exelon application teams to ensure secure transition of applications into production; develop technology to automate cyber security monitoring, logging, and compliance with CISS standards; actively participate in relevant industry cyber security workgroups and forums; act as a liaison to the Security Architect and Cloud and Infrastructure Operations/Engineering and Utility IT/OT teams to effectively communicate and assist in architecting and implementing effective security solutions; develop documentation to support ongoing security systems operations, maintenance, and problem resolution; mitigate vulnerabilities, remediate incidents, and affect change requests in support of cyber vulnerability remediation efforts; work closely with the Security Policy and Risk Office to assist with the identification, analysis, and remediation of Exelon cyber security risk

  Qualifications

  Minimum Qualification

  · Bachelor’s Degree in Computer Science, Information Technology (IT), or a related discipline, and typically 8 or more years of solid, diverse experience in cyber security vulnerability assessments, or equivalent combination of education and work experience.

  · At least 5-8 years of demonstrable security engineering or related experience, including:

  · Knowledge of encryption algorithms

  · Knowledge of cryptology

  · Knowledge of database systems

  · Knowledge of embedded systems

  · Knowledge of how system components are installed, integrated, and optimized

  · Knowledge of human-computer interaction principles

  · Knowledge of cybersecurity principles and organizational requirements (relevant to confidentiality, integrity, availability, accountability, authentication, non-repudiation)

  · Knowledge of operating systems

  · Knowledge of IT and OT security principles and methods, such as firewalls, IDS/IPS, demilitarized zones, and encryption

  · Skilled in evaluating the adequacy of security designs

  · Knowledge of the systems engineering process

  · Knowledge of network protocols, routing principles, identity and access management

  · Comprehensive understanding of change management techniques associated with new technology implementation.

  · Demonstrated experience producing an economic business case.

  · Demonstrated leadership ability.

  · Proven analytical, problem solving, and consulting skills.

  · Excellent communication skills and the proven ability to work effectively with all levels of IT/OT and business management.

  Preferred Qualification

  · Graduate degree in cyber security or related area of expertise.

  · Relevant security certifications (CISSP, GIAC, MCSE, RHCE, CCNP, CCSP)

  · Demonstrable, hands-on expertise in the following technical disciplines:

  · Operating Systems (Microsoft, Linux, UNIX)

  · Networking (Cisco, Checkpoint, Alcatel Lucent, Gigamon, RuggedCom)

  · Mobility (IOS, Android, MDM, BYOD)

  · Cryptography (PKI, lifecycle management)

  · Network Security Engineering (secure network design, IDS/IPS, monitoring, firewalls)

  · Virtualization (VMware, HyperV)

  · Remote Access Methods (VPN, Citrix, MFA)

  · ICS / SCADA System Security (design, controls)

  · Demonstrable understanding of the 10 functional domains of security

  · A strong technical understanding of scripting languages (Perl, Powershell), as well as strong proficiency in Python, Ruby, or Java

  · Demonstrable experience with Industrial Control Systems, SCADA environments, and utility methods and practices for operational technologies and service delivery

  · Strong understanding of enterprise, network, system, and application level security engineering principles

  · Demonstrable understanding of enterprise computing environments, distributed applications, and a strong understanding of TCP/IP networks

  · Demonstrable understanding of system hardening processes, tools, guidelines, and benchmarks

  REQNUMBER: 252074

  Exelon is proud to be an equal opportunity employer and employees or applicants will receive consideration for employment without regard to: age, color, disability, gender, national origin, race, religion, sexual orientation, gender identity, protected veteran status, or any other classification protected by federal, state, or local law. If you are an individual with a disability and need an accommodation to complete the application, please email us at [email protected].

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Training Specialist 2 (Temp/Hourly), Central Office;
Agency Mental Health, Office of Title Training Specialist 2 (Temp/Hourly), Central Office; Occupational Category Other Professional Careers Salary Grade NS Bargaining Unit PS&T - Professional, Sc
Principal Product Manager-Tech, Amazon Music - CX Infrastructure
Description The Amazon Music CX Infrastructure team is responsible for a wide range of areas of the Amazon Music experience including Customer Data Platform and Services, Cross-Client Experiences, Ca
FICO Business Analyst
FICO Business Analyst Location: Reno, NV, US, 89521MN Statewide, MN, USNJ Statewide, NJ, USOR Statewide, OR, USMA Statewide, MA, USIL Statewide, IL, USFL Statewide, FL, USUT Statewide, UT, USWA State
Specialized Travel Consultant
Amex GBT is a place where colleagues find inspiration in travel as a force for good and – through their work – can make an impact on our industry. We’re here to help our colleagues achieve success an
LCLS Facilities Engineer 3
LCLS Facilities Engineer 3 Job ID 5709 Location SLAC - Menlo Park, CA Full-Time Regular SLAC Job Postings SLAC is one of 17 Department of Energy (DOE) National Laboratories. Operated by Stanford Univ
Teller Greater St. Paul Area
Why Wells Fargo: Are you ready for the next step in your career? This is where it begins - at a company known for our Well Life approach to supporting employees' career aspirations, work-life balance
Food Service Worker - Cypress Care Center - Food
Job Description The Food Service Worker will assist the manager with food/meal preparation; maintain cash receipts and meal records. Assist manager in completing daily reports. Maintain high standard
Tool And Die Maker
Description: Candidates will be working in the tool room where they will mostly be disassembling and cleaning molds for injection molding machines. These molds/dies come off the machines with issues
Sales Manager 2 Elead Northeast MHS
Additional Information Remote Reactive Sales Manager focused on Group and Catering Sales opportunities. Must Reside in Northeast States. Job Number 24010331 Job Category Sales & Marketing Locatio
Pharmacy Technician
Bring your heart to CVS Health. Every one of us at CVS Health shares a single, clear purpose: Bringing our heart to every moment of your health. This purpose guides our commitment to deliver enhanced
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved