2

Full Time Nerc Cip Jobs (NOW HIRING)

Sr Cyber Security Analyst

Newark, NJ · On-site

$104K - $134K/yr

Exempt Full Time This is an exciting time to be joining PSEG. Our commitments, which include safety ... Please note this is a NERC CIP position and requires NERC CIP background investigation prior to ...

J0626-2450 Employment Type: Full Time Position Description: CGI is looking for a Director of ... ISA/IEC 62443, NIST 800 82, NERC CIP, TSA Pipeline Security Guidelines. • Extensive knowledge of ...

Baltimore, Maryland. Full Time Permanent Basic Qualifications Bachelor's degree or foreign ... Familiar with 10 CFR 810 and NERC / CIP regulations Ability to work in team in diverse/ multiple ...

next page

Showing results 1-20

Full Time Nerc Cip information

See salary details

$24

$42

$76

How much do full time nerc cip jobs pay per hour?

As of Aug 27, 2026, the average hourly pay for full time nerc cip in the United States is $42.40, according to ZipRecruiter salary data. Most workers in this role earn between $30.77 and $53.61 per hour, depending on experience, location, and employer.

What are the most commonly searched types of Nerc Cip jobs?

The most popular types of Nerc Cip jobs are:

Infographic showing various Full Time Nerc Cip job openings in the United States as of August 2026, with employment types broken down into 93% Full Time, 4% Part Time, 2% Contract, and 1% Nights. Highlights an 88% Physical, 7% Hybrid, and 5% Remote job distribution, with an average salary of $88,198 per year, or $42.4 per hour.

Senior NERC CIP Compliance Analyst

Consolidated Asset Management Services

New Haven, CT • On-site

$130K - $160K/yr

Full-time

Re-posted 11 days ago


Job description

Description
The Sr. NERC CIP Compliance Specialist provides critical on-site leadership to protect and maintain the integrity of control and business networks at our Low and medium-impact generating stations. This role drives continuous compliance with NERC CIP cybersecurity standards, leads site security initiatives, and serves as the primary subject matter expert for station personnel. Operating as a key liaison, this position partners with cross-functional stakeholders to enforce a secure operational environment and ensure continuous audit readiness through rigorous evidence management.
Essential Duties and Responsibilities
  • Program Ownership: Build, optimize, and maintain on-site processes and documentation to ensure continuous adherence to NERC CIP standards.
  • Asset & Baseline Management: Maintain accurate cyber asset inventories and manage baseline change control workflows.
  • Audit Leadership: Lead RSAW/ERT preparation and submission for Regional Entity audits, spot checks, and compliance investigations.
  • Access Control: Maintain compliant physical and electronic security perimeters and access controls for all site assets.
  • Routine Compliance: Execute daily, monthly, quarterly, and annual CIP compliance activities in accordance with program procedures.
  • Liaison & RFI Coordination: Serve as the primary site contact for Regional Entities; coordinate cross-functional teams to fulfill RFIs and remediate findings.
  • Training Delivery: Deliver and support mandatory NERC CIP cybersecurity compliance training programs for site personnel.
  • Patch Management: Direct the end-to-end patch management lifecycle, ensuring BES Cyber Assets are monitored and updated within regulatory timelines.
  • Incident Response & Drills: Lead the annual testing, documentation, and reporting of the Cyber Security Incident Response Plan (CIP-008) and Recovery Plans (CIP-009).
  • Vulnerability Assessments (CIP-010): Orchestrate annual Critical Vulnerability Assessments (CVAs) while ensuring zero adverse impact tooperational BES infrastructure.
  • Information Protection: Oversee the identification, classification, and secure handling of Bulk Electric System (BES) Cyber System Information (BCSI) to prevent unauthorized disclosure.
  • Supply Chain Risk (CIP-013): Lead supply chain risk assessments and collaborate with procurement/legal to enforce cybersecurity contract clauses.
  • Self-Assessments & Mitigation: Conduct proactive internal compliance self-assessments; manage the identification, self-logging, and mitigation of compliance deviations.

Requirements
  • Bachelor's degree in Engineering, Computer Science, IT, Cybersecurity, or a related technical discipline (equivalent direct experience considered).
  • Minimum of 5-10 years of professional experience in regulatory compliance, power utility operations, or industrial cybersecurity.
  • At least 5 years of hands-on experience implementing and managing a NERC CIP compliance program across Medium or High-impact assets.
  • Demonstrated success drafting RSAWs, preparing ERT responses, and managing RFIs during Regional Entity audits or spot-checks.
  • Deep operational understanding of the 35-day patch/baseline lifecycle (CIP-007/010), security perimeters (CIP-005/006), and supply chain management (CIP-013).
  • Ability to successfully pass a mandatory NERC CIP-004 Personnel Risk Assessment and background check.
  • Ability to work full-time on-site at the designated facility, travel up to 25% as needed, and safely navigate physical plant environments.
  • Ability to perform physical job duties, including lifting to 25 pounds, climbing, bending, and working in industrial environments (Use of PPE is required).

Preferred Skills and Certifications
  • Prior experience working directly within a power generation plant, transmission control center, or EMS/GMS environment.
  • NERC Certified Compliance Professional (NCCP) designation.
  • CISSP (Certified Information Systems Security Professional), CISA (Certified Information Systems Auditor), or CISM (Certified Information Security Manager).
  • SANS GIAC certifications, specifically GCIP (GIAC Critical Infrastructure Protection) or GICSP (Global Industrial Cyber Security Professional).
  • Established working relationships and direct audit experience with our specific Regional Entity (e.g., SERC, WECC, NPCC, RF, MRO, Texas RE).
  • Commitment to cybersecurity excellence and regulatory compliance is a must.