Want to hear how I work? Hit play.Kablio AI applies for you. You just show up to the interviewKablio AI helps you secure roles in construction, clean energy, facilities management, engineering, architecture, sustainability, environment and other physical world sectors.
Get hired, get rewarded!
Land a job through Kablio and earn a 5% salary bonus.
Exclusive benefits
5%Bonus
Director Cybersecurity Governance, Risk, & Compliance
Pseg
A publicly traded diversified energy company focused on regulated electric and gas services and power generation.
Lead enterprise-wide cybersecurity governance, risk, compliance and assurance.
2d ago
$157,000 - $257,600
Expert & Leadership (13+ years)
Full Time
Newark, NJ
Hybrid
Company Size
26,094 Employees
Service Specialisms
Energy Services
Utility Services
Electric Power
Renewable Energy
Sustainability
Environmental Services
Infrastructure Development
Smart Grid Solutions
Sector Specialisms
Energy
Electric Service
Gas Service
Industrial
Commercial
Residential
Outdoor Lighting
Security Cameras
Role
What you would be doing
risk assessments
policy implementation
remediation tracking
risk register
cybersecurity budgets
security standards
Conducting risk assessments of third-party vendors to evaluate cybersecurity controls for protecting company-specific data.
Builds relationships across PSEG business and technology teams. Interacts routinely with vendors, service providers, consultants/advisors, law enforcement agencies, and cross-sector cyber industry trade organizations. Ensures that cyber governance, risk, and compliance requirements are identified, well defined, properly documented, and approved by appropriate stakeholders.
Interacting with auditors on cybersecurity management oversight.
Identifying/overseeing remediation of open cybersecurity issues and validating closure.
Develops, manages, and pre-prioritizes Cybersecurity CAPEX and OPEX budgets based on business needs and cyber threats. Lead the identification of optimal OPEX and CAPEX allocations, including opportunities to reduce expenditures while transforming PSEG Cybersecurity Governance, Risk, and Compliance. Lead and advise on business case development.
Collaborating closely with developers and infrastructure teams to implement the Cybersecurity policies required to protect the integrity, confidentiality, and availability of the information on an end-to-end basis.
Serving as the Subject Matter Expert for Cybersecurity governance, risk, and compliance issues/concerns/audits.
Coordinating with outside vendors/third-parties to protect client information, to secure data transmission protocols, and to complete/remediate Information/cybersecurity assessments.
Partners with and advises various IT teams. Operationalizes Policies, Practices, and Instructions to protect against existing and emerging threats.
Implementing the risk assessment framework, which identifies critical cybersecurity and privacy impacting business process and/or systems.
Leads team, including performance evaluations, career development guidance, and other aspects to grow the talent pipeline and to mature our program.
Identifying opportunities for process improvements to deliver increasing efficiency within the Risk and Control framework.
Collaborating closely with Digital Workplace, Infrastructure, Enterprise Resource Planning, and Application Development Teams to identify and remediate cybersecurity issues.
Completing risk assessments of new/existing infrastructure, systems, Industrial Control Systems, and other components.
Maintaining the global Cybersecurity and IT risk registers, tracking remediations, and creating status reports/metrics.
Leading and/or contributing to the creation and maintenance of the enterprise’s cybersecurity documents (policies, standards, guidelines and procedures). Ensuring enforcement of these enterprise cybersecurity documents.
Maintaining up-to-date cybersecurity knowledge, including awareness of innovative solutions/processes, emerging standards, and new threat vectors by reading professional publications, maintaining personal networks, and participating in professional organizations.
Providing support and risk guidance for enterprise infrastructure, the wireless environment, Cloud software/infrastructure security, secure software development, and data protection.
Providing cybersecurity insight and expertise in assessing new business opportunities.
Preparing for, supporting, and potentially presenting at, Cybersecurity Council, Senior Executive Team, and Board of Directors meetings.
Preparing senior-level technical reports for executive management.
Develops and implements best practices for PSEG Cybersecurity Governance, Risk, and Compliance capabilities. Participate in external risk organizations (including with peer groups) to learn from other organizations and to benchmark our program. Partner with professional Cybersecurity Governance, Risk, and Compliance associations, service providers, and to identify and implement best practices.
Conducting cybersecurity assessments, identifying risks, and tracking/reporting on remediations.
Directs, coaches, and counsels internal/external cyber resources on Cybersecurity technologies, including Regulatory Assurance (e.g. NRC, SOX, DoE, NERC CIP, TSA, Internal Audits, etc.), Cybersecurity Risk, Cybersecurity Policy, Cybersecurity Awareness, and Nth Party Risk Management and Assurance for all lines of business and service departments for both IT and OT landscapes. Ensure that Cybersecurity Governance, Risk, and Compliance service delivery aligns with the corporate IT strategy, including development of Cybersecurity operations standards, capacity planning, lifecycle management plans, solution selection, and partner management. Ensure scalability of Cybersecurity Governance, Risk, and Compliance capabilities, including hardware and software, to meet business needs and risk tolerances.
What you bring
cybersecurity
risk management
iso27001
cissp
leadership
bachelors
Department of Energy’s regulation 10 CFR 810 is required
Extensive relevant experience in Cybersecurity, Information Risk Management, Nth-Party Risk Management, Cybersecurity Policies/Procedures, and Cybersecurity Compliance/Audit
Ability and insight to know when critical decisions must be raised to senior level and/or business unit management quickly to ensure that the program remains on track
Bachelors degree and 10 years of relevant cybersecurity experience, including leadership experience
Broad knowledge of cybersecurity principles (e.g. access control, data protection, security architecture, infrastructure/application security design principles, policies) and privacy (i.e. GDPR)
Effective time management and multitasking skills
Masters in Information Security, Computer Science, Business, Engineering, or related fields
Demonstrated experience in delivering comprehensive solutions to complex security issues on a global scale
Demonstrated strong leadership and influence skills
Strong interpersonal communication skills, analytical abilities, detail focused, quality focused, and problem-solving skills, as well as broad knowledge of business functions, information technologies, and cybersecurity and compliance practice on a global level
Broad knowledge of IT and related control environments
Executive teamwork, facilitation, relationship building, and negotiation skills
Effective communication skills, including the ability to build relationships with technical and non-technical individuals
Experience evaluating security controls, conducting risks assessments, and providing guidance to platform architects/developers
Ability to maintain positive working relationships both as a leader and as a team member
Industry Cybersecurity certifications (e.g. CISSP, CEH, etc.…)
Demonstrated strong presentation skills with the ability to present to all levels of management and executive leadership
Working knowledge of cybersecurity and control frameworks (ISO27001, NIST, CobIT)
Strong analytical skills, problem solving skills, writing skills, attention to detail, and conceptual thinking, including the ability to work with technical and non-technical business owners
Experience in Electric or Gas Utility or Power Generation industry, and/or experience in manufacturing
A demonstrated ability to develop and maintain policy that integrates various cybersecurity, network and data protection technologies and controls into a cohesive solution that sufficiently mitigates risk
Confidence in leading diverse matrix teams independently, making decisions daily as it relates to the successful delivery of the program
Be able to identify, analyze, and address problems in order to resolve issues in ways that minimize negative impact and risk to the company
Ability to communicate effectively with both technical and non-technical individuals
Experience leading a Cybersecurity Governance, Risk, and Compliance organization
Benefits
Hybrid flexible – roles that are a mix of remote work and onsite work, but the onsite requirements have greater flexibility. (i.e. 5-8 days a month vs. set days each week).
Onsite – roles where employees are expected to be onsite daily.
Hybrid fixed – roles that are a mix of remote work and onsite work fixed days each week
Training + Development
Information not given or found
Interview process
Information not given or found
Visa Sponsorship
pseg is not offering visa sponsorship for this position.
Security clearance
pre-employment drug and alcohol testing, random testing, and post-incident testing required.
Ranked among the top 500 publicly traded companies globally.
$11B Revenue
Annual Revenue
Generated approximately $11 billion in annual revenue.
$50B Assets
Total Assets
Held over $50 billion in total assets.
5.4M Customers
Electric & Gas Customers
Serves approximately 5.4 million electric and gas customers across New Jersey and Long Island.
Founded in 1903 from the merger of hundreds of gas, electric and transit firms, the company has grown into a major energy holding headquartered in Newark, New Jersey.
As a public energy company, it operates regulated utilities in New Jersey via PSE&G and manages electric distribution on Long Island under PSEG Long Island.
Through PSEG Power—its subsidiary—it owns and operates nuclear and fossil generation assets across the Mid‑Atlantic and Northeast.
Typical projects include infrastructure modernization of transmission and distribution systems, deployment of smart meters, and large‑scale grid investments under multi‑billion‑dollar capital plans.
The company seeks federal license extensions for its New Jersey nuclear reactors to operate into the 2050s and beyond.
Culture + Values
Safety is our top priority.
Integrity drives our actions and decisions.
Accountability for results and performance.
Collaboration across teams and stakeholders.
Continuous improvement and innovation.
Customer-focused and responsive to their needs.
Respect for people, the environment, and the communities we serve.
Environment + Sustainability
By 2030
Net Zero Commitment
Target to achieve net zero emissions through a combination of emission reductions and offsets.
By 2030
Emissions Reduction Target
Aims to reduce greenhouse gas emissions by 50% compared to baseline levels.
Reducing carbon emissions through cleaner energy solutions.
Investing in renewable energy projects like solar and offshore wind.
Implementing energy efficiency programs to reduce consumption.
Supporting electric vehicle infrastructure and clean transportation.
Inclusion & Diversity
25%
Women in Leadership
Representation of women in senior leadership roles.
Committed to fostering an inclusive and diverse workforce.
Set strategic goals for increasing underrepresented groups in leadership and technical roles.
Created programs and partnerships for workforce diversity, including internships and mentorship opportunities.
Received multiple recognitions for diversity and inclusion initiatives.
Hey there! Before you dive into all the good stuff on our site, let’s talk cookies—the digital kind. We use these little helpers to give you the best experience we can, remember your preferences, and even suggest things you might love. But don’t worry, we only use them with your permission and handle them with care.