ASRC Energy Services, LLC · 18 hours ago
Senior Cybersecurity Analyst – GRC & Network Security
ASRC Energy Services, LLC is seeking a Senior Cybersecurity Analyst focused on Governance, Risk, and Compliance (GRC) and Operational Technology (OT) network security. The role involves developing compliance frameworks, managing vulnerabilities, and collaborating with IT and business partners to enhance cybersecurity strategies.
ConsultingEnergyOil and Gas
Responsibilities
Develop, maintain, and refine comprehensive compliance frameworks including System Security Plans (SSP), Technology Control Plans (TCP), and Plans of Action and Milestones (POAM)
Ensure adherence to federal and industry regulations such as NIST 800-171, CMMC, DFARS, and other relevant standards
Lead regular audits, assessments, and risk evaluations to map cybersecurity risks and develop actionable remediation strategies
Lead OT vulnerability management activities, including asset discovery, risk-based vulnerability identification, prioritization, and remediation planning tailored to operational constraints and safety requirements
Establish and enforce OT-specific network segmentation, access control, and monitoring strategies aligned with Purdue Model and zero-trust principles where operationally feasible
Develop and maintain OT security standards, procedures, and documentation aligned with IEC 62443, NIST, and industry best practices
Collaborate with IT and business partners to assess risk exposures, define security requirements, and align cybersecurity strategies with organizational goals
Prepare detailed reports and dashboards for senior management, providing insights into risk posture, compliance status, and recommendations for enhancement
Facilitate the development, adoption, and enforcement of cybersecurity policies and procedures, ensuring company-wide adherence and awareness
Develop, maintain, and govern a new OT-focused third-party risk register that captures vendor access, system dependencies, and operational impact across industrial and control system environments
Partner with procurement, legal, engineering, and operations teams to ensure OT vendor contracts, onboarding, and renewals include appropriate cybersecurity and access control requirements
Support ongoing monitoring and periodic reassessment of OT third-party risks, incorporating changes in vendor access, system architecture, threat intelligence, and regulatory expectations
Qualification
Required
Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or another related field
Five (5) years of professional experience in cybersecurity with a strong focus on GRC and network security operations
Solid understanding of industry standards and regulatory requirements including NIST, CMMC, DFARS, among others
Demonstrated expertise in developing and managing cybersecurity compliance frameworks and conducting thorough risk assessments
Proficiency in the overall Microsoft 365 suite of products
Preferred
Professional certifications such as CISSP, CEH, CCTIP, GCIH, CTIA, CISA, PCI, CISM, CCNA or equivalent are highly preferred
Experience working with and in, and providing logistics for, remote Alaskan industrial environments preferred
Company
ASRC Energy Services, LLC
ASRC Energy is the largest service provider on the North Slope. We are the Arctic's technology service provider.
H1B Sponsorship
ASRC Energy Services, LLC has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (1)
2020 (1)
Funding
Current Stage
Late StageLeadership Team
Recent News
Company data provided by crunchbase