What are the responsibilities and job description for the Information Security Engineer position at AEP Hawaii?
AEP Hawaii is hiring a hybrid Cloud Information Security Engineer to join our enterprise client's information security team.
Cloud Information Security Engineer (Azure & AWS)
This role supports enterprise-level security operations, with a focus on Azure Cloud and AWS Cloud security, compliance, and risk management. This position requires expertise in developing, implementing, and maintaining information security frameworks, policies, and controls, with specialized experience in FedRAMP, CMMC, and other government compliance frameworks. Key responsibilities include mentoring team members, assessing security risks, and ensuring regulatory adherence.
Skills & Experience :
Analytical skills and the ability to communicate complex security concepts to diverse stakeholders.
Proven ability to work autonomously in a complex organizational environment.
10 years of experience in information security, IT consulting, or related fields, with significant experience in FedRAMP and CMMC compliance initiatives.
Risk Assessment & Compliance : Conduct security risk assessments for IT / OT projects and recommend mitigating controls, ensuring compliance with frameworks such as Sarbanes-Oxley (SOX), FedRAMP, CMMC, NIST, ISO 27000, and OWASP.
Policy Development : Support the development, review, and implementation of IT policies, procedures, and standards based on CobiT and other frameworks.
Program Management : Assist in managing programs for privacy, security awareness, vulnerability remediation, digital forensics, and compliance, with a focus on aligning with FedRAMP and CMMC standards.
Incident Response & Recovery : Participate in IT disaster recovery planning and serve on the Computer Security Incident Response Team (CSIRT).
Consultation : Provide technical expertise on secure integration of smart grid technologies, cloud services, and government compliance requirements.
Key Knowledge Areas :
IT risk management, cryptography, IDS / IPS, and cloud security architecture.
Compliance frameworks including FedRAMP, CMMC, SOX, NIST SP-800, ISO 27000, and OWASP.
Networking (TCP / IP, OSI model) and OT systems (SCADA, DCS).
Utility operations and secure integration of operational technologies.
Keep a pulse on the job market with advanced job matching technology.
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution.
Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right.
Surveys & Data Sets
What is the career path for a Information Security Engineer?
Sign up to receive alerts about other jobs on the Information Security Engineer career path by checking the boxes next to the positions that interest you.