×
Register Here to Apply for Jobs or Post Jobs. X

Analyst II, Information & Cyber Security

Job in Chicago, Cook County, Illinois, 60601, USA
Listing for: Invenergy
Full Time position
Listed on 2026-07-23
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below

Analyst II, Information and Cyber Security

Invenergy is North America's largest privately held developer, owner, and operator of power infrastructure. With 25 years of trusted execution, we deliver reliable, affordable energy through a diverse portfolio that includes natural gas, solar, land-based wind, energy storage, transmission, and domestic manufacturing. Headquartered in Chicago, we develop, own, and operate large scale projects that power communities and support the energy future.

Position Overview:

The Analyst II, Information and Cyber Security supports the execution and continuous improvement of enterprise cybersecurity governance, risk, and compliance (GRC) programs. This role focuses on security controls, policy governance, and regulatory compliance, while also contributing to broader cybersecurity initiatives including risk management, third-party assessments, audit support, and security program operations. This position provides exposure across multiple cybersecurity domains and offers opportunities to contribute to a growing and evolving cybersecurity program aligned with industry and regulatory best practices.

Responsibilities:

  • Support the development, maintenance, and enforcement of security policies, standards, and procedures across the enterprise
  • Maintain and enhance the security controls catalog, aligning to frameworks such as CIS Controls, NERC CIP, NIST CSF, ISO 27001, and other industry best practice frameworks
  • Perform control assessments to evaluate design and operating effectiveness; identify gaps and track remediation efforts
  • Develop and maintain dashboards, metrics, and reporting to measure control performance and program maturity
  • Support NERC CIP compliance activities, including evidence collection, audit coordination, remediation tracking, and follow-up activities
  • Assist in commissioning and compliance validation efforts, including documentation standardization and process improvement initiatives
  • Partner with IT and business stakeholders to communicate security requirements and drive compliance across the organization
  • Contribute to third-party risk management activities, including vendor security assessments, due diligence reviews, and risk documentation
  • Assist in responding to customer security questionnaires, audits, attestations, and evidence requests
  • Support contract reviews by identifying cybersecurity requirements and potential risk exposures
  • Collaborate with enterprise risk management efforts, including risk identification, documentation, tracking, and remediation coordination
  • Track and report on cybersecurity KPIs and program metrics, identifying trends and opportunities for continuous improvement
  • Act as a liaison for cybersecurity-related requests, collaborating with teams including Legal, Information Governance, Security Operations, Infrastructure, and Security Architecture
  • Participate in cross-functional cybersecurity initiatives and provide operational support across cybersecurity programs as needed
  • Support incident response activities and post-incident reviews in a coordination and documentation role, as required

Minimum Qualifications:

  • Bachelor's degree in Cybersecurity, Information Technology, Information Systems, or a related field (or equivalent experience)
  • 2+ years of professional experience in cybersecurity, IT security, or GRC-related roles
  • Foundational knowledge of security frameworks (e.g., NIST SP 800-53, ISO 27001, CIS Controls)
  • Experience supporting audits, compliance programs, or control assessments
  • Strong analytical and problem-solving skills with attention to detail
  • Ability to manage multiple priorities and drive tasks to completion
  • Effective communication skills, with the ability to engage both technical and non-technical stakeholders
  • Self-starter with a proactive mindset and the ability to work independently and collaboratively across teams

Preferred Qualifications:

  • Experience with regulatory environments such as NERC CIP or other critical infrastructure standards
  • Experience with GRC platforms or workflow tools (e.g., Service Now, Archer, Smartsheet)
  • Background in consulting, advisory, or IT audit with a focus on cybersecurity or compliance
  • Experience supporting…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary