Senior Security Analyst (Security Compliance)
About City Electric Supply
CES is a family-owned electrical wholesaler with the benefits of a worldwide service network and the personal service of a neighborhood store. Our "customer service first" core value has allowed us to grow continually for over 65 years while keeping our founding principle of empowering people to make local business decisions. CES now employs more than 7,400 people at over 1,000 branches world-wide of which there are over 500 branches across North America. Our vision is to add 30-35 branches a year, while staying true to our Company values.
Summary:
City Electric Supply is looking for a Senior Security Analyst to join our team and lead security compliance, awareness, and internal communication initiatives. This is a senior-level, highly visible role requiring a mix of technical understanding, project management, and cross-departmental collaboration. The ideal candidate will be organized, creative, and capable of building bridges between security, IT, and business teams, ensuring security is embedded across all domains.
Essential Job Functions:
- Lead internal security compliance programs, including training initiatives and internal phishing campaigns.
- Develop and manage security awareness communications across the organization (videos, intranet content, newsletters, etc.).
- Serve as the primary liaison between security and other business units, ensuring security considerations are included in projects, server builds, and product deployments.
- Research emerging security trends, threats, and technologies, including cloud and AI, and provide actionable insights to the team.
- Manage multiple security initiatives independently, ensuring deadlines and quality standards are met.
- Respond to security incidents by coordinating communications and recommending preventive measures.
- Track and report program effectiveness, compliance metrics, and stakeholder engagement.
- Collaborate with technical teams to understand cloud and enterprise security implications, providing guidance without necessarily performing hands-on administration.
Education/Experience:
- Advanced degree in Computer Science, Information Security, or a related technical/analytical field, or equivalent professional experience preferred.
- Proven experience designing, implementing, and managing enterprise security compliance programs, including security training initiatives and internal phishing campaigns.
- Experience managing cross-departmental security initiatives and building relationships across multiple business units.
- Experience with cloud security concepts and third-party risk management systems (e.g., ISMS, TPRM) preferred.
- Experience in wholesale, manufacturing, or electrical products industries a plus.
- Track record of creating engaging educational content and awareness programs that improve security posture and employee participation.
Competencies:
- Strong organizational and project management skills; capable of managing multiple initiatives independently.
- Excellent interpersonal and communication skills, with the ability to translate technical security concepts for non-technical audiences.
- Creative mindset for developing engaging educational content and promoting security awareness.
- Ability to research and analyze emerging threats, tools, and technologies and provide actionable recommendations.
- Self-motivated and proactive in driving security initiatives and compliance programs.
Interview Process:
- 30-minute phone screen with the Talent Acquisition Partner
- 1-hour MS Teams video interview with the Hiring Manager
- 1-hour MS Teams technical video interview with the Lead/Senior Security Engineer and Analyst
Salary:
$115,000 - $125,000 a year