Job Summary
Senior Manager Cyber Risk & Governance leads Alliant Energy's cybersecurity governance, cyber risk management, vendor cyber risk, and security awareness programs, while representing the cyber component of the enterprise privacy program. This role contributes to the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) 2.0 Govern' function, driving outcomes and metrics that strengthen organizational resilience. The position chairs cybersecurity councils and ensures alignment with enterprise risk management strategies and regulatory requirements. It is accountable for policy and standards development, cyber risk quantification, financial impact modeling, and leading governance initiatives and internal change management. This role partners closely with business leaders to embed cybersecurity governance into strategic decision-making and fosters a culture of risk awareness across the enterprise.
What you will do
- Performs all leadership duties including, but not limited to, hiring and rewarding talent, fostering an inclusive and safe workplace, partnering with employees to set clear goals and expectations, providing timely and specific feedback on performance, developing improvement plans to address performance gaps, addressing conflict with care and respect, identifying opportunities for growth and development, embracing and modeling a mindset of lifelong learning, ensuring employees report to work fit for duty, adhering to our Code of Conduct and modeling Alliant Energy's Core Values at all times.
-
Develops and maintains cybersecurity policies, standards, and governance frameworks, ensuring compliance with regulatory frameworks and internal governance requirements.
-
Responsible for overseeing governance, risk, and compliance processes, including maintaining the cybersecurity risk register and influencing system design to meet program objectives.
-
Defines and monitors KRIs and KPIs for cyber governance and risk programs.
-
Represents cybersecurity in enterprise privacy initiatives to ensure alignment with governance and regulatory requirements.
-
Manages third-party/vendor cybersecurity risk and drive security awareness strategies to reduce human risk.
-
Leads integration of IT and OT cybersecurity governance frameworks, ensuring alignment with operational technology risk management and regulatory standards.
-
Collaborates with Finance and ERM to quantify financial impacts of cyber risks and integrate cost modeling into risk scoring and executive reporting.
-
Establishes governance for emerging technologies, including AI/ML, ensuring compliance with enterprise risk appetite and regulatory guidance.
-
Leads collaboration with the Cyber Transformation Office to support change management strategies, stakeholder engagement, and adoption of governance frameworks.
-
Engages in other duties as needed that support Alliant Energy's Values and helps deliver on our Purpose to serve customers and build stronger communities.
Education Requirements
-
Master's or Advanced Degree Computer Science, Engineering, Information Technology, STEM or related field Preferred.
Required Experience
-
10 year's experience in cyber security governance, risk management, or related leadership roles.
-
Experience with GRC Platforms, vendor risk tools, and privacy management systems.
Certifications
-
CISSP, CISM, or CIPP/US Required.
Knowledge, Skills, and Abilities
-
Demonstrates leadership and strategic planning skills, leveraging stakeholder influence, executive communication, and management expertise to drive alignment and foster adoption of governance frameworks.
-
Ability to develop and implement cybersecurity policies, standards, and governance frameworks, ensuring compliance with enterprise risk, privacy, and regulatory requirements.
-
Understands risk quantification methods and demonstrates ability to design and monitor key risk and performance indicators.
-
Ability to apply financial modeling and cost-benefit analysis to inform risk-based decisions.
-
Ability to work effectively in a collaborative and inclusive work environment.
Key Skills
-
Access Control Management Application Security Cybersecurity Risk Management Identity Access Management Incident Management Information Security Risk Management IT Security Management Network Security Management NIST Cyber Security Framework (CSF) Security Governance Threat Modeling Vulnerability Management
Alliant Energy Corporation
4902 N Biltmore Ln
Madison
Wisconsin United States
www.alliantenergy.com


