Cyber Security IT Engineer
xcelenergy · Monticello, MN, 55362 · United States · Hybrid
Pay: USD 110,000 – 145,000 a year
Posted Oct 5, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Xcel Energy (NASDAQ: XEL) is a leading energy provider and Fortune 500 company, dedicated to serving millions of electricity and natural gas customers across eight states: Minnesota, Colorado, Wisconsin, Michigan, North Dakota, South Dakota, New Mexico and Texas. We make energy work better for our customers, helping them thrive every day. That means always raising the bar - delivering better service and providing more reliable, resilient, and sustainable energy. Xcel Energy is a place where you’ll have opportunities to grow, expand your skills, and help lead the clean energy transition. We offer meaningful rewards, recognition, and support to help you build your career and make an impact - both on the job and beyond. Most importantly, it means you’ll be joining a company that knows employees are the driving force behind its success and is committed to helping you be your best.
Xcel Energy supports a hybrid work model to enable collaboration and flexibility. Many roles are expected to work onsite three days per week (Tuesday–Thursday); however, work location expectations vary based on role, team, and business needs.
Position Summary
This role will serve as the Cyber Security Lead for the Monticello Nuclear Generating Plant and is the subject matter expert for work affecting Critical Digital Assets (CDAs) at the nuclear plant, engaging directly with plant stakeholders to ensure that cyber security controls are correctly implemented within process. This position is responsible for leading Cyber Security Assessment Team meetings and ensuring completion of critical digital asset determinations and assessments. The Cyber Security Lead interfaces with various site departments to maintain regulatory compliance with Nuclear Cyber Security Program requirements and supports NRC inspections, audits, self-assessments, and benchmarking activities.
A nuclear badging and elevated security screening is required for this role and hiring will be contingent on passing this security screen.
Essential Responsibilities
Nuclear Cyber Security Program Management - Manage activities associated with Critical Digital Asset identification, classification, assessment, and documentation. Evaluate new and modified systems for potential cyber security impacts. Ensure proper implementation of defensive architecture and security controls. Evaluate potential vulnerabilities and consequences from an attack. Evaluate the effectiveness of existing cyber security controls.
Vulnerability and Risk Management - Review vendor notifications, advisories, and cyber vulnerability information. Evaluate cybersecurity implications of software updates, patches, and system configuration changes. Coordinate vulnerability mitigation activities. Ensure cyber risks are appropriately documented and managed.
Subject Matter Expertise: Continuously stay current on, and apply, technical industry knowledge. Support NRC inspections, audits, self-assessments, and…