drjobs ICSOT-Cybersecurity EngineerNetwork Security Engineer - Memphis

ICSOT-Cybersecurity EngineerNetwork Security Engineer - Memphis

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Memphis, TN - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing improving and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g. insider and external threats intentional and accidental).

This positions responsibilities include the audit of ICS/OT environments and performing risk/vulnerability assessments. This role also includes developing client specific cybersecurity roadmaps that prioritize the remediation of cyber threats based on the likelihood of occurrence and magnitude of cost/consequence of a security incident. This position will create mitigation plans for clients to remediate vulnerabilities and will provide support during the remediation efforts. ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers assist in reviewing and developing Industrial Cybersecurity programs security policies and plans and provide guidance to help clients improve their existing OT security programs.

ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers demonstrate:
High integrity
A willingness to go beyond the ordinary to meet and exceed client expectations
A desire for continual challenge and development
Excellent written and verbal communication skills

Reports to:Cybersecurity Lead

JOB QUALIFICATIONS

Responsibilities for this job include but are not limited to:

  • Taking inventory of clients hardware & software assets and assessing those assets for security vulnerabilities obsolescence and other risks
  • Reviewing network architectures and determining if good practices are being followed (e.g. the zones & conduits concept proper network segmentation use of Industrial DMZ etc.; and providing recommendations to comply with applicable cybersecurity framework
  • Reviewing security products utilized (e.g. firewalls IDS IPS) and determining if they are configured properly
  • Deploying network infrastructure devices (e.g. switches routers etc. security appliances (e.g. firewalls IDS etc. and virtualization solutions
  • Reviewing security policies plans and procedures; assessing network monitoring capabilities; analyzing system logs security events and packet captures to identify security threats; and providing recommendations to comply with applicable cybersecurity framework
  • Reviewing administrative technical and physical security controls and providing recommendations to mitigate the identified security risks
  • Performing vulnerability and risk assessments within manufacturing and critical infrastructure environments to identify security risks and threats (e.g. unsecure remote access points suspicious remote connections unauthorized devices on the network etc. and providing recommendation to remediate the identified issues
  • Creating detailed diagrams (e.g. network cabling server rack logical architecture etc. procedures and plans (e.g. implementation SAT mitigation etc. as needed to support projects
  • Travel to the clients site as required

Required Experience

  • Certified Information Systems Security Professional (CISSP)
  • Degree in Engineering (Electrical Mechanical Chemical or similar) Computer Science or similar scientific / technical field
  • Strong understanding of cybersecurity frameworks for ICS/OT environments (ISA99/IEC 62443 NIST SP 80082 CIS etc.
  • Strong understanding of OT network communication protocols (e.g. Ethernet/IP CIP Modbus OPC etc. and industrial networking topologies (e.g. ring star etc.
  • A minimum of three 3 years hands on experience assessing designing and implementing ICS/OT network architectures
  • Demonstrated technical skills to analyze design and deploy complex Ethernet/IP architectures and communication technologies

Ideal Experience

  • Certified SCADA Security Architect (CSSA)
  • GIAC certifications (e.g. GICSP GRID Critical Infrastructure Protection)
  • ISA/IEC 62443 Cybersecurity Certificates
  • Networking certifications (e.g. CCNA CCNP JNCIPENT etc.
  • Cybersecurity certification (e.g. CEH CISA CISM CCSP etc.
  • Understanding of MITRE ATT&CKS for ICS or NERC CIP frameworks
  • Understanding of general cybersecurity frameworks (ISO IEC 27001/27002 ISO 15408 NIST Cybersecurity Framework (CSF) NIST SP80053
  • A working knowledge of industrial control systems (e.g. DCS PLCs SCADA etc.
  • Ability to perform vulnerability / penetration testing in ICS/OT environment and/or threat hunting
  • Prior experience Control System Engineer or SCADA Engineer working in manufacturing environments or power generation facilities
  • Certified professional engineer
  • Industry experience in Food and Beverage Chemical Pharma Semiconductor Water & Wastewater Refining Pulp and Paper Oil/Gas Pipeline Power Generation Electrical Transmission & Distribution Material Handling and/or Packaging

Required Experience:

Senior IC

Employment Type

Full-Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.