ICS/OT-Cybersecurity Engineer/Network Security Engineer - Memphis Job at Confidential, Memphis, TN

TzBRTHV2MUU3ZW90MGpwQ1Y3UHp0RDFSTUE9PQ==
  • Confidential
  • Memphis, TN

Job Description



ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing, improving, and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g., insider and external threats, intentional and accidental).

This position’s responsibilities include the audit of ICS/OT environments and performing risk/vulnerability assessments. This role also includes developing client specific cybersecurity roadmaps that prioritize the remediation of cyber threats, based on the likelihood of occurrence and magnitude of cost/consequence of a security incident. This position will create mitigation plans for clients to remediate vulnerabilities and will provide support during the remediation efforts. ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers assist in reviewing and developing Industrial Cybersecurity programs, security policies, and plans, and provide guidance to help clients improve their existing OT security programs.

ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers demonstrate:
• High integrity
• A willingness to go beyond the ordinary to meet and exceed client expectations
• A desire for continual challenge and development
• Excellent written and verbal communication skills

Reports to:  Cybersecurity Lead

JOB QUALIFICATIONS

Responsibilities for this job include but are not limited to:

  • Taking inventory of client’s hardware & software assets and assessing those assets for security vulnerabilities, obsolescence, and other risks
  • Reviewing network architectures and determining if good practices are being followed (e.g., the “zones & conduits” concept, proper network segmentation, use of Industrial DMZ, etc.); and providing recommendations to comply with applicable cybersecurity framework
  • Reviewing security products utilized (e.g., firewalls, IDS, IPS) and determining if they are configured properly
  • Deploying network infrastructure devices (e.g., switches, routers, etc.), security appliances (e.g., firewalls, IDS, etc.), and virtualization solutions
  • Reviewing security policies, plans, and procedures; assessing network monitoring capabilities; analyzing system logs, security events, and packet captures to identify security threats; and providing recommendations to comply with applicable cybersecurity framework
  • Reviewing administrative, technical, and physical security controls and providing recommendations to mitigate the identified security risks
  • Performing vulnerability and risk assessments within manufacturing and critical infrastructure environments to identify security risks and threats (e.g., unsecure remote access points, suspicious remote connections, unauthorized devices on the network, etc.) and providing recommendation to remediate the identified issues
  • Creating detailed diagrams (e.g., network, cabling, server, rack, logical architecture, etc.), procedures, and plans (e.g., implementation, SAT, mitigation, etc.) as needed to support projects
  • Travel to the client’s site as required

Required Experience

  • Certified Information Systems Security Professional (CISSP)
  • Degree in Engineering (Electrical, Mechanical, Chemical, or similar), Computer Science, or similar scientific / technical field
  • Strong understanding of cybersecurity frameworks for ICS/OT environments (ISA-99/IEC 62443, NIST SP 800-82, CIS, etc.)
  • Strong understanding of OT network communication protocols (e.g., Ethernet/IP, CIP, Modbus, OPC, etc.) and industrial networking topologies (e.g., ring, star, etc.)
  • A minimum of three (3) years “hands on” experience assessing, designing, and implementing ICS/OT network architectures
  • Demonstrated technical skills to analyze, design, and deploy complex Ethernet/IP architectures and communication technologies

Ideal Experience

  • Certified SCADA Security Architect (CSSA)
  • GIAC certifications (e.g., GICSP, GRID, Critical Infrastructure Protection)
  • ISA/IEC 62443 Cybersecurity Certificates
  • Networking certifications (e.g., CCNA, CCNP, JNCIP-ENT, etc.)
  • Cybersecurity certification (e.g., CEH, CISA, CISM, CCSP, etc.)
  • Understanding of MITRE ATT&CKS for ICS or NERC CIP frameworks
  • Understanding of general cybersecurity frameworks (ISO IEC 27001/27002, ISO 15408, NIST Cybersecurity Framework (CSF), NIST SP800-53)
  • A working knowledge of industrial control systems (e.g., DCS, PLCs, SCADA, etc.)
  • Ability to perform vulnerability / penetration testing in ICS/OT environment, and/or threat hunting
  • Prior experience Control System Engineer or SCADA Engineer working in manufacturing environments or power generation facilities
  • Certified professional engineer
  • Industry experience in Food and Beverage, Chemical, Pharma, Semiconductor, Water & Wastewater, Refining, Pulp and Paper, Oil/Gas Pipeline, Power Generation, Electrical Transmission & Distribution, Material Handling, and/or Packaging

Job Tags

Full time, Remote work,

Similar Jobs

Coastline Academy

Operations Manager Job at Coastline Academy

 ...to rid the world of car crashes by teaching students to be safe and confident drivers for life. About This Role: The Operations Manager is responsible for overseeing regional operations, ensuring compliance, and supporting driving instructors within the state.... 

Sagility

Work from Home: Customer Service Representative (Healthcare) Job at Sagility

 ...Work from Home: Customer Service Representative (Healthcare) Job Code : REQ-003598 ****@*****.*** New Mexico Share: About Sagility Sagility combines industry-leading technology and transformation-driven BPM services with decades of healthcare domain expertise to... 

Beacon Talent

Telemedicine Physician Job at Beacon Talent

 ...Job Description Job Description Full Time Telemedicine Doctor Our client is a rapidly growing telemedicine platform seeking MD/DO's with multiple state licenses to join on either a full-time or pay-per-visit basis. The ideal candidate will have board licensure in... 

UC San Diego

(PA) Per Diem Sr. Physician Assistant - Infusion - MOP135642 Job at UC San Diego

 ...and community contributions.Under the direction of the Medical Director of the Moores Cancer Center Infusion Center, the Sr. Physician Assistant (PA) will function as a provider of patient care for patients receiving treatment in the Infusion Center. The PA will provide... 

OTA

Master Carpenter & General Carpenter Job at OTA

 ...Salary: Position: Carpenter Location: Baltimore Region Contract Type: Full-time / Contract Certifications Required: OSHA 10,...  ...station amenities and perform graffiti abatement - Repair flooring, windows, roofing, gutters, and more - Assist with signage installation...