OT Security Engineer

Stott and May
New York
Full-time

Job description

As an Operational Technology (OT) Security Engineer, you will be engaging directly with enterprise and regional OT operators and infrastructure resources to support critical infrastructure operations.

You will be instrumental in designing and implementing OT technologies with a security-by-design methodology. You will develop solutions to meet emerging business requirements, while optimizing the existing operational technology across the enterprise.

You will work with a highly dynamic team supporting critical infrastructure utilities on an international stage. Extensive Operational Technology (OT) experience is a REQUIREMENT.

Candidates must have a demonstrated history in OT security design frameworks, architectures, and standards. Candidates should be well-versed in understanding frameworks such as the Purdue Enterprise Reference Architecture (PERA), IEC 62443, NIST 800-82, NERC CIP, TSA Pipeline, API 1164, and FERC Dam Safety.

Responsibilities :

  • Ensure OT systems and solutions adhere to industry security standards based on NERC-CIP, ISA99 / IEC 62443, NIST Special Publications and compliance requirements.
  • Support the design and implementation of OT solutions in partnership with OT Infrastructure team and regional OT operators and system owners.
  • Support business-led initiatives to provide cybersecurity, compliance and risk mitigation recommendations throughout project lifecycles.
  • Integrate cybersecurity requirements within production engineering and operational work processes, tools, standards, and procedures.
  • Document and define systems security plans for new and existing systems supporting OT environments.

Requirements :

  • Solid understanding of Industrial Control Systems.
  • Demonstrated history supporting SCADA, ICS, & EMS
  • Solid understanding of Cybersecurity.
  • Effective written and verbal communication skills that demonstrate fluency in the languages used by OT and IT.
  • Cybersecurity incident response and root cause analysis.
  • Strong problem-solving, data analysis and data correlation skills
  • Swift decision making and judgement abilities
  • Well-versed in security rules, regulations and standards

Preferred Qualifications :

Education : Bachelor's degree in Computer Science, Electrical / Electronic Engineering, Information Technology, or another related field;

or an associate degree plus five (5) years of related IT experience

  • Minimum of five (5) years of experience with ICS / OT Engineering and IT experience.
  • Experience with ICS / OT cybersecurity and intricate knowledge of industry standards : NERC-CIP, ISA99 / IEC 62443, NIST CSF.
  • Certifications are STRONGLY preferred : Global Industrial Cyber Security Professional (GICSP), GIAC Critical Infrastructure Protection (GCIP), Certified Information Systems Security Professional (CISSP).
  • 30+ days ago
Related jobs
Stott and May
New York, New York

As an Operational Technology (OT) Security Engineer, you will be engaging directly with enterprise and regional OT operators and infrastructure resources to support critical infrastructure operations. Support the design and implementation of OT solutions in partnership with OT Infrastructure team an...

Promoted
Sumitomo Mitsui Banking Corporation (SMBC)
New York, New York

SMBC Group is a top-tier global financial group.Headquartered in Tokyo and with a 400-year history, SMBC Group offers a diverse range of financial services, including banking, leasing, securities, credit cards, and consumer finance.The Group has more than 130 offices and 80,000 employees worldwide i...

Promoted
Genesis10
New York, New York

Genesis10 is currently seeking a Network Engineer with our client in the financial industry located in New York, NY. Consult on complex initiatives with broad impact and large-scale planning for Network Engineering. Review and analyze complex multi-faceted, larger scale or longer-term Network Engine...

Promoted
Hospital for Special Surgery
New York, New York

Configures, installs and tests device connections to the network, monitors and controls network traffic and access security. Prepare and maintain complete records and diagrams of network configuration, cable routing, access points, network and communication hardware and connected devices. Juniper an...

Promoted
Palo Alto Networks
New York, New York
Remote

Design, build, and maintain network scanning software to run on customers’ networks, as well as the infrastructure required to deliver and update it. Proficient knowledge in network architectures; understands subnetting and routing and how VLANs work and affect network scanning. At Palo Alto Network...

Promoted
Mondrian Alpha
New York, New York

My client, a leading multi strategy hedge fund, is seeking an elite systems engineer to join their New York office. You will serve as an escalation point to resolve problems on Windows and Linux servers, VMware hosts, and end-user systems. ...

Promoted
Spruce Technology, Inc.
New York, New York

Title: Cybersecurity Engineer with strong 10+yrs exp Cisco, AD, virtualization. Cybersecurity Incident Response Plan/Program. ...

Promoted
Winston Resources LLC
New York, New York

The Information Security Analyst is a hands-on technical role, responsible for incident response and security systems. The Senior Information Security Analyst is responsible for the evaluation, design, implementation, and administration of security systems, and secure configuration of on-premises an...

Promoted
Protingent
New York, New York

Title: Lead Security Systems Engineer. Looking for someone with cybersecurity engineering experience from application side. As a Cyber Security Lead Engineer, you will play a vital role in creating Application Security Scanning & Penetration Testing capabilities, determining required IT business sol...

Promoted
Metropolitan Jewish Health System
New York, New York

The Senior Information Security Analyst will have strong technical experience and a risk evaluation mindset in all areas of security operations including, event triage, incident response, vulnerability management, penetration testing, and event management (SIEM) is a key part of our information secu...