Cybersecurity Analyst

$80,000 - $120,000/Yr

Mars Solutions Group

posted 3 months ago

Full-time - Mid Level
Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services

About the position

As the Operational Technology (OT) Cybersecurity subject matter expert (SME), you will serve as a crucial liaison between the IT Cybersecurity Team and various stakeholders within the Power Generation, Electrical, and Gas Distribution Asset Management sectors. Your primary responsibility will be to assist these business areas in maintaining the overall OT cybersecurity architecture, governance, policies, and processes. You will also contribute to the development of a roadmap for enterprise-level systems, ensuring that the cybersecurity measures are robust and effective. In this role, you will provide leadership in evaluating OT enterprise cybersecurity tools and vendors, conducting periodic assurance reviews to ensure that designs are implemented according to the agreed OT cybersecurity architecture. Your responsibilities will include maintaining a comprehensive view of the company's cybersecurity architecture to ensure that the OT domain is adequately covered by security capabilities. You will identify potential gaps that require remediation and collaborate with various business units to develop, implement, and maintain system architectures that align with OT cybersecurity policies and standards. This will involve creating actionable control lists, implementation guidelines, and determining the required levels of protection based on the criticality of the systems involved. Additionally, you will work closely with the Governance Risk and Compliance principal to evaluate exception requests related to OT security enterprise tools, metrics, and architecture. You will also be responsible for developing strategic plans and OT architecture/process requirements based on emerging risks and trends in the OT landscape. Your role will require you to collaborate with security team leads to leverage standardized OT-level security systems and tools across system architectures, ensuring that the selected tools meet the specific requirements of OT business entities while maximizing reusability. You will develop action plans for OT enterprise systems that align with the overall Enterprise Security and Compliance strategy and roadmap.

Responsibilities

  • Maintain a view of the company's overall cybersecurity architecture to ensure appropriate OT domain coverage of security capabilities and identify potential gaps for remediation.
  • Collaborate with business units to develop, implement, and maintain system architectures that support OT cybersecurity policies & standards using actionable control lists, implementation guidelines, and required levels of protection that align with enterprise level control framework.
  • Collaborate with the Governance Risk and Compliance principal to evaluate OT security enterprise tools exception requests, measures, metrics, architecture exception requests and develop & track mitigation plans for the resolution of risk.
  • Develop strategic plans and OT architecture/process requirements based on emerging OT risks and trends.
  • Collaborate with the security team leads to leverage standardized OT level security systems and tools across system architectures.
  • Advise OT domain specific business divisions and local business entities on OT cybersecurity vendor and tools selection, ensuring that tools address OT specific business entity requirements and maximize reusability.
  • Develop action (project) plans for OT enterprise systems, aligned to Enterprise Security and Compliance strategy and enterprise security roadmap.

Requirements

  • Bachelor's degree in computer science, computer engineering, software engineering, information technology, computer information systems, MIS, or engineering is preferred.
  • 2+ years OT cybersecurity architecture design and strategy experience.

Nice-to-haves

  • Certified Information System Security Professional (CISSP) certification
  • Global Industrial Cybersecurity Professional (GICSP) certification
  • Certified SCADA Security Architect (CSSA) certification
  • Experience in OT cybersecurity architecture design and strategy within the Power Generation, Gas and Electric business (specifically Industrial Control Systems)
  • Ability to lead and execute the OT cybersecurity strategy for OT business areas
  • In-depth knowledge of OT cybersecurity architecture that supports various components of NIST cybersecurity framework capabilities, such as cybersecurity engineering, vulnerability management, identity management, threat intel, prediction and detection, as well as response and recovery
  • Expertise with OT domain specific cybersecurity vendors and tools, security evaluation processes and assessing risk & developing mitigation plans.

Benefits

  • Incentive Bonus
  • Wellness Incentive
  • Medical, Dental, and Vision Insurance
  • 401(k) with a Company Match
  • Paid Vacation and Holidays
  • Paid Maternity and Paternity Leave
  • Tuition Reimbursement
  • Life Insurance Benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service