Capital Power Operations (USA) - Phoenix, AZ
posted about 2 months ago
Capital Power Corporation is seeking a Senior Industrial Network Engineer with a strong track record in designing, deploying, and monitoring industrial network communication systems and cyber security programs for our diverse fleet of Thermal and Renewable power generation facilities. This position is a permanent full-time role based in Phoenix, where you will contribute to our commitment to providing reliable and sustainable energy solutions in the power generation industry. As a Senior Industrial Network Engineer, you will be responsible for designing, supporting, monitoring, and maintaining industrial networks and security appliances across the fleet. This includes the integration of greenfield developments, brownfield acquisitions, and existing system modifications, utilizing industry best practices. You will also be involved in network drawing development and authentication as required per change management standards. In this role, you will develop and maintain industrial network security standards, procedures, and guidelines to align with industry best practices and applicable regulations. You will examine and offer insights on industrial network, SCADA, and control system designs to enhance availability and reduce the risk of cyber threats. Additionally, you will be responsible for firewall rule specifications and reviews, developing Cyber Risk Mitigation Plans for Industrial Control Systems, Operational Technology, and associated networks for Critical Infrastructure. You will participate in scope and contract negotiations to mitigate risk, manage OT patch management, and conduct vulnerability assessments, monitoring, and remediation based on risk. You will contribute to the development and ongoing maintenance of the compliance program for NERC Critical Infrastructure Protection (CIP) standards, managing, reviewing, and optimizing existing tools, alerts, and processes within the OT environment. This includes asset management software, SIEM & Logging, network monitoring, and vulnerability scanning tools & alerts, endpoint protection, and privileged access management. You will also contribute to the cybersecurity roadmap and long-term planning to meet and maintain our maturity goals, offering technical direction to contract and maintenance staff to facilitate the completion of ICS-related tasks. Building relationships with external vendors and industry partners will be essential to stay informed about emerging threats and new technologies, as well as contributing to organizational change initiatives through front-end input and post-implementation support.