Job Description
Core responsibilities
- Threat prevention and response: Detect, prevent, and respond to cyber threats like malware or unauthorized access that could affect industrial operations.
- Security control management: Implement and maintain security controls for Process Control Domain (PCD) systems and related IT infrastructure.
- Risk and compliance management: Conduct risk assessments, manage deviations, and ensure compliance with cybersecurity management systems and procedures.
- Incident management: Handle PCD security incidents, which may include forensic analysis and remediation planning.
- System administration: Manage and administer PCD assets, including security patches, user access, and disaster recovery plans.
- Collaboration: Work with IT, engineering, and operations staff to balance security needs with operational requirements.
- Change management: Assist in the change management process by providing security assessments and approvals for changes to systems and networks.
Essential skills and knowledge
- Interested candidates should possess a Bachelor’s Degree with 5 years of experience.
- Expertise in industrial control systems (ICS) and OT security.
- Knowledge of cybersecurity technologies such as firewalls, endpoint security, and intrusion detection systems.
- Experience with security operations, including SIEM (Security Information and Event Management) systems.
- Understanding of relevant industry standards and regulations for industrial control systems.
- Strong analytical and problem-solving skills.
- Good communication and collaboration skills to work with different teams.
Common tasks:
- Regularly review and update security policies and procedures.
- Perform vulnerability assessments and manage the remediation of identified gaps.
- Manage user access privileges and revoke access for employees who no longer require it.
- Support the planning and execution of maintenance activities for PCD-IT equipment.
- Maintain asset registers and other documentation for audit purposes.