Industrial Cybersecurity Consultant (OT/ICS) - Amarillo, TX / Kansas City, MO Transportation & Warehousing - Kansas City, MO at Geebo

Industrial Cybersecurity Consultant (OT/ICS) - Amarillo, TX / Kansas City, MO

Title:
Industrial Cybersecurity Consultant (OT/ICS) Job Type:
12
Months Contract Location:
Amarillo, TX (or) Kansas City, MO Description:
The Industrial Cybersecurity Consultant will be a treasured member of the client. Security & Risk Consulting practice. Security & Risk Consulting practice is a premier OT/ICS/SCADA cybersecurity consulting practice whose mission is to serve humanity by improving the safety, security, and reliability of the world's critical infrastructure improving risk management through resiliency, situational awareness, and preparedness. The Industrial Cybersecurity Consultant will be committed to will independently execute significant portions of projects addressing the security of Operational Technology (OT) systems consisting of Industrial Control Systems (ICS), Supervisory Control and Data Acquisition (SCADA), Programmable Logic Controllers (PLC), Discrete Process Control (DPC) systems, etc. The Industrial Cybersecurity Consultant supports the execution of projects consisting of a variety of assessments (e.g., GAP/Maturity, Vulnerability, Risk, Threat, Firewall, etc.); secure architecture, design, and implementation of OT networks, solution implementation, and operations, respond and recover related services (incident response planning, disaster recovery planning, business continuity planning). The Industrial Cybersecurity Consultant will support cybersecurity programs at client sites across North America utilizing the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF), NIST Risk Management Framework (RMF), NIST 800-53, NIST 800-82, DFARS, and other key industry best practices and standards. Job Duties:
Execute the planning, design, development, and implementation of technical controls, procedures, and policies associated with cybersecurity compliance and/or regulatory standards. Maintain the highest level of integrity, protecting the confidentiality and security of all clients and project information. Identify and diagnose operational issues and implement design alterations to address these issues. Conduct vulnerability assessments of OT networks for cybersecurity, risk management, and/or compliance purposes. Pursue, obtain, and maintain industry-recognized certifications related to cybersecurity such as ethical hacking, penetration testing, network engineering, Industrial Control System (ICS), Supervisory Control and Data Acquisition (SCADA), risk management, and others, as necessary. Resolve technical issues, analyze implications to the client's business, and be able to communicate them with applicable stakeholders within the business. Develop policies & procedures for secure process control network design, technical and design recommendations for implementing firewalls, unidirectional gateways, and other network security controls. Compiles technical documentation of network traffic as well as firewalls services/solutions, including explanations and diagrams. Work collaboratively with other groups and divisions. All other duties as assigned. Travel:
25% to 50% Requirements:
Bachelor's degree in a technical field, e.g., (Cybersecurity, Computer Science or Information Systems, Computer Engineering, Electrical Engineering, or another related technical field with appropriate experience). Minimum 4 years of experience in industrial cybersecurity. Additional applicable years of experience may be considered in lieu of degree requirements. Advanced knowledge of security principles and firm knowledge of cybersecurity technologies, as well as industry-recognized certifications. Experience with security engineering principles, various cybersecurity assessment methodologies, security control implementation, validation, and system life-cycle practices. Experience in the capabilities and/or configuration of cybersecurity controls, specifically those relating to:
Firewalls Identity and Access Control Authentication and authorization Anti-viranti-malware Patch management Network and system hardening, network architecture design, network data flow, network switch configuration (IOS and NXOS, SNMP Traps configuration, IP IGMP Snooping) System Integration System Administration, to include MS Windows Server 2016, MS AD, MS IIS, SSL Integration, MS SQL Server, Powershell) Test Engineering, to include Developing and Documenting Test Procedures, Performing component level testing, Performing system-wide testing, and Software Quality Assurance Testing Advanced knowledge of networks and control systems utilized by Federal, Military, Defense; etc., is preferred Strong written and oral communication skills Strong analytical and critical thinking skills Ability to operate under pressure and under tight deadlines, to operate onsite within industrial, corporate, and government work settings Demonstrate an understanding of business principles and operational security practices specific to engineering and/or security consulting Knowledge and/or experience with legacy and modern computer networking and telecommunications Experience with physical cabling for network communications and control system input/output Strong technical writing skills Ability to develop and maintain strong relationships with clients Ability to present complex technical issues and their impact in an easy-to-understand manner Ability to work remote on the client site Knowledge and experience with corporate policies and procedures Knowledge and experience with NIST Risk Management Framework; NIST 800-53; DFARS; NIST Cybersecurity Framework; NIST SP800-82; CMMC highly desired Travel for site work is estimated to average 25-50% annually The Ideal Candidate will also have the following preferred skills:
Soft skills Tenacious Problem solving Unselfish collaborator Intellectual curiosity Dedicated to continuous improvement Grit Consulting background PLC Configuration PLC Ladder Logic DoD and/or DoE Security clearances, or the ability to obtain them quickly Relevant industry certifications such as CISSP, CISM, CISA, CEH, GICSP, etc. Knowledge or experience with OT asset inventory w/ change detection solutions Vulnerability Management solutions Identity and Access Control solutions OT network & communications monitoring solutions Security, Orchestration, Automation & Response (SOAR) solutions Knowledge of the Purdue model for zones/segmentation Industrial Cybersecurity Consultant (OT/ICS) - Amarillo, TX / Kansas City, MO Recommended Skills Access Controls Active Directory Group Analytical Architecture Assessments Automation Apply to this job. Think you're the perfect candidate? Apply on company site $(document).ready( function() $(#ads-desktop-placeholder).html(
n
n
n Estimated Salary: $20 to $28 per hour based on qualifications.

Don't Be a Victim of Fraud

  • Electronic Scams
  • Home-based jobs
  • Fake Rentals
  • Bad Buyers
  • Non-Existent Merchandise
  • Secondhand Items
  • More...

Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.