Skip to main content

This job has expired

Industrial Cybersecurity Consultant (ISA/IEC 62443) - 1898 & Co. (Multiple Locations)

Employer
Burns & McDonnell
Location
Baltimore, MD
Closing date
May 22, 2022

View more

Industry
Engineering
Function
Accountant, IT
Hours
Full Time
Career Level
Experienced (Non-Manager)
Location field must contain 'city, state' or a zip code to perform a radius search (eg, Denver, CO or 46122 ). City and state must be separated by a comma followed by a space (eg, Houston, TX ) Every story here is custom-built. If you're ready to turn the page and build your story, check out our current job openings. mp; McDonnell is an Equal Opportunity Employer Minorities/Females/ Burns & McDonnell Industrial Cybersecurity Consultant (ISA/IEC 62443) - 1898 & Co. (Multiple Locations) Baltimore , Maryland Job: Consulting Primary Location: Baltimore, MD Schedule: Full-time Travel: Yes, 25 % of the Time Description 1898 & Co. is a business, technology, and security solutions consultancy where experience and foresight come together to unlock lasting advancements. We innovate today to fuel our clients' future growth, catalyzing insights that drive smarter decisions, improve performance, and maximize value. As part of Burns & McDonnell, we draw on more than 120 years of deep and broad experience in complex industries as we envision and enable the future for our clients. The Industrial Cybersecurity Consultant will be a treasured member of the 1898 & Co. Security & Risk Consulting practice. The 1898 & Co. Security & Risk Consulting practice is a premier OT/ICS/SCADA cybersecurity consulting practice whose mission is to serve humanity by improving the safety, security, and reliability of the world's critical infrastructure - improving risk management through resiliency, situational awareness, and preparedness. The Industrial Cybersecurity Consultant will be committed to will independently execute significant portions of projects addressing the security of Operational Technology (OT) systems consisting of Industrial Control Systems (ICS), Supervisory Control and Data Acquisition (SCADA), Programmable Logic Controllers (PLC), Discrete Process Control (DPC) systems, etc. Industrial Cybersecurity Consultant supports the execution of projects consisting of a variety of assessments (eg, GAP/Maturity, Vulnerability, Risk, Threat, Firewall, etc.); secure architecture, design, and implementation of OT networks, solution implementation, and operations, respond and recover related services (incident response planning, disaster recovery planning, business continuity planning). The Industrial Cybersecurity Consultant will support cybersecurity programs at client sites across North America utilizing ISA/IEC 62443, the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF), and other key industry best practices and standards. Job Duties: Execute the planning, design, development, and implementation of technical controls, procedures, and policies associated with cybersecurity compliance and/or regulatory standards. Maintain the highest level of integrity, protecting the confidentiality and security of all clients and project information. Identify and diagnose operational issues and implement design alterations to address these issues. Conduct vulnerability assessments of OT networks for cybersecurity, risk management, and/or compliance purposes. Perform detailed, post-event analysis of unusual events, and direct needed procedure or process changes in response. Pursue, obtain, and maintain industry-recognized certifications related to cybersecurity such as ethical hacking, penetration testing, network engineering, Industrial Control System (ICS), Supervisory Control and Data Acquisition (SCADA), risk management, and others, as necessary. Resolve technical issues, analyze implications to the client's business, and be able to communicate them with applicable stakeholders within the business. Develop policies & procedures for secure process control network design, technical and design recommendations for implementing firewalls, unidirectional gateways, zero trust design, and other network security controls. Compiles technical documentation of network traffic as well as firewalls services/solutions, including explanations and diagrams. Work collaboratively with other groups and divisions inside of 1898 & Co. and Burns & McDonnell. All other duties as assigned. Qualifications Bachelor's degree in a technical field, eg, (Cybersecurity, Industrial Cybersecurity, Industrial Cyber Engineering, Cyber-Physical System Security, Computer Science or Information Systems, Computer Engineering, Electrical Engineering, or another related technical field with appropriate experience. Minimum 8 years of industrial cybersecurity experience. Additional applicable years of experience may be considered in place of degree requirements. Advanced knowledge of security principles and firm knowledge of cybersecurity technologies, as well as industry-recognized certifications. Knowledge and experience with ISA/IEC 62443, NIST Cybersecurity Framework (NIST CSF), and ideally NIST SP800-82 required. Experience with security engineering principles, various cybersecurity assessment methodologies, security control implementation, and validation, and system life-cycle practices. Experience in the capabilities and/or configuration of cybersecurity controls, specifically those relating to firewalls, identity, and access control, zero-trust security, authentication and authorization, anti-virus/anti-malware, patch management, network, and system hardening, SIEM implementation, and/or tuning, and logging. Experience working with development teams to determine application requirements. Advanced knowledge of control systems utilized by Oil, Gas, and Chemicals; Manufacturing; Utilities (Power and/or Water); Energy; Transportation; etc., is preferred. Strong written and oral communication skills. Strong analytical and critical thinking skills. Ability to operate under pressure and under tight deadlines, to operate onsite within industrial, corporate, and government work settings. Demonstrate an understanding of business principles and operational security practices specific to engineering and/or security consulting. Knowledge and/or experience with legacy and modern computer networking and telecommunications. Experience with physical cabling for network communications and control system input/output. Strong technical writing skills Ability to develop and maintain strong relationships with clients. Ability to present complex technical issues and their impact in an easy-to-understand manner. Knowledge and experience with corporate policies and procedures Travel for site work is estimated to average 25-50% annually. The Ideal Candidate will also have the following preferred skills: Tenacious Problem solving Dedicated to continuous improvement. Grit Consulting background Relevant industry certifications such as - Bonus points for - ITIL certification, Prosci, or similar people change management certification. Knowledge or experience with - OT asset inventory w/ change detection solutions Vulnerability Management solutions Identity and Access Control solutions Zero Trust Security solutions OT network & communications monitoring solutions Security, Orchestration, Automation & Response (SOAR) solutions Knowledge of the Purdue model for zones/segmentation TWIC, HUET, and/or BOSIET certifications Certified Ethical Hacker (CET) certification with previous experience performing OT-relevant Pen Testing, Threat Hunting, or similar activities. Ability to integrate multiple data sources into a single system. Familiarity with code testing frameworks. Demonstratable name recognition in the OT / ICS / SCADA cybersecurity industry EE/Minorities/Females/Disabled/Veterans Job Consulting Primary Location US-MO-Kansas City Other Locations US-AZ-Phoenix, US-TX-Houston, US-VA-Roanoke, US-MD-Baltimore, US-CA-Brea, US-VA-Arlington, US-GA-Atlanta, US-SC-Greenville Schedule: Full-time Travel: Yes, 25 % of the Time About 1898 & Co. 1898 & Co. is a business, technology and security solutions consultancy where experience and foresight come together to unlock lasting advancements. We innovate today to fuel our clients' future growth, catalyzing insights that drive smarter decisions, improve performance and maximize value. As part of Burns & McDonnell, we draw on more than 120 years of deep and broad experience in complex industries as we envision and enable the future for our clients. 1898 & Co. is a business, technology and security solutions consultancy where experience and foresight come together to unlock lasting advancements. We innovate today to fuel your future growth, catalyzing insights that drive smarter decisions, improve performance and maximize value. As part of Burns & McDonnell, we draw on more than 120 years of deep and broad experience in complex industries as we envision and enable the future for our clients. Equal Employment Policy: It is the policy of Burns & McDonnell to offer equal opportunity in all areas of employment to all qualified individuals, regardless of race, color, religion, sex, age, national origin, veterans status, sexual orientation, gender identity, disability, or other classes protected by applicable law. View our EEO policy statements. Recruitment Fraud Notice: Job offers claiming to be from Burns & McDonnell or its affiliates have been extended via email and other means by illegitimate senders. They may ask for sensitive personal information and/or financial contributions and purport to come from a Burns & McDonnell recruiter. Burns & McDonnell has no responsibility for fraudulent offers and advises recipients to notify us . (C) 2022 Burns & McDonnell. All Rights Reserved At this time, Burns & McDonnell is not offering pure architectural services in the states of Illinois, Louisiana, Montana, Nevada, New Hampshire or New Jersey. We may, however, provide design-build services for architectural projects.

Get job alerts

Create a job alert and receive personalized job recommendations straight to your inbox.

Create alert