OT Cyber Security Specialist

Full Time
Remote
Posted
Job description

Overview

This is a hands-on, technical security assessor / analyst position requiring experience in OT/ICS environments, intermediate knowledge of Windows and Linux OS systems. Controls Systems architectures such as PLC, SCADA, and DCS. Supports the security assessment of deployed systems through hands-on execution of tools and best-practice techniques, including manual and automated verification scans against defined component baselines.

Assists with determining the security and configuration status of a variety of system components including: system documentation, Linux and Windows operating systems; Industrial Controls Systems; system support components, Virtual Environments, and Network Infrastructure. There are also often “one-off” components requiring development of baseline security configurations, hence technical curiosity and a desire to learn and innovate are beneficial.

Using a Risk Management Framework and customer-defined security control catalog, map system and configuration anomalies to specific NIST security controls, along with specific remediation. Write accurate, cogent and defensible descriptions of security configuration status as well as succinct and defensible suggested remediation.

Responsibilities

  • Perform comprehensive and executive assessment package creation for delivery to government and commercial customers.
  • Implement and report on various cybersecurity compliance standards, ISA/IEC-62443, NIST, API 1164, NERC-CIP
  • Performs security control assessment on various platforms using NIST security control assessment.
  • Leverage the MITRE ATT&CK and D3FEND frameworks for bespoke assessments and Threat modeling.
  • Maintain a firm understanding of adversarial TTP’s being used against industrial controls systems and operational technology.
  • Review assessment reports, policies, procedures, and guides
  • Communicate with system and network administrators to guide them in the mitigation and/or resolution of vulnerabilities.
  • Prepare documentation to include Risk Acceptance memorandums justify the acceptance of a vulnerability

Required Experience/Qualifications

· Working knowledge (and hands on) of various assessment tools that may include Nozomi, Nessus, Nmap and related testing tools

· 5+ years of security related experience or equivalent

· General services in support of completing RMF type assessments

· Ability to discern application and systems dependencies and structure

· Technical understanding of networking and associated protocols

· Application security principles and experience

· Understanding of Threat Modeling of a system

· General understanding of cybersecurity controls used to mitigate vulnerabilities.

· Experience working with OT/ICS environments

Preferred Experience/Qualifications

· Ability to develop and understand custom scripts (Python, Linux Bash and Windows PowerShell or equivalent)

· Vulnerability assessment experience

· Knowledge of Industrial Control Systems, Operational Technology, and/or SCADA systems.

· GICSP, OCSP, GPEN, or CISSP certification

Special Requirements/Security Clearance

  • Up to 50% travel. Primary travel will be within the United States with the possibility of travel outside of the USA.
  • Must be able to pass a background check, drug, and alcohol screening.
  • Valid driver’s license with clean driving record for the past 3 years.
  • No employer sponsorship of U.S. residency or work authorization with this role.
  • Military Veterans are highly encouraged to apply.

Apply for this job online

Refer this job to a friend

Share on your newsfeed

By Light provides a broad range of hardware, software, engineering, and IT integration services. Headquartered in Tysons, VA, we support defense, civilian, commercial, and health IT customers worldwide. We offer an excellent benefits package that includes: medical, dental, vision, life and disability insurance, paid time off, paid holidays, and 401(k) match.

An Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

Application FAQs

Job Type: Full-time

Benefits:

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Flexible schedule
  • Health insurance
  • Life insurance
  • Paid time off
  • Professional development assistance
  • Referral program
  • Retirement plan
  • Vision insurance

Schedule:

  • 8 hour shift
  • Monday to Friday

Work Location: Remote

jjbodyshop.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, jjbodyshop.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, jjbodyshop.com is the ideal place to find your next job.

Intrested in this job?

Related Jobs

All Related Listed jobs