QuEST Global Cyber Security Architect - Power Plant Controls in Greenville, South Carolina
Cyber Security Architect - Power Plant Controls
Essential Job Functions
Lead with security requirements, discussions and utilize best practices to deliver results.
Provide system design engineering as required to facilitate the ordering, engineering, installation (construction) design and commissioning of customer and third party control systems and industrial networks
Understanding of NERC CIP Standards and Compliance
Understanding of Active Directory
Design, implement and support communication networks for control system applications
Knowledge of various communication protocols (OPC, Modbus, TCP/IP, DNP3, Profibus..etc). Knowledge on configuration of Network Switches (Cisco), Firewalls (Fortinet), Routers, NTP servers. including HighAvailability protocols and Load Balancing technologies SLB/GSLB, firewalls, SSL.
Working Knowledge of configuring and testing network/HMI infrastructure in line with Intrusion Detection/Prevention Systems (IDS/IPS), firewalls, anti-virus, and centralized patching modules.
Working Knowledge on any one SIEM (Security information event management) tools (tools : Manage Engine , Splunk , SolarWinds).
Working Knowledge on Log Analyzer tools (Graylog, Loggly, Manage Engine Event Log Analyzer etc.)
Knowledge on Patch Management System SCCM (System Center Configuration Manager).
Knowledge on Vulnerability Assessment (VA) to Analysis and mitigate the risks in System.
Knowledge on types of Attacks, Signatures available for the attacks to mitigate the Risk’s.
Expertise with the configuration and troubleshooting of electronic, network, or data security related controls (encryption, digital signatures, secure boot, access control, password policy management)
Expertise in implementing and troubleshooting Active directory services, Windows domain infrastructure (with multiple domains), organizational units (OU) and server/user security through group policies.
Provide technical support to software engineers in meeting customer needs on HMI applications
Experienced to train and troubleshoot issues with CICSCO Network hardware, Fortinet Firewalls, DELL PowerEdge servers (R430,R440,R640, R730), HP ML110 Servers, DELL/ HP Thin Clients, etc.
Investigates and proposes solutions for development and customer needs to improve reliability, and performance of overall infrastructure.
Handle multiple projects / activities
Be accountable for on-time schedule performance, project milestones, customer deliverables, and compliance with regulations and standards
Participate in design reviews and change control for quality assurance on projects
Complete acceptance testing of new releases and patches, providing technical feedback to NPI team review and interpret customer specifications.
Perform hardware selection of system control components for HMI solutions
Effectively apply critical thinking and technical expertise to efficiently guide the team.
Apply a sense of urgency, commitment and focus on the right priorities in developing solutions in a timely fashion
Able to work in a Agile frame work
Secondary Job Functions:
Configure Mark VIe Control server VMs. Installation of Cimplicity HMI software and Historian (OSI-Pi or Proficy)
Create/Modify Network Topology drawing for Controllers, HMIs, Network equipment using Visio tool.
Network topology drawing is updated based on input collected from various sources like Project Contract summary report & Task Issue details in ENOVIA, R477 document prepared by GDL, information from Requisition Engineers.
Understands VMware and Virtual Machine concepts, has worked on thin client configuration solutions
Advanced PowerShell scripting knowledge and experience using PowerCli to administer Vcenter.
Hands on experience with VMware ESXi 6.0, 6.7, Windows Server 2008/2012/2016 OS and Linux.
Bachelor's Degree in Engineering in Computer Engineering or Networks/cyber background
3-5yrs of experience in this field
Desired to be CCNA/CCNP certified, CCP certified, CISSP Certified, VMware (VCP) certified, Microsoft (MCSE) certified.
Knowledge of NERC CIP V7, NIST SP 800-53r4, IEC 62443-3-3, IEC 62443-2-1
Physical Requirements & Work Environment:
Mostly Office Environments, Occasional Shop Floor involvement.
Substantial amounts of telephone and computer work.
Heavily Regulated Industries with strict adherence to procedures.
Flexibility to meet business deadlines by staying late or arriving early.
Typical 8 hour days plus lunch / 40 hour weeks / core (required) hours are 9 AM to 4 PM
Ability to use personal transportation to visit customer locations.
Due to the nature of the work, all candidates must be a U.S. Citizen or Permanent Resident.
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Location: Greenville, SC
Auto req ID:
Total Years of Exp:
6 - 9