Responsibilities
- Strategic and Architectural Design:
- Develop OT security architectures aligned with the organization’s business goals and regulatory requirements.
- Design secure network segmentation and access controls for OT systems.
- Ensure ease of integration for cybersecurity tools into the lifecycle of OT systems.
- Architecture Risk Assessment and Compliance:
- Ensure the security architecture is able to minimize risk and vulnerability exposure for OT systems and its IP network.
- Align architecture solution design with relevant standards and frameworks such as DLMS COSEM, ANSI C12 series, and ISO 27001.
- Provide architecture documentation and evidence for audits and regulatory compliance reporting.
- Security Solutions Integration Design:
- Evaluate, recommend, and design the integration of security technology application such as firewalls, data diodes, intrusion detection systems (IDS), and Security Information and Event Management (SIEM) tailored for OT environments.
- Collaborate with IT security teams to ensure seamless integration between IT and OT security solutions.
- Collaboration and Stakeholder Engagement:
- Work closely with internal and external architecture and engineering teams, both IT and OT to ensure alignment of security measures with operational requirements.
- Act as a liaison between IT and OT teams to harmonize security practices across the organization.
- Collaborate with external stakeholders, including vendors and regulatory bodies, to address cybersecurity concerns.
- Training and Awareness:
- Conduct security architecture training for operational staff on OT cybersecurity best practices for secure, segmented architecture.
- Collaborate with Security Governance to support a culture of security awareness across OT and energy operations teams.
- Documentation
- Ensure documentation of all security architecture standards and other related documents as necessary
Requirements
- In-depth understanding of OT protocols (e.g., Modbus, DNP3, IEC 61850).
- Strong knowledge of SCADA, EMS, and other OT-specific systems.
- Proficiency in cybersecurity frameworks, standards, and best practices (e.g., DLMS COSEM, ANSI C12 series, ISO 27001).
- Hands-on experience with network security technologies and tools in OT environments.
- Excellent problem-solving, communication, and stakeholder management skills.