OT Cybersecurity Lead
Groom & Associates Voir toutes les offres
- Montréal, QC
- 160.000-180.000 $ par an
- Permanent
- Temps-plein
Operating through a broad network of facilities and supported by robust supply and distribution capabilities, the organization plays a vital role in helping customers maintain continuity, quality, and operational efficiency. Its work underpins functions that are fundamental to daily life and modern industry.Title: OT Cybersecurity Lead
Location: Anywhere in North America
Work model: Remote position however would require travel 30%-40%
Type of position: Full time, permanent
Salary: 160-180k (little flexibility) + 20% bonus + 4 weeks vacation + comprehensive benefits and pension contribution.Job summary
We are seeking an OT Cybersecurity Lead to own the design, implementation, and ongoing management of security controls for our Operational Technology (OT) environments. In this role, you will partner closely with IT, engineering, and operations teams to identify vulnerabilities, assess risk, and develop effective mitigation strategies that protect our plant level systems.
The ideal candidate will bring deep hands on experience securing OT systems in complex industrial or plant environments similar to our own, along with strong knowledge of relevant industry standards and frameworks outlined in the responsibilities below. You are highly autonomous, strategic in your thinking, and comfortable taking full ownership of an enterprise wide cybersecurity program.Although this role does not include direct people management, we are looking for a true leader, someone who will independently drive the program forward, set direction, and act as the primary authority for OT cybersecurity. This position will also play a key role as we roll out a new software platform aimed at strengthening and streamlining our security and operational processes.Strong communication and stakeholder engagement skills are essential. The role involves regular travel and direct interaction with internal and external customers. You must be comfortable engaging onsite, building credibility, and clearly communicating the vision and value of our OT cybersecurity strategy across multiple locations.Due to the confidential nature of this search, additional details will be shared only with candidates who progress further in the selection process.Key Responsibilities:
- Design and deploy security solutions to protect OT systems against cyber threats, including firewalls, intrusion detection/prevention systems, and endpoint security software.
- Conduct regular vulnerability assessments and penetration testing on OT systems to identify potential security risks.
- Implement security policies, procedures, and standards for the OT environment.
- ICS / OT Cyber Security risk assessment and deployment of cyber security solutions for critical infrastructure.
- Work with IT infrastructure team to integrate, implement, and maintain security tools in OT environments across the plants.
- Develop OT Cyber Security standards and baselines with associated KPIs.
- Develop and review technical architectures and conduct systems and network security strategic planning.
- Evaluate compliance with applicable regulations, standards and policies.
- Conduct security awareness training for employees and contractors who work with OT systems.
- Work with third-party vendors and contractors to ensure that their systems and services are secure and compliant with company policies.
- 10+ years of experience in designing, developing, and maintaining OT cybersecurity solutions.
- 5+ years of experience with Industry Control Systems (technologies and/or environments - SCADA, DCS, PLCs, HMIs, Engineering Workstations, Historians).
- 5-8+ years of experience assessing against standards and frameworks (i.e., IEC-62243/ISA-99, ISA-95, NIST SP 800-82 R2, NIST CSF, NERC CIP, ISO 27001/27002.)
- Experience in deployment of security controls in endpoints, industrial networks, including network zoning, segmentation and isolation designs and implementation.
- Understanding of general cybersecurity frameworks (ISO IEC 27001/27002, ISO 15408, NIST Cybersecurity Framework (CSF), NIST SP800-53).
- Hands on implementation experience of current and emerging state-of-the-art OT systems technologies, architectures, and products.
- ISA/IEC 62443 Cybersecurity, CISSP, CISM Certification preferred.
- Strong communication, problem solving, and analytical skills in high pressure
- Ability to collaborate effectively at all levels and functions.
- Strong organizational skills.
- Strong written and verbal communication skills.
- Self-starter with ability to work as part of a team.
- Excellent time management and analytical skills.
- Ability to learn new processes and technologies quickly
Montreal (Québec) H2Y 1P6© 2019 Groom & Associates. All rights reserved.© 2018 - 2019 Groom & Associates. All rights reserved.CloseGet in touchLeave your contact information and one of our recruitment experts will contact you immediately.