13193 ICS Cyber Security Engineer
Duties & Responsibilities:
1. Deploy and maintain network infrastructure devices (e.g., switches, routers, etc.), security appliances (e.g., firewalls, IDS, IPS etc.), and virtualization solutions
2. Reviewing network and security products and determining if they are configured properly.
3. Reviewing security policies and develop operational instruction manuals.
4. Managing hardware and software security life cycle.
5. Creating detailed diagrams (e.g., network, cabling, server, rack, logical architecture, etc.), procedures, and plans (e.g., implementation, SAT, POC, mitigation, etc.) as needed to support projects.
6. Taking inventory of the plant’s hardware & software assets and assessing those assets for security vulnerabilities, obsolescence, and other risks
7. Reviewing network architectures and determining if good practices are being followed (e.g., the “zones & conduits” concept, proper network segmentation, use of Industrial DMZ, etc.); and providing recommendations to comply with applicable cybersecurity framework.
8. Participating in the change management process.
9. Provisioning and de-provisioning of OT systems access.
10. Ensuring that the organization's data and infrastructure are protected by enabling the appropriate security controls.
11. Troubleshooting security and network problems in ICS/OT.
12. Reviewing administrative, technical, and physical security controls and providing recommendations to mitigate the identified security risks.
13. Ensure compliance and adherence to the organization and government’s cyber security controls.
14. Participate in ICS projects and changes to ensure proper implementation of cyber security requirements.
15. Provide technical direction and act as a subject matter expert as it relates to cybersecurity in industrial control systems
16. Identify vulnerabilities, recommend patches required to close vulnerabilities & support deploying cybersecurity patches to ICS/OT systems.
17. Daily administrative tasks, reporting, and communication with the relevant departments in the organization.
18. Employ secure configuration management processes.
19. Define system security context, concept of operations and baseline requirements in line with applicable cybersecurity policies.
20. Understand OT Protocols including Yokogawa VNet IP, ModBus and Standard OPC protocols.
21. Participate in ICS security incident response and investigations.
22. Use cyber defense tools to monitor and analyze system activity continuously to identify malicious activity.
23. Testing and identifying network and system vulnerabilities.
24. Ability to perform vulnerability / penetration testing in ICS/OT environment, and/or threat hunting.
25. Coordinate with threat intelligence analysts to correlate threat assessment data.
26. Provide periodic reporting on information security issues.
27. Lead or provide technical resolutions / recommendations to the plant issues in the area(s) of specialty or in an assigned field to ensure reliable and safe plants operations.
28. Lead or Participate in multi-disciplinary teams to address or investigate major concerns / disruptions and/or improvement opportunities in the areas of specialty or assignment.
29. Write and publish reviews to learn and promulgate lessons from cybersecurity events.
Minimum Requirements:
1. Bachelor Degree in IT major, Computer Science. Computer Engineer.
2. Certified SCADA Security Architect (CSSA).
3. GIAC certifications (e.g., GICSP, GRID, Critical Infrastructure Protection).
4. ISA/IEC 62443 Cybersecurity Certificates.
5. Networking certifications (e.g., CCNA, CCNP, JNCIP-ENT, etc.)
6. Knowledge of network components, their operation and appropriate network security controls and methods and understanding of risk assessment, mitigation and management methods.
7. Knowledge of relevant cybersecurity aspects of legislative and regulatory requirements, relating to ethics and privacy and the principles
- Department
- ES - Technical Support
- Locations
- Rabigh
About Petro Rabigh
Petro Rabigh produces the fuels and plastics essential to modern life. Our refined products are vital to the transport industry, while our petrochemicals are used in everything from food packaging, clothing and construction materials to medical supplies and computer parts. By adding value to the nation’s key resources we are attracting diverse new industries and creating jobs, enriching life for everyone by generating sustainable economic and social development.