Job Title:
Industrial Cybersecurity Consultant | 24-00107

Company: ESPO Corporation

Location: amarillo, TX

Created: 2024-04-20

Job Type: Full Time

Job Description:

Job Title: Industrial Cybersecurity Consultant Location: Amarillo, TX OR Kansas City, MOJob type and Duration: Contract Our client, a global Architecture and Design Firm, is looking to hire an Industrial Cybersecurity Consultant to join their IT Consulting team in Amarillo, TX OR Kansas City MO. The Industrial Cybersecurity Consultant will support cybersecurity programs at client sites across North America utilizing the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF), NIST Risk Management Framework (RMF), NIST 800-53, NIST 800-82, DFARS, and other key industry best practices and standards. Job Duties:Execute the planning, design, development, and implementation of technical controls, procedures, and policies associated with cybersecurity compliance andor regulatory standards.Maintain the highest level of integrity, protecting the confidentiality and security of all clients and project information.Identify and diagnose operational issues and implement design alterations to address these issues.Conduct vulnerability assessments of OT networks for cybersecurity, risk management, andor compliance purposes.Pursue, obtain, and maintain industry-recognized certifications related to cybersecurity such as ethical hacking, penetration testing, network engineering, Industrial Control System (ICS), Supervisory Control and Data Acquisition (SCADA), risk management, and others, as necessary.Resolve technical issues, analyze implications to the client's business, and be able to communicate them with applicable stakeholders within the business.Develop policies & procedures for secure process control network design, technical and design recommendations for implementing firewalls, unidirectional gateways, and other network security piles technical documentation of network traffic and firewalls servicessolutions, including explanations and diagrams. Requirements:Bachelor's degree in a technical field, e.g., (Cybersecurity, Computer Science or Information Systems, Computer Engineering, Electrical Engineering, or another related technical field with appropriate experience).Minimum 4 years of experience in industrial cybersecurity. Additional applicable years of experience may be considered instead of degree requirements.Advanced knowledge of security principles, firm knowledge of cybersecurity technologies, and industry-recognized certifications.Experience with security engineering principles, various cybersecurity assessment methodologies, security control implementation, validation, and system life-cycle practices.Experience in the capabilities andor configuration of cybersecurity controls, specifically those relating to:FirewallsIdentity and Access ControlAuthentication and authorizationAnti-virusanti-malwarePatch managementNetwork and system hardening, network architecture design, network data flow, network switch configuration (IOS and NXOS, SNMP Traps configuration, IP IGMP Snooping)System IntegrationSystem Administration, to include MS Windows Server 2016, MS AD, MS IIS, SSL Integration, MS SQL Server, Powershell)Test Engineering, includes Developing and Documenting Test Procedures, Performing component level testing, Performing system-wide testing, and Software Quality Assurance TestingAdvanced knowledge of networks and control systems utilized by Federal, Military, Defense; etc., is preferredStrong written and oral communication skillsStrong analytical and critical thinking skillsAbility to operate under pressure and under tight deadlines, to operate onsite within industrial, corporate, and government work settingsDemonstrate an understanding of business principles and operational security practices specific to engineering andor security consultingKnowledge andor experience with legacy and modern computer networking and telecommunications Experience with physical cabling for network communications and control system inputoutputStrong technical writing skillsAbility to develop and maintain strong relationships with clientsAbility to present complex technical issues and their impact in an easy-to-understand mannerAbility to work remotely on the client siteKnowledge and experience with corporate policies and proceduresKnowledge and experience with NIST Risk Management Framework; NIST 800-53; DFARS; NIST Cybersecurity Framework; NIST SP800-82; CMMC highly desiredTravel for site work is estimated to average 25-50% annuallyThe Ideal Candidate will also have the following preferred skills:Tenacious Problem solvingUnselfish collaboratorIntellectual curiosityDedicated to continuous improvementGritConsulting backgroundPLC ConfigurationPLC Ladder LogicDoD andor DoE Security clearances, or the ability to obtain them quicklyRelevant industry certifications such as -CISSP, CISM, CISA, CEH, GICSP, etc.Knowledge or experience with -OT asset inventory w change detection solutionsVulnerability Management solutionsIdentity and Access Control solutionsOT network & communications monitoring solutionsSecurity, Orchestration, Automation & Response (SOAR) solutionsKnowledge of the Purdue model for zonessegmentationESPO CorporationWillowbrook, IL 60527(630) 789-2525View all open jobs at: in Technical Recruiting & Staffing since 1965We are an Equal Opportunity Employer and value the benefits of diversity in our workforce. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity and expression, national origin, disability, protected Veteran status or any other attribute or protected characteristic by law. If you need assistance applying please contact us at 630-789-2525.