Expert OT Security Architecture

at  Canadian National Railway

Toronto, ON, Canada -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate29 Dec, 2024Not Specified30 Sep, 20245 year(s) or aboveDnp3,Components,Legislation,Zachman,Computer Engineering,Iso,Business Operations,Bacnet,Computer Science,Lonworks,Scada,Iec,Owasp,Profinet,Isa,Togaf,Modbus,Communication Skills,Technological Solutions,Information Security,Regulations,Data Acquisition,DaliNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and safely and our employees can focus on value-added tasks. You will be able to develop your skills and career in our close-knit, safety-focused culture working together as ONE TEAM. The careers we offer are meaningful because the work we do matters. Join us!

JOB SUMMARY

The purpose of this role is to evaluate Operational Technology (OT) solutions, configurations, and designs against security requirements, and define cybersecurity reference architectures and standards for all OT environments at CN.

EDUCATION/CERTIFICATION/DESIGNATION

  • Bachelor’s degree in Computer Science, Computer Engineering, Electrical Engineering, System Analysis or other relevant field
  • At least one recognized security certification: e.g. Certified Information Systems Security Professional (CISSP), Global Industrial Cyber Security Professional (GICSP), ISA/IEC 62443 Cybersecurity Expert, etc.
  • Architecture related certifications (TOGAF, Zachman, CISSP-ISSAP, etc.) preferred

SKILLS/KNOWLEDGE

  • Ability to define and organise an architecture security apparatus in reusable building blocks: patterns, services, components, capability models, etc;
  • Demonstrated capability to understand the security implications of complex business operations and how they are linked to technological solutions that provide practical risk mitigation and business enablement;
  • Strong knowledge of the processes, methodologies, tools and techniques, used for building large information technology systems;
  • Proven experience in applying a structured approach to problem resolution in large, geographically dispersed organizations with 24/7 operations;
  • Strong knowledge of the technologies and architecture principles required to build complex operational technology systems such as: Programmable Logic Controllers (PLCs); Supervisory Control and Data Acquisition (SCADA); Distributed Control Systems (DCS); Human Machine Interface (HMI); Industrial network ports and protocols (such as TCP/IP, UDP, DNP3, Modbus, IEC 61850, PROFINET, OPC, LonWorks, DALI, BACnet, KNX, EnOcean, etc.); etc;
  • Deep understanding of ICS design considerations with emphasis on human safety and the availability/security of operating environment as well as threats, vulnerabilities, and exploits in ICS environments and appropriate mitigation techniques.
  • Ability to derive security requirements from vaguely formulated business needs;
  • Ability to interact with a broad cross-section of personnel to explain and enforce security measures
  • Excellent written and verbal communication skills;
  • Detail-oriented self-starter with a high level of commitment and personal motivation;
  • Knack for prioritizing tasks and working in a fast-paced environment;
  • Knowledge of standards, regulations and legislation governing Information Security, e.g. NIST, ISO 27001, OWASP, ISA 62443;

EXPERIENCE

  • Minimum 12 years overall IT work experience
  • Minimum 8 years OT experience
  • Minimum 5 years experience in OT security architecture experience

Responsibilities:

OT Security Architecture Practice

  • Put in place the proper sets of OT security architecture controls to ensure authenticity, non-repudiation, and least privilege commensurate with risk requirements.
  • Ensure the OT security architecture is maintainable, sustainable and properly documented.
  • Maintain and build relevant, current, valid and reliable team knowledge related to OT and Security Architecture to leverage existing cybersecurity infrastructure and process, where appropriate, while supporting Transportation, Mechanical and Network Ops functions in enacting risk-based security controls as part of a broader OT environment.
  • Facilitate key decisions involving OT architecture and technologies.
  • Advance security team accomplishments and competence by planning delivery of solutions; answering technical and procedural questions for less experienced team members; teaching improved processes; mentoring team members.
  • Ensure the full documentation of security designs, as built architectures and operational processes through clear diagrams and well-written documents.


REQUIREMENT SUMMARY

Min:5.0Max:12.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Systems Administration

Graduate

Computer science computer engineering electrical engineering system analysis or other relevant field

Proficient

1

Toronto, ON, Canada