Cyber Security, Senior Analyst

EngieHouston, TX
11d$99,000 - $151,800Hybrid

About The Position

As the OT Cybersecurity Senior Analyst at ENGIE North America (ENA), based in Houston, Texas, you will be part of a team which consists of skilled OT cybersecurity professionals, driving efforts to ensure the cybersecurity resilience and regulatory compliance of ENGIE’s industrial operational sites—including power plants, solar farms, wind farms, and battery energy storage system (BESS) facilities. You will focus on identifying vulnerabilities and assessing risks to uphold and continuously improve the security posture of industrial control systems (ICS) and operational technology (OT) environments. You will be guided by ENGIE Group’s OT Cybersecurity Framework, which is implemented across all ENA and sites. Through regular assessments and audits, you will ensure compliance and proactively identify risks, leveraging industry best practices and standards such as NIST, NERC CIP, ISA/IEC 62443, ISO 27001, and ISO 27002. Reporting to the OT Cybersecurity Manager of ENA. Reporting to the Digital Security Manager of ENA, your duties will include: Conduct site-level cybersecurity assessments using ENGIE’s OT Cybersecurity Framework 3.1. Evaluate existing controls, identify gaps, and recommend remediation strategies. Perform detailed cyber risk assessments for OT environments. Support OT sites in remediation of deficiencies in risk assessments. Travel to operational sites to perform hands-on assessments, interviews, and validation of cybersecurity controls. Build strong relationships with site personnel to foster a culture of cybersecurity awareness. Support the deployment and configuration of OT cybersecurity tools (e.g., network monitoring, asset inventory, anomaly detection). Develop and maintain OT cybersecurity policies and procedures. Ensure proper access controls are in place and regularly reviewed to protect sensitive information. Utilize Security Event Information Management (SEIM) tools to monitor, analyze, and respond to security events and incidents.

Requirements

  • Bachelor’s degree in Cybersecurity or a related field with a minimum of five (5) years of relevant experience in cybersecurity or a related area; A certificate in Cybersecurity education combined with a Bachelor’s degree in any field with at least five (5) years of relevant cybersecurity experience, an associate degree with at least six (6) years of relevant cybersecurity experience, or a high school diploma/GED with a minimum of seven (7) years of relevant cybersecurity experience will also be considered.
  • Strong technical foundation and in-depth expertise in Operational Technology (OT) environments, including comprehensive knowledge of Programmable Logic Controllers (PLCs), Distributed Control Systems (DCS), and commonly used OT protocols and architectures
  • Strong knowledge of cybersecurity principles, practices, and technologies
  • Experience with IAM, PAM, SEIM, and SCADA systems
  • Proficiency in conducting vulnerability assessments and managing incident response
  • Experience applying analytical and problem-solving skills in collaborative team environments, with the ability to clearly communicate technical information to diverse stakeholders
  • Deep understanding of network attacks, DDoS, Phishing, email protocols/security/spam, encryption, authentication, logging and log analysis, IP and device reputation, and security rules and policies
  • Experience working with multiple stakeholders such as engineering/operations teams, internal business units, external incident response teams, and law enforcement throughout the incident lifecycle.
  • Strong verbal and written communication skills, solid team player, with demonstrated abilities in analysis and problem-solving.
  • Must possess a valid U.S. driver’s license/clean driving record
  • Must be willing and able to comply with all ENGIE ethics and safety policies

Responsibilities

  • Conduct site-level cybersecurity assessments using ENGIE’s OT Cybersecurity Framework 3.1.
  • Evaluate existing controls, identify gaps, and recommend remediation strategies.
  • Perform detailed cyber risk assessments for OT environments.
  • Support OT sites in remediation of deficiencies in risk assessments.
  • Travel to operational sites to perform hands-on assessments, interviews, and validation of cybersecurity controls.
  • Build strong relationships with site personnel to foster a culture of cybersecurity awareness.
  • Support the deployment and configuration of OT cybersecurity tools (e.g., network monitoring, asset inventory, anomaly detection).
  • Develop and maintain OT cybersecurity policies and procedures.
  • Ensure proper access controls are in place and regularly reviewed to protect sensitive information.
  • Utilize Security Event Information Management (SEIM) tools to monitor, analyze, and respond to security events and incidents.

Benefits

  • comprehensive benefits package includes options for medical, dental, vision, life insurance, employer-paid short-term and long-term disability insurance, ESPP, generous paid time off including wellness days, holidays and leave programs
  • 401(k) Retirement Savings Plan with a company match
  • supplemental benefits for full time employees that enhance emotional and physical well-being through all stages of life from family forming to caregiver benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service