OnSite Cybersecurity Custodian

Black & Veatch Family of CompaniesSouth Jordan, UT
$98,459 - $187,932Onsite

About The Position

Black & Veatch (BV) is seeking a direct-hire, full-time on-site Cybersecurity Custodian to support cybersecurity execution for a new Power Plant project in Beech Island, South Carolina. Supported and led by BV Senior Cybersecurity Consultants, this individual will be the day-to-day on-site custodian for Operational Technology (OT) / Industrial Control Systems (ICS) cybersecurity activities, coordinating with EPC, Owner, and vendors to ensure systems are secured, cybersecurity requirements are met, and all work is documented in a complete, audit-ready evidence package. This role is perfect for individuals experienced with power plant control systems (DCS/PLC/SCADA/HMI) who are enthusiastic about applying cybersecurity in practical construction and commissioning settings. The role begins no later than January 2027 to support readiness activities ahead of Distributed Control System (DCS) Factory Acceptance Testing (FAT) in March 2027, includes travel to vendor FAT/Cyber FAT (CFAT) locations, and remains on-site in Beech Island, SC through installation, commissioning, and turnover. After completion of the Beech Island project, the role is expected to continue as a full-time ICS Cybersecurity Consultant position supporting B&V’s Infrastructure Advisory (IA) Industrial Cybersecurity team across additional OT/ICS projects.

Requirements

  • Bachelor of Arts or Science, preferably in business, technology, or engineering OR relevant business experience.
  • Minimum of 4 years related work experience

Nice To Haves

  • 3+ years supporting industrial/power generation control systems or OT environments.
  • Cybersecurity training or certifications (e.g., Security+, GIAC, ISA/IEC 62443, CISSP).
  • Practical experience working with industrial control systems (DCS/PLC/SCADA/HMI) configuration and maintenance.
  • Practical knowledge of industrial control system networking fundamentals such as: IP addressing, VLANs, firewall concepts, routing basics.
  • Familiarity with NERC CIP, OT segmentation, MFA, jump hosts, and least-privilege design.
  • Ability to work on-site in Beech Island , SC for 9+ months (typical 40Hrs Week with occasional off-hours during cutovers).
  • Willingness to travel to vendor facilities for CFAT support. Occasional travel for planning/working sessions may be requested.
  • Eligible to meet badging/background/site access requirements.
  • Experience with SIEM, antivirus/whitelisting, vulnerability scanning, or backup tooling.
  • Experience supporting FAT/commissioning on large capital projects (power generation or similar).
  • Strong documentation discipline—ability to produce clear procedures, logs, checklists, and evidence packages.
  • Experience working with vendors and multi-discipline teams in construction/commissioning environments.

Responsibilities

  • Report operationally to the project leadership team, while working closely with B&V cybersecurity stakeholders.
  • Work closely with the IA ICS Cybersecurity team who provides back-office support including: Project planning and cybersecurity execution roadmap, Standards, templates, and evidence packages, Requirements interpretation and technical guidance and Action-item tracking support and cadence facilitation.
  • Execute the on-site work, coordinate vendors, and ensure evidence is captured and organized.
  • Manage day-to-day execution of the on-site OT cybersecurity program, including tracking requirements, planned actions, and completion status and report status of activities to BV Senior Cybersecurity Consultants for review and approvals.
  • Build and maintain an organized evidence repository (audit-ready), ensuring deliverables are properly dated, labeled, and attributable.
  • Support pre-CFAT readiness and participate in vendor CFAT activities as required (travel required).
  • Track and close cyber-related FAT punch items; ensure retests and final evidence are captured and filed.
  • Verify and document required access controls including MFA for remote access, least privilege, and role-based access models.
  • Maintain support for hardware/software inventory requirements (including OS/firmware versions, asset tags, locations, network references).
  • Track configuration baselines, redlines, and as-built updates throughout construction and commissioning.
  • Enforce and document removable media and transient device controls in line with Owner policies and site procedures.
  • Coordinate vendor site visit preparations (e.g., ensuring vendor laptop/TCA scanning expectations are met).
  • Coordinate and document OT log onboarding to SIEM, including log sources, retention requirements, and forwarding architecture.
  • Validate and document that logging is enabled, time-synchronized, and functioning without impacting system performance.
  • Verify backup procedures are in place for OT assets and that backups are created after major changes (patching, configuration updates).
  • Support restoration testing where required; ensure offline backup handling meets custody and storage requirements.
  • Maintain cyber escalation contacts and on-site reporting procedures.
  • Support documentation of cybersecurity events, policy violations, corrective actions, and evidence of remediation steps.
  • Track and maintain evidence for required cybersecurity awareness training completion.
  • Conduct periodic verification that access authorizations remain current and justified.

Benefits

  • medical
  • dental
  • vision insurances
  • disability
  • wellness program
  • flexible work schedules
  • paid vacation
  • paid holiday time
  • sick time
  • dependent sick time
  • company-matched 401k plan
  • adoption reimbursement
  • tuition reimbursement
  • vendor discounts
  • employment referral program
  • AD&D insurance
  • pre-taxed accounts
  • voluntary legal plan
  • B&V Credit Union
  • performance-based bonus program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service