Stantec Inc.-posted 18 days ago
Full-time • Entry Level
Atlanta, GA
5,001-10,000 employees
Professional, Scientific, and Technical Services

Our North America Water Utilities Cybersecurity team helps communities safeguard one of their most critical assets: water. We support utilities in understanding their overall cybersecurity posture, developing risk management plans, identifying practical improvements, and/or reconceptualizing overall cybersecurity strategy to support complete re-design across the business IT, operational technology (OT), industrial control system (ICS), and Access Control / CCTV networks. Our approach emphasizes risk-based assessments, policy and governance improvements, and program development, while integrating findings from trusted third-party technical testing providers (e.g., penetration testing, vulnerability scans, and application assessments). Coupled with our extensive experience in design, build and operation of water treatment and conveyance facilities, we help water utilities build a complete picture of their cyber risk exposure and maturity, and guide them toward sustainable improvements. This entry-level opportunity is ideal for candidates eager to gain hands-on experience with clients in the water sector while learning about cybersecurity governance, risk management, and cybersecurity compliance. You will be part of a collaborative, client-facing team that values curiosity, adaptability, and continuous improvement. This role emphasizes active learning, professional growth, and developing the ability to clearly communicate cybersecurity concepts to a range of stakeholders-from utility operators to executive leadership.

  • Support cybersecurity teams in conducting risk assessments, program reviews, and governance-focused security evaluations for water utility clients. This may include:
  • Obtain knowledge of EPA Safe Water Drinking Act of 2023 and the American Water Infrastructure Act Guidelines
  • Collection and field verification of record documents
  • Detailed field record of undocumented installations with maintenance / obsolescence assessment
  • Capture and summary of network monitoring readings
  • Support of technical research efforts
  • Assist with development of assessment reports
  • Assist in the development and harmonization of cybersecurity policies, standards, and strategies.
  • Contribute to project management tasks as needed
  • Engage with and incorporate findings of third-party test service providers into comprehensive client risk profiles.
  • Participate in client engagements to gain exposure to real-world cybersecurity practices in critical infrastructure.
  • Maintain a learning mindset and take ownership of professional development including:
  • Maintenance and pursuit of key cybersecurity and network certifications
  • Proactive identification of opportunities to advance working knowledge of network monitoring, analysis, and hacking / penetration tools.
  • Active engagement in key manufacturer and industry sponsored user-groups
  • Foundational knowledge of cybersecurity principles, governance, and risk management.
  • Strong written and verbal communication skills, including the ability to explain technical concepts to non-technical stakeholders.
  • Ability to work collaboratively with clients, internal teams, and third-party partners.
  • Solid organizational skills for balancing multiple projects.
  • Basic knowledge of cybersecurity frameworks such as NIST CSF/800-53, NIST SP 800-82, ISA/IEC 66243
  • Bachelor's degree in computer science, cybersecurity, information systems, or electrical engineering or related field required.
  • Internship, Co-op, or work experience in Cybersecurity
  • CompTIA Security+, Systems Security Certified Practitioner (SSCP) or equivalent entry-level certification required
  • Must have good driving record and valid driver's license
  • Advancement beyond this role will require future attainment of the Certified Information Security Systems Professional (CISSP) designation
  • Certified Information Security Manager (CISA) preferrable
  • Regular full-time and part-time employees (working at least 20 hours per week) have access to medical, dental, and vision plans, a wellness program, health saving accounts, flexible spending accounts, 401(k) plan, employee stock purchase program, life and accidental death & dismemberment (AD&D) insurance, short-term/long-term disability plans, emergency travel benefits, tuition reimbursement, professional membership fee coverage and paid family leave.
  • Regular full-time and part-time employees will receive ten paid holidays in each calendar year.
  • In addition, employees will be eligible to accrue vacation between 10 and 20 days per year and eligible for paid sick leave (and if more generous, in accordance with state and local law).
  • Temporary/casual employees have access to 401(k) plans, employee stock purchase program, and paid leave, in accordance with state and local law.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service