Dominion Energy-posted 3 months ago
Full-time • Mid Level
Chesapeake, VA
Utilities

Dominion Energy's Power Generation Business Unit seeks a Generation Cyber Security Analyst or Senior Cyber Security Analyst to support the Power Generation fleet (non-nuclear) with computer, communications, and network security in Operational Technology (OT) Industrial Control System (ICS) environments and ICS Cyber Security environments. The successful candidate will be able to provide the support noted below in accordance with standards, best practices, and regulatory requirements, for the operating units and auxiliaries.

  • Provide ongoing support and oversight for the Industrial Control System (ICS) cyber security and secure network communications.
  • Recommend and support the implementation of architectures necessary for Power Generation's cyber security and compliance posture.
  • Design, Implement and manage system installations, modifications, and integration of communication protocols and programs/tools in support of secure ICS data and control communications.
  • Provide hands on support with computer, software, and network device implementations, account management and review, security hardening, modifications, updates, patches, troubleshooting, and replacement.
  • Research, develop, and implement cyber security architectures and communications necessary to maintain the plant cyber security and compliance posture.
  • Uphold responsibilities in support of Power Generation and related cyber security project implementations and initiatives.
  • Develop and implement secure software and network communication architectures to support data and access communication needs.
  • Provide firewall rule development, review, and investigation and coordinate with Power Generation Cyber Security and Information Technology (IT) Groups.
  • Provide cyber security and communications related monitoring, surveillance, and troubleshooting.
  • Support cyber security event investigation in coordination with the Incident Response Team.
  • Review, analyze, and investigate logs, events, and alerts for potential security breaches.
  • Monitor cyber security best practices, industry trends, and regulatory requirements while identifying gaps in cyber security controls and recommend/implement technical or administrative solutions to remediate.
  • Follow policy and procedures established by Power Generation Regulatory Compliance and Corporate Cyber Security.
  • Support deployment of cyber security equipment patches and upgrades in accordance with policy.
  • Review and approve change management and design change packages for cyber security and compliance impacts.
  • Address and resolve ICS-CERT vulnerabilities in coordination with compliance and station personnel.
  • Develop technical procedures and guidance documents.
  • Mentor other staff members to broaden knowledge and technical expertise across the team.
  • 3+ years of experience in operational technology, cyber security, system administration, networks, firewalls, and management of Windows operating systems security for Generation Cyber Security Analyst.
  • 5+ years of experience in operational technology, cyber security, system administration, networks, firewalls, and management of Windows operating systems security for Generation Cyber Security Sr Analyst.
  • Hands on experience/understanding utilizing cyber security processes and technologies including network intrusion detection systems, logging and monitoring tools, antivirus tools, whitelisting tools, malware prevention tools, incident response tools, asset inventory systems and security analytics platforms.
  • Incident analysis, root cause analysis, and problem resolution.
  • Understanding of industrial control system networks, switches, and firewalls, and the differences of these OT systems from IT systems when applying cyber security controls.
  • Strong experience with workstation and server security, protection, and software.
  • Experience in security aspects of multiple platforms, operating systems, software, communications, and network devices, architectures and topologies.
  • Strong experience with network devices (network switches, firewalls, routers).
  • Valid driver's license.
  • Strong level of understanding of security principles, technologies, best practices, and NIST, CISA, and DoE ICS guidance.
  • Excellent analytical and problem-solving skills.
  • Ability to coordinate multiple projects and assignments concurrently and manage deadlines.
  • Strong verbal, written, interpersonal and leadership skills.
  • Ability to successfully work both independently and in a team environment to identify errors, pinpoint root causes, and devise solutions with minimal oversight.
  • Familiarity with Industrial Control Systems (DCS, PLC, SCADA) and third-party datalink protocols (e.g. Modbus, DNP3, ABPLC, OPC UA, MQTT).
  • Strong Microsoft/Cisco system administration experience.
  • Network Certifications.
  • Health benefits with coverage for families and domestic partners.
  • Vacation.
  • Retirement plans.
  • Paid holidays.
  • Tuition reimbursement.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service