More jobs:
CyberSecurity Strategist Industrial Control Systems
Job in
Baltimore, Anne Arundel County, Maryland, 21276, USA
Listed on 2026-03-04
Listing for:
Burns & McDonnell
Full Time
position Listed on 2026-03-04
Job specializations:
-
Engineering
Cybersecurity
Job Description & How to Apply Below
Overview
The Industrial Control Systems Cybersecurity Strategist will be responsible for monitoring, detecting and responding to security incidents for assigned clients. This role involves the continuous analysis of security events, assisting with the development of incident response procedures and the implementation of proactive measures to safeguard the clients' digital assets.
Responsibilities- Conduct regular security audits and workload estimation for new clients.
- Oversee the development of security policies, processes, and procedures and required training.
- Create reports and other capabilities to support the needs of our clients.
- Lead and administer the SOC tools (SIEM, SOAR, IDS, EDR, etc.).
- Lead threat hunting requirements and reports.
- Notify SOC manager of all elevated incidents and keep appraised of progress.
- Work with client in remediation efforts.
- Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation.
- Formulate and report on information provided by Endpoint Detection and Response services.
- Collaborate with Incident Response efforts when responding to a potential incident.
- Review, present, and support reporting of KPIs for clients.
- Lead and establish the tuning of sensors or systems.
- Review, present, collect, and research data about events in the SIEM.
- Triage, investigate, and resolve escalations of potential incidents.
- Build network diagrams and asset identification of new clients.
- Maintain communications with clients over the hotline and email.
- Manage monthly rotations of shifts, including weekends.
- Lead and support 24/7 remote client system monitoring and analysis.
- Present, collect, design, and implement data sources for inclusion into SIEM or SOAR.
- Identify, drive, and resolve events within the SIEM or SOAR for prioritization and elevation.
- Lead, approve, design, and implement SOAR within the SOC ecosystem.
- Oversee and audit work within a security operations ticketing system.
- Build, approve, and implement new signatures and correlated searches based on a variety of requirements.
- Lead and collaborate with the delivery team for the installation of sensors.
- Formulate and oversee playbooks, SOPs, templates, and workflows.
- Perform other duties as assigned.
- Comply with all policies and standards.
- Bachelor's Degree in Cybersecurity, Computer Science, Computer Engineering, Electrical Engineering, or a related technical field, and 3 years of relevant experience is required, OR applicable years of experience may be considered instead of the degree requirement.
- Advanced understanding of cybersecurity principles and general knowledge of cybersecurity technologies, as well as industry-recognized certifications.
- Advanced knowledge of cybersecurity vulnerability assessments, penetration tests, and the tools/techniques involved in both.
- Advanced knowledge of the capabilities and/or configuration of cybersecurity controls, specifically those relating to firewalls, access control, authentication, anti-virus/anti-malware, patching, and logging.
- Advanced knowledge of legacy, current, and emerging state-of-the-art computer and network systems technologies, architectures, and products.
- Advanced knowledge of applicable cybersecurity standards involving control systems, including those relating to process networks.
- Knowledge of physical cabling for network communications and control system input/output.
- Ability to obtain and maintain access to current and future client sites, including the ability to obtain and maintain applicable U.S. security clearances.
- Effective written and oral communication skills.
- Strong analytical and critical thinking skills.
- Ability to operate under pressure and under tight deadlines, to operate in on-site industrial, corporate, and government work.
- Demonstrated capability to make sound decisions based on good security practices and principles.
- Demonstrate an understanding of business principles and operational security practices specific to engineering and/or security consulting.
Yearly: $ – $. The expected compensation range for this position is displayed in compliance with all local/state regulations. The total annual…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×