jobholds

CS IACS Identity & Secrets Engineer

كولومبيا تاريخ النشر: 2023-02-15 63 مشاهدة

تفاصيل ومتطلبات الوظيفة

إعلان مروّج
<p><b>CS IACS Identity &amp; Secrets Engineer</b><br />
<br />
<b>About SLB </b><br />
<br />
Together we create amazing technology that unlocks access to energy for the benefit of all. We are a global technology company, driving energy innovation for a balanced planet. With operations in 120 countries, we have more than 98,000 from 170 different nationalities, we lead the industry focused on diversity and inclusion. Visit company website for more information.<br />
<br />
<b>About the Bogota Information Technology Center (BITC) </b><br />
<br />
The Bogota Information Technology Center (BITC) has a fundamental and critical role in SLB corporate transformation and for delivering digital solutions to the larger organization. Our company has embarked on a corporate transformation to deliver a step change in the reliability, efficiency and integration of our technologies, products and services. Advanced technologies are key enablers to this and encompass all aspects of business systems, including the organization platform and processes. Investments in, and building strong competences across our technology pillars - SAP, Digital Enterprise Systems, Data and Analytics, Digital Operations, Security are key to an integrated digital that is positioned to deliver superior results.<br />
<br />
<b>About this role </b><br />
<br />
The Cyber Security IACS Identity Engineer is responsible for helping define, develop, and curate the necessary standards and controls required for the protection of Schlumberger&
39;s IACS (Industrial Automation &amp; Control Systems) environments, across our enterprise, manufacturing, and digital portfolios.<br />
<br />
This position requires an individual with strong knowledge of business processes, a thorough understanding of cyber, IT, Identity Management, engineering/architecture, industrial automation, control system technologies, and program management.<br />
<br />
The Cyber Security IACS Identity Engineer proactively works within the IT cyber security function and Schlumberger Divisions, and in partnership with corporate stakeholders to integrate IACS cybersecurity adoption transparently into the business.<br />
<br />
The Cyber Security IACS Identity Engineer is responsible for architecture and design of an Identity Management program from an OT perspective. He / She has the responsibility to oversee, develop, align and approve and perform other necessary tasks across the scope of the IACS program (Stages 2 and beyond - see below).<br />
<br />
<b>Qualifications and Requirements </b><br />
<br />
Essential qualifications</p>

<ul>
<li>Experience working in IT within enterprise organizations.</li>
<li>Experience supporting both business users (non-IT) and IT users.</li>
<li>Experience supporting any directory service (AD, AAD, LDAP, etc).</li>
<li>Sound understanding of DNS.</li>
<li>Able to think critically about requests and situations to make good choices and take the right action.</li>
<li>Able to think logically and troubleshoot.</li>
<li>Experience in application support and change management.</li>
<li>Maintain agreed KPIs and targets.</li>
<li>Key contributor to the IACS cyber security program, standards, and associated processes defined through development of the program</li>
<li>Participates in the establishment of an IACS-specific information security identity strategy and reference architecture, including supporting standards and frameworks that are aligned with the overall business strategy.</li>
<li>Provides support developing and maintaining security assessment practice documentation i.e., policies, plans, processes, procedures, guidelines, standards, methodologies, report templates, questionnaire templates.</li>
<li>Assess assigned security project tasks and milestones and collaborate with team members according to their respective strengths.</li>
<li>Performs daily checks on outstanding project tasks keeping the team and management updated with completed milestones.</li>
<li>Provide feedback to management on performance issues and improvements on implemented security project approaches, processes, procedures, methodologies etc.</li>
<li>Communicates and coordinates adoption of IACS cyber security requirements to defined stakeholders across the organization</li>
<li>Ensures that controls defined align with selected external frameworks and standards, such as ISA99, ISO/IEC, NIST-SP &amp; CSF Framework, and aligns with regulatory, internal or customer requirements.</li>
<li>Develops, updates, and maintains the security architecture roadmap and corresponding reference architecture elements to guide the business in developing solutions that utilize repeatable patterns for the purposes of securing the OT landscape.</li>
<li>Actively support deployment and execution an IACS cyber security awareness program to educate relevant personnel</li>
<li>Integrates IACS secure systems development processes with security policies and information protection strategies.</li>
<li>Defines requirements for monitoring and responding to cyber security risks impacting IACS systems.</li>
<li>Supports continued development of the IACS cyber security program to mitigate current and emerging threats.</li>
<li>Contributes to the development of training program and delivery of IACS security training to target groups.</li>
<li>Stays current with the evolving threat landscape to IACS security and high-profile attacks on IACS systems.</li>
<li>Fundamental understanding of IT and OT network communication protocols (For example: TCP/IP, UDP, DNP3, Modbus, IEC 61850, OPC, OPC UA, PROFINET, etc.).</li>
<li>Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, and NIST.</li>
<li>Knowledge of assessing against standards and frameworks including, IEC-62243/ISA-99, NIST CSF</li>
<li>Support in reporting, exceptions, and issues to CS IACS Program Manager, and Functionally to CS Identity Secrets Engineering Manager.</li>
<li>Carry out regular and adhoc audit tasks as required.</li>
<li>Must exhibit excellent analytical skills, the ability to manage multiple projects under strict timelines, as well as the ability to work well in a demanding, dynamic environment and meet overall objectives.</li>
<li>Strong large-scale project management skills and experience.</li>
<li>Ability to work at level from initial concept to operationalimplementation.</li>
<li>Ability to support development of technical documentation such as architectures, process diagrams, procedures, policies, verification and validation documentation and integration diagrams.</li>
<li>Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security related concepts to technical and nontechnical audiences.</li>
<li>Experience in preparing executive summary presentations.</li>
<li>Ability to work in a fast-paced large multi-country enterprise environment.</li>
<li>Willing to work flexible hours when required and appropriate.</li>
<li>Fluency in written &amp; spoken English.</li>
<li>Attends meetings with management and users</li>
<li>Member of one or multiple teams</li>
</ul>

<p>Other skills and abilities</p>

<ul>
<li>AD experience: GPOs, Group Management, Sites and Services, Trusts.</li>
<li>AAD experience: Conditional Access, MFA, integration with M365 applications, Intune policies, AAD audit logs, Azure DevOps Pipelines/Logic Apps/automations.</li>
<li>IAM: Understanding of modern Identity &amp; Access Management principles.</li>
<li>Working in an ITIL or ITSM environment, especially with regards to operational support and Change Management.</li>
<li>Auditing and analysis skills: collation and reviewing of logs, from operating systems, applications and aggregation tools (Splunk and Change Auditor in particular).</li>
<li>Delivering of training.</li>
<li>Working in an Agile or Scrum environment, within Sprints.</li>
<li>Supports and executes risk-based methodologies for cybersecurity assessments of ICS systems, services, and networks</li>
<li>Supports continued development of the IACS cyber security program to mitigate current and emerging threats.</li>
<li>Reporting of work undertaken through Azure DevOps or other reporting systems.</li>
<li>Familiarity or willingness to learn cybersecurity functions including vulnerability assessment and management processes, identity and access management in ICS environments, incident response and monitoring, etc.</li>
<li>Familiarity or willingness to learn operational technologies such as Programmable Logic Controllers (PLCs), Supervisory Control and Data Acquisition (SCADA) software, &amp; Distributed Control Systems (DCS).</li>
</ul>

<p><b>SLB as an employer </b><br />
<br />
As a leading employer in our industry, SLB is proud to offer a highly competitive package of base and incentive compensation as well as a comprehensive benefits program designed to support the health, wellness and financial security of our employees and their families. SLB is an equal employment opportunity employer. Qualified applicants are considered without regard to race, color, religion, sex, national origin, age, disability, status as a protected veteran or other characteristics protected by law.</p>

<p>&nbsp;</p>
شارك هذه الوظيفة مع زملائك:

ملخص الوظيفة

المجال / التصنيف تكنولوجيا المعلومات
الدولة كولومبيا
نوع الدوام دوام كامل
إعلان وظيفة موثوق ومعتمد تم التحقق من بيانات الإعلان لضمان تجربة تقديم آمنة ومباشرة للباحثين عن عمل.
إعلان مروّج