Overview
Skills
Job Details
Job Title: CSC Specialist
Location: San Antonio, TX Fully Remote
Eligibility: Candidate must possess an active Secret Clearance
Job Description:
The Control Systems Cybersecurity specialist shall have a minimum of
five years experience in control system network and security design.
The Control Systems Cybersecurity specialist must have demonstrated
knowledge and experience applying Information Technology (IT) and
Operational Technology (OT) security strategies such as the application
of the National Institute of Standards and Technology (NIST) security
controls, exploitation techniques and methods, continuous monitoring,
and ICS acquisition life cycle as outlined in the NIST Special Publication
(SP) 800-82 (Current version).
The CSC Specialist must also possess broad knowledge of and experience
in the following areas:
Utility Control System (UCS):
A type of field control system used for control of utility systems such as
electrical distribution and generation, sanitary sewer collection and treatment,
water generation and pumping, etc. Building controls are excluded from a
UCS, however it is possible to have a Utility Control System and a Building
Control System in the same facility, and for those systems to share
components such as the Field Point of Connection (FPOC). A UCS is a
subsystem of a Utility Monitoring and Control System (CS) and is a class
of Field Control System (FCS).
Utility Monitoring and Control System (CS):
The system consisting of one or more building control systems and/or
utility control systems and the associated CS Infrastructure. In other words,
it is the complete utility monitoring system from the front end to equipment
controllers. At the highest level the CS is composed of a CS Platform
Enclave and CS Front End (jointly referred to as CS Infrastructure) and
connected Field Control System(s).
Manufacturing and Distribution:
Manufacturing can be categorized into process-based and discrete-
based processes; 1) Continuous processes associated with fuel, steam,
and other types of flows such as logistic distributions of solid material;
2) Batch processes, distinct steps conducted on quantity of material
leading to a finished product, e.g. food manufacturing and distribution.
Other Types of Control Systems:
Other types of controls systems that share similar characteristics of ICS
operating in different modes than ICS such as Emergency Management Systems, Public Safety, Communication Systems, etc. utilizing system
specific protocols, ports & services.
Qualifications:
- Minimum Five (5) years of relevant experience
- Certification meeting DOD 8570.01/8140.01.01/8140.01 IAT Level III or
IAM level III (CISM, CISA, CISSP, etc)
- Global Industrial Cyber Security Professional (GICSP)
- Ten years of practical industry, government and/or consulting
experience in information technology management.
- IT project management experience using Microsoft tools
- Knowledge and experience in managing information technology services
and strategies.
- Proficiency in basic analytical software such as Microsoft Excel and
Access, proficiency with the Microsoft Office suite, to include Word,
PowerPoint, and SharePoint.
- Five (5) years of relevant Certification and Accreditation (C&A)
experience
- National Institute of Standards and Technology (NIST) C&A experience
- DOD IA experience