Responsable Architecture Systme Cyberscurity Professional

3 - 8 years

7 - 12 Lacs

Posted:6 days ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Job Description Summary
Job Description

Description de l'emploi
Job Description Summary
Le/La responsable architecture systme cyberscurit coordonne larchitecture des systmes complexes sur les aspects cyberscurit. Il/Elle travaille avec les Lignes de Produits pour clarifier la rpartition des responsabilits et assurer linteroprabilit sur les aspects cyberscurit.
Ce rle aide les Lignes de Produits pendant les phases dappel doffres, dingnierie, ainsi que les phases de conception darchitectures de rfrence, jusqu la livraison, opration et maintenance des systmes.
Ce rle contribue galement aux volutions du process dingnierie, aux audit internes et amliorations continues, en conformit avec nos politiques internes, standards et les rgulations comme IEC 62443-2-4, IEC 62443-3-3, NIST, NERC CIP, BDEW, etc.
Ce rle contribue galement la gestion des vulnrabilits et incidents au niveau systme, en lien avec les quipes concernes au sein de Grid Solutions et de GE Vernova.
Le/La responsable architecture systme cyberscurit rapporte au responsable cyberscurit de Grid Solutions.
Job Description
Responsabilits :
Dfinir et maintenir la rpartition des responsabilits, les architectures de rfrences et assurer linteroprabilit de lingnierie sur les aspects cyberscurit, dont la documentation, en conformit avec les politiques GE Vernova.
Contribuer avec les Lignes de Produits aux audits darchitecture et de scurit pour les projets complexes.
Apporter un support aux Lignes de Produits pour les appels doffre et les fonctions dingnierie projet pour assurer le niveau de qualit et la livraison de systmes complexes au niveau de scurit souhait.
Piloter les documentations relatives la cyberscurit des systmes complexes : processus, recommendations, procdures.
Coordonner et contribuer aux certifications lies aux systmes complexes (IEC 62443-3-3) et au rle dintgrateur systme (IEC 62443-2-4)
Contribuer la gestion des incidents et vulnrabilits des systmes, en conformit avec les politiques internes, en appui des Lignes de Produits.
Raliser des valuations de vulnrabilits sur les systems complexes et maintenir les mthodologies associes.
Apporter un support aux Lignes de Produits pour les artifacts dingnierie, les valider et sassurer que les documentations soient jour.
Effectuer des audits internes rguliers sur les aspects cyberscurit de nos processus dingnierie afin de sassurer de leur conformit et de leur amlioration continue.
Contribuer la gouvernance scurit des produits : conformit aux politiques internes, aux standards et rgulations.
Partager les bonnes pratiques et retours dexprience, mettre jour en continu les recommandations techniques en tenant compte de lvolution des technologies, en collaboration avec la communaut scurit produit , les architectures et experts.
Transmettre et former en interne sur les sujets lis aux standards cyberscurit, notamment pour une audience R&D, ingnieurs, commerciaux, architectes, responsable produit
Qualifications souhaites :
Bachelor en informatique ou spcialisation STEM (sciences, technologie, ingnierie et mathmatiques
Exprience confirme sur les architectures systems du secteur lectrique, minimum 5 ans
Minimum 3 ans dexprience sur la conception darchitectures scurises design, DMZ, appliances de scurit, de prfrence en environnement Operational Technology (OT)
Connaissance approfondie des systmes industriels et de leurs contraintes, SCADA, DMZ, architectures, et protocoles de communication, notamment Modbus, DNP3/IEC 104 et IEC 61850
Veille sur les standards cyberscurit et comprhension du paysage (acteurs, tendances, technologies, stratgies possibles)
Exprience avec les quipements telecom et rseau (routeurs, switches, firewalls)
Excellentes capacits de communication et matrise de l'anglais crit et oral
Capacits travailler efficacement en quipe, avec diffrents dpartements, dans un environnement international
Connaissances approfondie des frameworks, standards et rgulations relatifs la cyberscurit en environnement OT : NERC CIP, IEC 62443, IEEE 1686, IEC 62351, Directive NIS2, NCSC CAF, AES CAF, NIST, etc.
Comptences additionnelles :
Les certifications de scurit sont un plus (ex. ISA, CISSP, SANS, ISACA)
Esprit client
Comptences interpersonnelles et leadershi
Inclusion & Diversity
La Mission Handicap Grid Solutions facilite lintgration des personnes en situation de handicap.
Chez GE Vernova, nous croyons en la valeur de votre identit, de votre parcours et de vos expriences uniques. Nous nous engageons favoriser une culture inclusive, o chacun se sent habilit faire de son mieux parce qu'il se sent accept, respect et sa place. Cliquez ici pour en savoir plus :
La diffrence cre lnergie.
Job Description Summary
The System Architecture Cybersecurity Leader oversees the architecture of complex systems from a cybersecurity perspective. He/She works closely with Business Lines to ensure a clear Division of Responsibilities and interoperability from a cyber perspective.
This role supports Business Lines teams during tendering and engineering phases from design of reference architectures to the delivery and maintenance. The role also contributes to regular engineering process updates, internal audit, improvement, in compliance with GEV Policies international standards, and regulations like IEC 62443-2-4, IEC 62443-3-3, NIST, NERC CIP, BDEW, etc. The role supports also the management of systems vulnerabilities and incidents in coordination with concerned Teams and GEV Incident Leader.
The System Architecture Cybersecurity Leader will report to Grid Solutions Cybersecurity Leader.
Job Description
Responsibilities:
Maintain the Division of Responsibility, reference architectures, and interoperability standards for engineering, including documentation, while ensuring compliance to GEV Policies.
Support Business Lines into performing architecture audits for existing complex projects.
Support tendering and engineering functions to ensure high quality, high secure complex systems delivery.
Oversee the development of documentation on process, standards and guidance related to engineering cybersecurity for complex systems.
Coordinate and contribute to complex systems (IEC 62443-3-3) and system integrator (IEC 62443-2-4) certifications.
Support Business Lines for the Incident and Vulnerability Management compliance according to GEV Policies.
Conduct vulnerability assessment in complex systems and maintain the vulnerability assessment methodology.
If needed by Business Lines, could support directly project teams to ensure all relevant engineering artifacts are ready and verified, and ensure tracking.
Perform regular internal audit on the engineering processes to evaluate compliance and identify improvement in both the process itself and its implementation in Business Lines from a cyber perspective.
Contribute to the Product Security Governance: compliance with GEV Policies, international Standards and regulations.
Share best practices and lessons learned and continuously update the technical cyber security architecture, based on changing technologies, in collaboration with product security community, domain architects and experts.
Develop and conduct relevant security training for various internal audience, such as project engineers and architects.
Required qualifications:
Bachelors Degree in Engineering, Computer Science, or Information Technology from an accredited university
Demonstrated experience with systems architecture in electric sector and associated documentation
Minimum 3 years of experience in secure architectures design, DMZ, security appliances, preferably in an Operational Technology (OT) environment
In-depth knowledge of industrial control systems, SCADA architectures, and communication protocols, including Modbus, DNP3/IEC 104 and IEC 61850.
Demonstrated knowledge and understanding of network communications protocols in the TCP/IP network stack.
Awareness of latest technical developments in the cyber security community
Demonstrated experience with Linux, VxWorks and Windows operating systems including user account management, security / system hardening, device control, and patch management.
Experience with Telecom and Network Equipment (Routers, Switches, Firewalls)
Experience with security technologies, such as
o Symmetric and asymmetric cryptography and PKI infrastructure
o LDAP, RADIUS, SSH, SFTP, HTTPS, SYSLOG
o Encryption, TLS, RSA and code signing
Proven experience with cybersecurity frameworks and standards relevant to OT environments, such as NERC CIP, IEC 62443, IEEE 1686, IEC 62351 as well experience with NIS Directive, NCSC CAF, AES CAF, NIST
Excellent oral and written communication skills
Ability to work effectively in a team and across functions, partnering with other teams in a worldwide environment
Nice to have skills:
Experience with penetration testing and vulnerability assessment
Virtualisation solutions (VMWare, Hyper-V, Proxmox, etc.)
Cyber security certification (ex. ISC2, SANS, ISACA, CISSP, ISA) is a plus
Strong customer service mind-set
Strong interpersonal and leadership skills
Behavioral skills:
GEV leadership behaviors: deliver with focus, lead with transparency and act with humility
Pro-activeness, sense of urgency, resistance to pressure, autonomy; ability to interact with multiple functions and teams worldwide
Continuous improvement mindset
Fluent English speaking and writing mandatory
Strong oral and written communication skills

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You

hyderabad, bengaluru