Senior Technical Consultant - OT Cyber Security
Role details
Job location
Tech stack
Job description
As a key member of the team, you will be able to access a range of benefits, from targeted professional development, the opportunity to contribute to the direction of our business and to help us improve the way we do things. You will contribute to the capability of our team providing cyber security and strategy advice, technical assurance, solution guidance, specification, design, and testing assurance to our domestic and international clients.
You will provide technical consultancy services in close alignment with client needs and will be leading WSP's cyber security deliverables through the lifecycle of an OT/IT development and Digital Transformation projects. You will also be providing strategic advice across our client spectrum as part of your delivery and growth role.
You will have a background in Cyber Security, OT, Integration or Systems Engineering with a consultancy or supplier. You will ideally have led teams and worked with junior cyber security professionals and supported them in their career development.
You and your team will be involved in the following activities;
- Advising the client on Cyber Security compliance especially in regard to NIS-D, NIST, ISO 27001, ISA/IEC 62443 and other relevant industries standards and best practices
- Developing a framework for governance as well as developing Cyber Security and Information Security Management systems
- Analysing Cyber Security controls, commenting on an architecture proposal and conducting Threat and Risk assessments
- Cyber Security requirements analysis and tailoring them to the client's needs
- Understanding business and technical requirements and translating them into tangible actions
- Collaborating with clients, government agencies, partners and supply chain to define technical and procedural solutions to complex problems
- Working across projects to support the delivery of best practice Cyber Security
- Present to clients our Cyber Security services and define the best possible way to support them with challenges in Digital Resilience, * Specifics of OT, IT and IoT/IIoT cyber security, We are committed to supporting our people, giving you the tools to make improvements to your health and wellbeing through our Thrive programme.
Our Virtual GP service gives you access to an NHS or Irish Medical Council GP at a time and place that suits you - giving you peace of mind and quick access to medical advice when you need it most. We also provide reasonable workplace adjustments for those in need. Additionally, you can benefit from the Gymflex scheme, which offers up to 40% off annual gym memberships through our WSP flexible benefits program, as well as a comprehensive menopause support package.
Flex your time
To enhance work-life balance, WSP offers the "WSP My Hour," allowing you to take one hour each day for personal activities, with the flexibility to make up the time earlier or later that day.
We also provide part-time and flexible working arrangements, the option to purchase additional leave, and the ability to use your bank holiday entitlement to suit you.
Your development
We understand the importance of development and training to you. That's why we foster a supportive environment that invests in your growth, whether through training, mentoring, or Chartership.
#WeAreWSP
Here at WSP we positively encourage applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, gender reassignment, religion or belief, marital status, pregnancy or maternity/paternity. As a Disability Confident leader, we will interview all disabled applicants who meet the essential criteria, please let us know if you require any workplace adjustments in support of your application.
Requirements
- Industry specific experience of applied cyber security, ideally gained within the following sectors; Energy e.g. Nuclear, Oil/Gas, Electricity, Rail/Road, Healthcare, Smart Infrastructure/Buildings, Aviation, or Maritime.
- Team leadership skills and early career professionals development
- Government Frameworks
- Writing proposals in collaboration with the sales team
- At least one of Telecoms, SCADA, mission critical, safety critical or big data architectures
- Threat modelling, Vulnerability analysis, Risk matrix modelling.
- Secure DevOps and secure systems engineering lifecycle
- Security Policy and governance
- Cloud Security including OT in the Cloud
- Incident Management frameworks, Security incident analysis, digital forensics, crisis management, SOC operations and supporting tools
- Strong knowledge and practical experience of cyber security platforms/tooling including IDS/IPS, SIEM, EDR/MDR, and system/device hardening would be advantageous.
Also, during your professional experience you will have gained experience in an OT/IT or electronics engineering/systems company with knowledge and practical experience in leading teams, collaborating with clients and partners within a Cyber Security environment.
We are looking for someone who has sound practical knowledge on the use and application of risk assessment methodologies in systems and software development (including Agile, ITIL and V-model processes) and combining them for optimal solutions.
If your career has given you the opportunity to author and publish technical reports, advise clients, work with formal security frameworks including ISA/IEC 62443 and NCSC's CAF framework and define and design OT solutions from a security perspective then you would be a real asset to our team.
Adding to the Cyber Security capability's further growth in WSP, you are able to define new services and offers to clients who need advice and support in their Cyber Security activities and responsibilities.
Client-facing experience and excellent communications skills, both written and face- to-face with the ability to work well as part of a team. Experience in a consultancy, pre-sales or security engineering role would be an advantage.
A degree in an engineering, computer science or other technical discipline or equivalent industry experience. A chartership in Engineering or Cyber Security or equivalent professional registration or the planning of achieving one is highly recommended.