Job Description for Cyber Security Specialist – Technical and Commercial Proposal for Cyber Security Offerings along with execution of Cyber Security Projects.
The primary role involves acting as a Digital Substation PAC Cyber Security Specialist: Technical and Commercial Proposal for Cyber Security Offerings along with execution of the Cyber Security scope across all substation projects. This role requires the candidate to create Technical and Commercial Proposal for Customers based on customer specifications and applicable regulations in the relevant country or region. The Candidate is also responsible for creating Cyber Security awareness in various teams, Customer, and cross-segments while collaborating with the broader Cyber Security community within the company. The Candidate will be responsible for execution of Cyber Security scope, both in dedicated Cyber Security orders and as the Cyber Security workstream embedded in every PAC and digital substation project. The Candidate will support in creation of Cyber Security as a Business model to have an impact on OI. Additionally, the candidate will be responsible for development of team and procedures so that Cyber Security as a Business becomes independent model to generate revenue.
The Key Responsibility Area (KRA) for the position will be:
-
: The Cyber Security Specialist will create Technical and Commercial Proposal based on Customer Requirements and Regulatory demand, integrating Cyber Security into the overall Protection, Automation and Control (PAC) solution to comply with Cyber Security regulations and industry best practices, and to generate OI. The Candidate must keep his knowledge up to date to craft solutions based on latest Cyber Security trends and PAC technologies to meet the dynamic market demand.
-
: The Cyber Security Specialist will be responsible for execution of Cyber Security scope across the Business Unit, covering both dedicated Cyber Security orders and the Cyber Security requirements embedded in every PAC project. This includes activities such as Assessments as per IEC62443 / ISO 2700 series, Vulnerability & Patch Management, Security Incident & Event Management, etc. and handling day-to-day Cyber Security needs for the Business Unit.
-
: The Cyber Security Special day-to-day be responsible for Conducting internal trainings for various teams to upgrade the Cyber Security know-how. Additionally, the candidate will be responsible for conducting trainings for customers to attract business opportunities for Siemens Energy by showcasing the capabilities and offerings.
-
: Supporting sales in customer discussions on cybersecurity topics, acting as a technical advisor to help the customer identify the solution that best fits their operational, technical and regulatory needs, and contributing to securing orders.
-
: Representing the Cyber Security capabilities in various external forums like ISA, IEEMA, CBIP, CEA and MOP to establish a connect which in turn shall generate benefit for the new business model.
Qualification
- Successfully completed degree in B-Tech/B.E. or comparable training with relevant professional experience of 15-17years in the field of Operation Technology (OT) for Power System.
-
The Candidate must have experience on Siemens AG PAC Systems e.g. SICAM Device Manager (S8), SICAM PAS, SICAM Wincc/SCC and DIGSI (Siprotec 5). Experience with PAC platforms from other vendors such as SEL, ABB, GE or Schneider Electric is a plus.
-
The candidate must have Knowledge of Cybersecurity services topics such as patch management, Vulnerability Assessment, grid network analysis, protection, and automation .
-
The candidate must have solid knowledge of the ISA/IEC 62443 framework, covering at least the first three modules of the ISA certification path: Cybersecurity Fundamentals Specialist, Risk Assessment Specialist and Design Specialist. Holding valid certifications in these modules is preferred.
-
The Candidate must have Lead Auditor certification for ISO27001.
-
The candidate must have solid knowledge of substation Protection, Automation and Control architectures, including digital substation concepts, process bus and station bus (IEC 61850), Substation Automation Systems (SAS), the Cyber Security level and integration with the Control Center. This must be complemented by knowledge of Cyber Security aspects such as Secure Architecture design, Secure Remote Access and endpoint protection methodologies applied to OT environments.
-
The candidate must have knowledge of substation communication networks based on IEC 61850 (MMS, GOOSE, Sampled Values) and of the network and security devices required to build and protect them, including managed Ethernet switches, firewalls, routers and IDS/IPS. This includes the design and hardening of the critical network supporting Protection, Automation and Control functions, with attention to network segmentation, redundancy protocols (PRP/HSR) and secure remote access.
-
The candidate must have hands-on know-how on digitalization concepts such as Digital Substation and Digital Twin, and on the protocols and mechanisms used in substation automation, including Modbus, IEC 60870-5-101/103/104, the full IEC 61850 communication stack (MMS for client-server, GOOSE for fast peer-to-peer messaging and Sampled Values for process bus), network redundancy protocols (PRP and HSR as per IEC 62439-3), time synchronization (PTP/IEEE 1588 and SNTP), and SNMP for network monitoring.
-
The candidate must have knowledge for creating Technical offers and write-up of technical solutions.