Logo
Lorven Technologies

Cybersecurity Engineer-Rochester, NY & Pittsburgh, PA - Onsite- Local prefer

Lorven Technologies, Pittsburgh, PA, United States


Role: Cybersecurity Engineer

Location: Rochester, NY & Pittsburgh, PA - Onsite- Local preferred

Must have: Rail/Metro/Aero/Auto Industry exp ( do not submit other industry candidates) - Rail & Metro will be preferred.

Must Have: Hands-on experience in areas like Conducting risk analysis and assessments, implementing cybersecurity policies/controls and responding to and remediating security incidents is a must for the position.

Experience: Mandatory:
  1. Experience with direct responsibility for hands on architecture, design, development
  2. Experience related to Cybersecurity in general, deployment experience of security technologies
  3. Experience with Project Management
Key accountabilities:
  1. Analyze Program security needs (including laws and regulations), determine security objectives and main security risks strategy
  2. Plan security activities within development life cycle, estimate costs and duration, their impacts related to program execution, Identify training needs
  3. Is responsible for Cost / Quality / Delay of Program Cybersecurity deliverables, as needed per Project / program context :
  4. Cybersecurity context, and Cybersecurity Risk Analysis
  5. Cybersecurity Architecture definition and requirement allocation
  6. Cascading of requirement to suppliers, Manage Third Parties Risks,
  7. Application of Cybersecurity Assurance Level
  8. Definition of Cybersecurity Operating Procedures
  9. Evaluation of the Project/Program achieved Cybersecurity level
  10. Provide support during technical design meetings for cybersecurity activities
  11. Obtain agreement from Program/Customer about on the set of security measures to be implemented
  12. Manage vulnerabilities and Cybersecurity issues and actions plan,
  13. Manage Program Cybersecurity related communication,
  14. Report on Program Cybersecurity status
  15. In case of external Cybersecurity audit, manage the relationship with auditors Establish lessons learned
  16. Promoting the Alstom Code of Ethics and adhering to the highest standards of ethical conduct
Desirable:
  1. Experience in embedded or OT/ Industrial systems (railway / aeronautics ...)
  2. Experience working with engineering teams
Competencies & Skills
  1. Engineering Background
  2. Knowledge of main Cybersecurity standards and regulations, such as: ISO 2700X, 62443, NIST, APTA
  3. Knowledge of some Cybersecurity solutions and areas
  4. Methods of Cybersecurity risk analysis Architecture concepts and techniques of systems and networks, operating systems and associated programming languages.
  5. Knowledge of the main techniques for evaluating systems security