Secure Design: Develop and implement security architectures and frameworks specific to gas metering solutions, ensuring compliance with industry standards and regulatory requirements.
Threat Assessment: Conduct thorough security risk assessments for gas metering systems, identifying vulnerabilities and recommending appropriate mitigations.
Policy Creation: Establish and enforce security policies, procedures, and guidelines for gas metering applications and infrastructure.
Collaboration: Partner with engineering, operations, and IT teams to integrate security best practices into the design and deployment of gas metering technologies.
Incident Management: Lead investigations into security incidents, analyzing breaches within gas metering systems, and proposing enhancements to security posture.
Vendor Assessment: Evaluate third-party vendors and partners to ensure their solutions meet security standards and do not introduce risks into the gas metering environment.
Training and Awareness: Develop training programs to promote security awareness among staff and stakeholders involved in gas metering initiatives.
Regulatory Compliance: Stay abreast of relevant regulations and standards related to energy metering security, ensuring the organization remains compliant.
Requirements
Education: Bachelor’s degree in computer science, Information Security, or a related field; Master’s degree preferred.
Experience: at least 5 years of experience in IT security, with a focus on industrial control systems (ICS) or gas metering; at least 3 years in a security architect role.
Certifications: Relevant certifications such as CISSP, CISM, or GIAC is highly desirable.
Technical Knowledge: In-depth understanding of communication protocols and technologies used in gas metering, including SCADA systems and IoT security.
Regulatory Knowledge: Familiarity with industry-specific regulations and standards such as NIST, ISO 27001, and specific gas industry guidelines.
Analytical Skills: Strong analytical and problem-solving abilities, with the capacity to assess complex security environments.
Communication Skills: Excellent communication skills to convey technical information to both technical and non-technical audiences.