Expert OT Security Architecture

1 day ago


Toronto, Canada Disability Solutions Full time
At CN, we work together to move our company-and North America-forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and safely and our employees can focus on value-added tasks. You will be able to develop your skills and career in our close-knit, safety-focused culture working together as ONE TEAM. The careers we offer are meaningful because the work we do matters. Join us
Job Summary
The purpose of this role is to evaluate Operational Technology (OT) solutions, configurations, and designs against security requirements, and define cybersecurity reference architectures and standards for all OT environments at CN.
Main Responsibilities
OT Security Architecture Practice
• Put in place the proper sets of OT security architecture controls to ensure authenticity, non-repudiation, and least privilege commensurate with risk requirements.
• Ensure the OT security architecture is maintainable, sustainable and properly documented.
• Maintain and build relevant, current, valid and reliable team knowledge related to OT and Security Architecture to leverage existing cybersecurity infrastructure and process, where appropriate, while supporting Transportation, Mechanical and Network Ops functions in enacting risk-based security controls as part of a broader OT environment.
• Facilitate key decisions involving OT architecture and technologies.
• Advance security team accomplishments and competence by planning delivery of solutions; answering technical and procedural questions for less experienced team members; teaching improved processes; mentoring team members.
• Ensure the full documentation of security designs, as built architectures and operational processes through clear diagrams and well-written documents.

OT Security Roadmap and Strategy
• Collaborate with the CISO, Sr Mgr OT Security Architecture, cybersecurity team, portfolio managers, other architects, and I&T leadership to understand the business direction and consequent impact on the security posture.
• Define the proper course of action and investment strategy by building business cases and security roadmaps.
• Engage the OT vendor ecosystem to understand capabilities and limitations to drive improvements in the security posture of current products, and assist in the selection of the right partners.
• Continuously monitor and evaluate the environment through self-assessments and independent security reviews. Enable management to identify deficiencies and inefficiencies and to initiate improvement actions though security roadmap and strategies.
Requirements
Education/Certification/Designation
• Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, System Analysis or other relevant field
• At least one recognized security certification: e.g. Certified Information Systems Security Professional (CISSP), Global Industrial Cyber Security Professional (GICSP), ISA/IEC 62443 Cybersecurity Expert, etc.
• Architecture related certifications (TOGAF, Zachman, CISSP-ISSAP, etc.) preferred

Skills/Knowledge
• Ability to define and organise an architecture security apparatus in reusable building blocks: patterns, services, components, capability models, etc;
• Demonstrated capability to understand the security implications of complex business operations and how they are linked to technological solutions that provide practical risk mitigation and business enablement;
• Strong knowledge of the processes, methodologies, tools and techniques, used for building large information technology systems;
• Proven experience in applying a structured approach to problem resolution in large, geographically dispersed organizations with 24/7 operations;
• Strong knowledge of the technologies and architecture principles required to build complex operational technology systems such as: Programmable Logic Controllers (PLCs); Supervisory Control and Data Acquisition (SCADA); Distributed Control Systems (DCS); Human Machine Interface (HMI); Industrial network ports and protocols (such as TCP/IP, UDP, DNP3, Modbus, IEC 61850, PROFINET, OPC, LonWorks, DALI, BACnet, KNX, EnOcean, etc.); etc;
• Deep understanding of ICS design considerations with emphasis on human safety and the availability/security of operating environment as well as threats, vulnerabilities, and exploits in ICS environments and appropriate mitigation techniques.
• Ability to derive security requirements from vaguely formulated business needs;
• Ability to interact with a broad cross-section of personnel to explain and enforce security measures
• Excellent written and verbal communication skills;
• Detail-oriented self-starter with a high level of commitment and personal motivation;
• Knack for prioritizing tasks and working in a fast-paced environment;
• Knowledge of standards, regulations and legislation governing Information Security, e.g. NIST, ISO 27001, OWASP, ISA 62443;

Experience
• Minimum 12 years overall IT work experience
• Minimum 8 years OT experience
• Minimum 5 years experience in OT security architecture experience
Assets (if applicable)
• Software development experience
• Experience with Agile and DevOps methodologies
• Knowledge of general IT security architecture and technologies including: service-oriented-architectures, mobile technologies including Mobile Device Management (MDM), data-centric design, advanced analytics, AI, Identity and Access Management (IAM) lifecycles, Digital Forensics, End Point Encryption, Encryption Key Management, Database Security, Enterprise Directory Services, IDS, IPS, Next Generation Firewall, Application Firewall, Enterprise Password Vaults , Cloud SaaS /PaaS/IaaS Security, SIEM, etc.
• Deep knowledge of security foundations: cryptography, Root of Trust, security models, etc.
• Experience with NGFW, VPN, IPS/BDS, vulnerability management, access management, SIEM, and endpoint security in OT environments
• Railroad, transportation, or Global industrial experience is a significant plus
Working Conditions
Occasional business travel (Canada and US) in accordance with CN policy.
This position is posted as a grade LEVEL 7. For internal candidates, note that the grade level of the position may adjust based on the employee's experience.
About CN
CN is a world-class transportation leader and trade-enabler. Essential to the economy, to the customers, and to the communities it serves, CN safely transports more than 300 million tons of natural resources, manufactured products, and finished goods throughout North America every year. As the only railroad connecting Canada's Eastern and Western coasts with the Southern tip of the U.S. through a 19,500 mile rail network, CN and its affiliates have been contributing to community prosperity and sustainable trade since 1919. CN is committed to programs supporting social responsibility and environmental stewardship. At CN, we work as ONE TEAM, focused on safety, sustainability and our customers, providing operational and supply chain excellence to deliver results.

CN requires that all employees be fully vaccinatedagainst COVID-19 and provide proof thereof as a condition of employment. TheCompany's vaccination mandate extends to employees of our wholly ownedsubsidiaries as well as CN's contractors, consultants, agents and suppliers andanyone who accesses CN properties in Canada.
CN is an employment equity employer and we encourage all qualified candidates to apply. We thank all applicants for their interest, however, only candidates under consideration will be contacted. Please monitor your email on a regular basis, as communication is primarily made through email.

  • Toronto, Ontario, Canada Disability Solutions Full time

    Job SummaryThe purpose of this role is to evaluate Operational Technology (OT) solutions, configurations, and designs against security requirements, and define cybersecurity reference architectures and standards for all OT environments at CN. Main Responsibilities Develop and implement OT security architecture controls to ensure authenticity,...

  • OT Solution Architect

    1 month ago


    Toronto, Canada mccainfood Full time

       Position Title: OT Solution Architect Position Type: Regular - Full-Time ​Position Location: Toronto HQ Requisition ID: 31136   McCain Foods is seeking a hands-on forward-thinking IT/OT Solution architect to join our global IT/OT team. You will play a key role in our efforts to redefine and transform our OT infrastructure and solutions for the...


  • Toronto, Ontario, Canada mccainfood Full time

    OT Solution Architect Job OverviewThe McCain Foods global IT/OT team is seeking a highly skilled and experienced OT Solution Architect to redefine and transform OT infrastructure and solutions for the future across 30+ plants globally. This role requires expertise in industrial control systems/operations technology solutions, software architecture, and...

  • It/ot Internship

    2 months ago


    Toronto, Canada Northland Power Full time

    Who We Are: At Northland, we’re enablers of change, united by our journey to transform the energy sector into the foundation for a sustainable future. Since our inception, we’ve been early movers in the energy industry, adopting new initiatives that pave the way for communities across the globe and helping forge their path towards a carbon-neutral...

  • Ot Specialist Ii

    6 months ago


    Toronto, Canada McCain Foods (Canada) Full time

    **Position Title**:OT Specialist II **Position Type**: Regular - Full-Time **Position Location**:Florenceville GTC **Requisition ID**: 24758 **JOB PURPOSE**: They must be fully aware and educated on appropriate vendor solutions. A good working knowledge of Cyber Security concepts and design requirements would also be an asset. Ability to create and...


  • Old Toronto, Canada Canada Life Full time

    At Canada Life, we've been supporting the financial wellbeing of Canadians for over a century.This role will lead the design and implementation of the organization's security architecture strategy. Key responsibilities include aligning security measures with business goals, regulatory requirements, and emerging threats.The Security Architecture Lead will...


  • Toronto, Ontario, Canada Cisco Full time

    Company OverviewCisco Meraki is a leading provider of innovative networking solutions. Our mission is to simplify technology and empower our customers to focus on what matters most.About the RoleWe are seeking a highly skilled Senior Product Security Engineer to join our firmware security team. As a key member of this team, you will play a crucial role in...


  • Toronto, Canada S.i. Systems Full time

    Sr. Solution Architect to integrate core systems in an IT/OT landscape for our public sector client - RQ00093 Location: Hybrid - 1-2 days a week onsite Duration: 5-6 months (possibility of extension) Project Details: This is a role to fill a gap to build a new critical integration. A two-way integration is needed between core systems and is required to be...


  • Old Toronto, Canada Project Limited Full time

    Data Architecture Expert RoleProject X Ltd. is seeking a skilled Data Architecture Expert to join its team. The successful candidate will have a strong background in data architecture, data modeling, and database design.Key ResponsibilitiesData Strategy and PlanningData Modeling and DesignData Integration and ETL DevelopmentDatabase Management and...


  • Toronto, Canada S.i. Systems Full time

    Sr. Solution Architect to integrate core systems in an IT/OT landscape for our public sector client - RQ00093Location: Hybrid - 1-2 days a week onsite Duration: 5-6 months (possibility of extension)Project Details: This is a role to fill a gap to build a new critical integration. A two-way integration is needed between core systems and is required to be...


  • Toronto, Canada 6ixDesign Architecture & Engineering Full time

    6ix Design is a vibrant and dynamic development and consultation company that is on the cusp of extraordinary growth and innovation. At 6ix Design, we believe in the power of transforming ideas into reality. Our team of dedicated experts thrives on challenges, constantly pushing the boundaries to create solutions that drive progress. As we continue our...

  • Cloud Security Expert

    3 weeks ago


    Toronto, Ontario, Canada Astra North Infoteck Inc. Full time

    Key Requirements:We are seeking a Cloud Security Expert with 10+ years of experience to lead our security initiatives in Azure. Key skills include:Cloud security architectureDevOps expertiseExperience with AKSAzure cloud expertiseAgile project experienceAs a Cloud Security Expert at Astra North Infoteck Inc., you will design and implement secure cloud...


  • Toronto, Ontario, Canada Alstom Full time

    At Alstom, we're committed to creating a sustainable future for transport networks. Our mission is to reduce carbon emissions and increase mobility worldwide.We're currently working on the On-Corridor Works project in partnership with ONxpress consortium, transforming the Greater Toronto and Hamilton areas (GTHA) collective mobility through electrification,...


  • Toronto, Ontario, Canada Thomson Reuters Full time

    About the RoleWe are seeking a skilled Cloud Security Expert Architect to join our team at Thomson Reuters. In this exciting opportunity, you will play a key role in designing and implementing secure cloud infrastructure solutions.As a Cloud Security Expert Architect, you will be responsible for:Leading individual delivery roles for complex security...


  • Toronto, Canada Hydro One Networks Inc Full time

    **49442** - **Toronto** - **Regular** - **Ongoing** Hydro One is proud to be the largest electricity transmission and distribution provider in Ontario, serving nearly 1.4 million customers. We have a long history in the industry with our roots dating back over 110 years to 1906. Since then, we have worked to grow and evolve to meet the changing needs of our...


  • Toronto, Ontario, Canada Bell+Associates Architecture Full time

    Company OverviewBell+Associates Architecture is a reputable firm located in Ottawa, ON. Our team provides unique custom design solutions for residential and commercial clients. Job DescriptionWe are seeking an experienced Senior Architectural Technologist to join our team. This is a full-time on-site role that involves assisting with project development from...

  • Backend Engineer

    4 weeks ago


    Toronto, Ontario, Canada hireVouch Full time

    Job Title: Backend Engineer - Architectural ExpertToronto, Canada (Remote/Hybrid)We are a California-based company at the forefront of Artificial Intelligence, dedicated to delivering innovative solutions that empower businesses and individuals alike. As we expand our footprint into Toronto, Canada, we are seeking a seasoned backend engineer with expertise...


  • Toronto, Canada Kumaran Systems Full time

    About Kumaran SystemsWe are a leading technology company providing innovative solutions to our clients.Job SummaryAs a Cloud Architecture Expert at Kumaran Systems, you will play a key role in designing and building scalable data models and governing data for our cloud-based applications.About the RoleThis is a high-profile opportunity to join our team of...


  • Old Toronto, Canada Course Full time

    Job OverviewWe are seeking a highly skilled Digital Health Architecture Expert to lead the evolution of digital health IT and technology.About the Role:You will be collaborating with both internal and external stakeholders, leading development of organization architectural standards and architecture roadmaps. You will define and design the various layers of...


  • Toronto, Ontario, Canada Bell+Associates Architecture Full time

    Company Overview Bell+Associates Architecture is a reputable firm in Ottawa, ON, offering unique custom design solutions to residential and commercial clients. The company's team of experts collaborates closely with clients to achieve their vision while optimizing property features and respecting budgets. Salary Range: $90,000 - $140,000 + bonus program Job...