The Senior Engineer plays a key role in securing industrial control systems for the Georgia electric grid and is GSOC's physical security subject matter expert. To perform this essential function, the Senior Engineer must demonstrate a high degree of technical and analytical capability, as well as an ability to learn and adapt to quickly changing technologies, procedures, and compliance requirements. You will be responsible for providing physical security engineering support for electric utility critical infrastructure. Expert-level experience with badging systems, credential management, video surveillance systems, intrusion detection systems, and physical protection of critical systems are key to success in this role.
Job Duties:
•Design, Implement, and Manage Physical Security Systems: Develop, deploy, and maintain enterprise-grade physical security systems, including access control, video surveillance, intrusion detection, and alarm systems, ensuring they meet the operational and compliance needs of our critical infrastructure facilities across the state of Georgia. Includes configuring and optimizing hardware and software components, troubleshooting complex issues, coordinating system upgrades, hardware refreshes, and implementing scalable solutions to address the evolving security needs of the organization.
•Drive Innovation in Security Technologies: Lead efforts to research, evaluate, and implement advanced security solutions and emerging technologies to strengthen the organization's physical security posture and digital operations infrastructure.
•Conduct Risk Assessments: Perform comprehensive security evaluations to identify vulnerabilities, propose mitigation strategies, and implement enhancements that address current and future threats.
•Provide Technical Leadership and Mentorship: Offer technical expertise, guidance, and mentorship to other security engineers and technicians, fostering professional development and ensuring high performance within the team.
•Ensure Regulatory Compliance: Collaborate with internal and external compliance and audit teams to ensure adherence to regulatory standards, including NERC CIP requirements. Develop and implement policies, processes, and procedures to support compliance efforts.
•Vendor and Contractor Management: Partner with third-party vendors and contractors to procure, deploy, and maintain equipment and services related to physical security systems, ensuring adherence to organizational standards and project timelines.
•Collaborate Across Teams: Work closely with operations, maintenance, engineering, and IT teams to ensure effective physical security systems to protect industrial control systems (ICS) and IT infrastructure.
Required Qualifications:
Education: Bachelor's degree in Cyber Security, Computer Science or Engineering, Information Systems/Technology, or a related field.
Experience:
•Minimum of 6 years of experience in information security, preferably with a focus on physical security
•In-depth understanding of physical security monitoring systems, including Video Management Systems, IP cameras, video recording devices, door locks and alarm systems
•Strong technical knowledge of information security architecture, protocols, and best practices
•Familiarity with network and system hardening techniques
•Experience in asset and change management principles and practices
•Excellent written and verbal communication skills, including the ability to clearly explain technical issues to both technical and non-technical stakeholders
•Proven ability to lead and mentor less experienced engineers and technicians
Experience working in regulated environments such as NERC CIP or others is highly desired
*
Equivalent Experience:
Associates degree in related field with 10+ years of experience in any of the following areas: information technology, cyber security, engineering, or information security.
or
High school diploma with 12+ years of experience in any of the following areas: information technology, cyber security, engineering, or information security.
Licenses, Certifications, and/or Registrations: Certifications in Cyber Security or Information Systems are a plus.
Specialized Skills: Requires strong technical skills and understanding of various security events across multiple operating system and appliance platforms. Ability to learn and adapt quickly to changes in technologies, processes, and compliance standards. Strong customer service attitude. Strong analytical skills. Ability to document resolutions to customer issues and security alerts. Capability to provide leadership over implementation of processes. Resolve issues amongst a diverse group of stakeholders. Must be able to pass a NERC CIP personnel risk assessment screening.
Travel: 10%
Unusual Hours: Occasional evening and weekend work may be required, to support operations and security event response. Supports customers, incident response processes, and systems after hours, as needed. On-site support for system installs, upgrades, assessments as required by CIP compliance activities.