Karachaganak Petroleum Operating B.V.
Aksay (Kazakhstan), www.kpo.kz
PCN Cybersecurity Engineer
- Provide expertise and guidance in areas of Process Control Domain Integrity and Cybersecurity, aligned with relevant RoK legislations and International Standards;
- Coordinate and guide in the definition of the functional requirements of PCD applications and networks. Develop and maintain PCD related documents, procedures, guidelines and conduct general user’s awareness campaigns;
- Ensure safe operation of Process Control Domain hardware and applications, stand-alone PLC based systems, automated fire and gas detection systems, automated fire extinguishing systems, emergency shutdown systems equipment with respect to PCD/Cybersecurity Integrity field wide;
- Manage centralized security infrastructure, services, DNS, Microsoft Windows Server Upgrade Service (WSUS), McAfee ePO, Acronis Backup and Recovery systems and Access Control systems. Develop detailed operational process and procedures, identify or develop automated processes to prevent security incidents;
- Deployment, configuration and administration of different pieces of network and security-related PCD hardware and software. These include firewalls, routers, switches, various network-monitoring tools, and virtual private networks (VPNs). System administration, supporting multiple platforms and applications. (Windows, Linux)
- Develop and implement open-source/third-party tools to assist in detection, prevention and analysis of security threats;
- Monitor networks and systems for cyber-security breaches, through the use of security tools that can detect intrusions and anomalous system behaviour (Claroty CTD, Nozomi). Conduct advanced/specialised penetration testing, simulating an attack on the system to find exploitable weaknesses;
- Manage security systems, including the Firewalls, Windows AD event logs, syslog, anti-virus, file integrity, and vulnerability scanners for security events (Nessus);
- Evaluate and investigate detected security events to determine if they represent significant security incidents and require some level of response. This response will be in the form of detailed configuration data, traffic analysis and/or event correlation to support the KPO incident management process;
- Maintain knowledge of the functionality and technology of existing IT systems as well as ICSS technologies and general view of the current state of security threats across the ICSS environments as well as within a KPO PCD;
- Develop and document processes to further embed practices and generate evidence of compliance to internal standards;
- Perform other projects or responsibilities that may be requested by the Instrument Superintendent and Senior PCN Engineer;
- Compile comprehensive reports on performed modification and replacement of obsolete equipment;
- Take part in analysis of root causes and failure elimination of PCD Infrastructure;
- Review of designs and technical projects, working drawings drawn up by Company order, as well as in installation, testing, adjusting, and commissioning of PCD Infrastructure;
- Review, design, maintenance and configuration of Data Transmission Networks, including FOC, copper and radio links. Setup of networking and protective devices related to Data Transmission, including switches, firewalls, media converters, and others;
- Participate in functional and qualitative testing of Data Transmission networks and components;