Air Products

NGHP IT/DT Cybersecurity Engineer

Air Products

Remote · Full Time

Be the first to apply

Experience
Any
Salary
Openings
1
Posted
5日前
Work mode
Work from home
Resume
Required to apply

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About Air Products

Since 1940, Air Products has been a pioneering industrial gases company dedicated to innovation, operational excellence, and steadfast commitments to safety and environmental responsibility. The company fosters a collaborative environment where diverse perspectives fuel solutions that advance industries from aerospace to healthcare and large-scale manufacturing.

Role Overview and Key Responsibilities

  • Assist in the implementation, validation, and documentation of cybersecurity controls across site systems, including OT/ICS environments, industrial networks, cybersecurity tools, and digital transformation infrastructure.
  • Support cyber site acceptance testing activities such as preparation, execution assistance, evidence gathering, defect tracking, and closure documentation.
  • Help collect, validate, index, and review proof-of-compliance documentation.
  • Examine cybersecurity evidence including network diagrams, system architecture, firewall rules, hardening standards, access control matrices, asset inventories, SIEM/monitoring setups, and vendor compliance records.
  • Coordinate cyber hygiene initiatives involving third-party vendors, subcontractors, and site teams.
  • Track remediation efforts related to cybersecurity gaps, cyber SAT findings, risk assessments, proof-of-compliance evidence shortages, and vendor documentation deficiencies.
  • Support OT/ICS cybersecurity tasks such as system hardening, firewall configuration reviews, password management, secure remote access control, endpoint and security tool validation, DMZ implementation, and network segmentation checks.
  • Engage in walkthroughs, field verification, technical reviews, and validation of cybersecurity controls.
  • Evaluate vendor and subcontractor deliverables to verify compliance with project cybersecurity standards, Air Products policies, national cybersecurity authority requirements, and approved architecture.
  • Collaborate with process control, digital transformation infrastructure, plant computing, and vendor teams to resolve cybersecurity issues impacting commissioning, start-up, and handover readiness.
  • Document technical decisions, implementation progress, deviations, risk acceptances, compensating controls, and outstanding tasks.
  • Organize and maintain cybersecurity technical evidence required for compliance and regulatory preparedness.
  • Assist in compiling cybersecurity assessment and proof-of-compliance documentation for review by key stakeholders and external auditors.
  • Ensure documentation completeness, technical accuracy, consistency, and traceability to applicable standards.
  • Respond to comments and findings from internal and external assessors and maintain trackers for cybersecurity issues and remediation activities.
  • Coordinate with cybersecurity vendors, EPC subcontractors, OEMs, and external partners during execution, testing, documentation, and transition phases.
  • Monitor vendor-submitted evidence and escalate incomplete or non-compliant documentation to leadership.
  • Supervise third-party activities onsite when required to ensure alignment with cyber design and project requirements.
  • Provide updates on technical progress, obstacles, risks, documentation gaps, and pending actions to the Cyber Lead.
  • Participate in weekly coordination meetings with OT cybersecurity, digital transformation, project management, and related stakeholders.
  • Prepare concise technical reports for project tracking, cyber oversight, and senior management updates.
  • Work with digital transformation infrastructure and site teams to integrate cybersecurity activities within broader implementation and commissioning efforts.

Required Qualifications

  • Comprehensive knowledge of OT/ICS cybersecurity concepts, including industrial networks, plant systems, industrial DMZs, secure remote access, system hardening, access controls, monitoring, and cyber hygiene practices.
  • Familiarity with Saudi Arabia cybersecurity requirements such as those set by the National Cybersecurity Authority (NCA) and Health Cybersecurity Information Standards (HCIS), with the ability to apply them swiftly in an industrial project setting.
  • Experience supporting cybersecurity testing, audit readiness, compliance documentation, and evidence gathering.
  • Proficiency in reviewing technical cybersecurity documents like network diagrams, firewall rules, system architecture, control matrices, asset inventories, hardening checklists, and monitoring configurations.
  • Capability to manage multiple technical and documentation tasks concurrently.
  • Excellent verbal and written communication skills in English; Arabic proficiency is an advantage.
  • Strong interpersonal skills to collaborate effectively with site personnel, engineering teams, vendors, subcontractors, digital transformation units, and senior cybersecurity stakeholders.
  • Adaptability to a dynamic project environment characterized by shifting priorities, regulatory requirements, and commissioning dependencies.

Preferred Qualifications

  • Familiarity with cybersecurity frameworks such as NCA ECC, OTCC, HCIS/SAIS, IEC 62443, ISO 27001, NIST, CIS Controls, or related standards.
  • Experience working in industries like energy, industrial gases, chemical processing, utilities, power generation, renewable energy, or critical infrastructure.
  • Knowledge of SIEM systems, OT monitoring tools, firewall rule assessments, privileged access management (PAM), vulnerability management, asset inventory, endpoint security, secure remote access, and industrial network segmentation.
  • Certifications such as GICSP, IEC 62443, Security+, CISSP Associate, CISM, CEH, or equivalents are favored.
  • Previous involvement in projects located in Saudi Arabia, GCC countries, NEOM, or other critical infrastructure sectors is preferred.

Success Criteria

  • Accurate collection, validation, organization, and maintenance of cybersecurity assessment and proof-of-compliance evidence.
  • Timely closure of cybersecurity documentation gaps, technical issues, and remediation plans.
  • Thorough review of vendor and subcontractor cybersecurity deliverables for completeness and quality.
  • Validation that technical cybersecurity controls meet approved design, project requirements, and compliance obligations.
  • Consistent delivery of accurate technical updates to leadership and key project stakeholders.
  • Effective cybersecurity support for commissioning, start-up readiness, and regulatory compliance on site.

Languages

English

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer