Job description
Role Overview
ICS Cybersecurity Engineer at Air Products, based on-site in Tabuk Region, Saudi Arabia, working on rotation of 8 weeks ON / 2 weeks OFF.
Company Overview
Air Products is a world-leading industrial gases company founded in 1940 with a proud history of innovation, operational excellence, and unwavering commitment to safety and environmental stewardship. This role supports the NEOM Green Hydrogen Project, a flagship capital project where Air Products is executing an EPC Contract to design, build and deliver Process Controls / Process Automation System and IT/Digital Technology infrastructure scope.
Role Purpose
As a key member of the Cybersecurity task force team, the ICS Cybersecurity Engineer undertakes field verification of cyber assets to ensure compliance with project specifications and site acceptance criteria. The role acts as the technical interface between Air Products project execution, commissioning teams, and vendors during field verification of cyber assets, ensuring cybersecurity controls are implemented across large-scale construction, pre-commissioning, commissioning, startup and handover phases without impacting schedule-critical activities.
Key Responsibilities
Field Verification and Validation
- Perform field verification of design, implementation and testing of cyber assets to meet cybersecurity standards, regulatory requirements, technologies, processes, procedures and specifications.
- Support pre-commissioning and commissioning teams by validating firewall rules, secure remote access, endpoint hardening, asset inventory validation, access control execution, and logging before system energization.
- Verify and approve third-party device access needs as requested by subcontractors and vendors as part of commissioning and start-up requirements on vendor packages.
- Lead and oversee architecture, standards and FAT/SAT/CSAT procedures development, execution and performance testing.
Documentation and Asset Management
- Develop, document and maintain cybersecurity asset register and other key deliverables as guided by the Site Cybersecurity Lead or Cybersecurity Manager.
- Support OT cybersecurity handovers to operations, including procedures, asset inventories, access management, and incident response alignment.
Risk Assessment and Remediation
- Organize and lead/facilitate the resolution and implementation of cybersecurity risk assessment exercises and implement risk assessment recommendations for Air Products design and vendor/skid package control systems.
- Identify and escalate risks and opportunities.
- Contribute to OT Cybersecurity Operations Model, including monitoring, patching, backup, disaster recovery, and secure remote support.
Cross-Functional Coordination
- Participate in technical coordination meetings with cross-functional teams as guided by the Site Cybersecurity Lead.
- Coordinate with vendors and Air Products engineering team to resolve and liquidate punch points identified during field verification of cyber assets.
- Coordinate and assist the Site Cybersecurity Lead with change management activities to ensure design, procurement, installation, commissioning and startup of cybersecurity scope are reviewed for schedule and budget compliance.
Reporting and Knowledge Management
- Prepare weekly updates and dashboard to the Site Cybersecurity Lead and the Project Cybersecurity Collaboration Lead.
- Collect and report lessons learned during vendor site visits and project execution.
Qualifications & Experience
- Bachelor's degree in engineering (electronics & communication, instrumentation or process automation background preferred) or equivalent.
- Minimum 10 to 15 years' experience in Operational Technology (OT) or related field.
- At least 3 years focused on designing, building, or validating the design and implementation of cybersecurity for industrial control systems and networks.
- Project implementation experience with Saudi cyber standards HCIS, NCA, and CRA compliance.
- ISA 62443 Industry standards, specifications, regulations and best practices.
- OT/ICS cybersecurity relevant accreditations such as ISA/IEC 62443, SANS or other internationally recognized certifications (preferred).
- Additional cybersecurity certifications such as CISSP, CISM, ISO 27001 (added advantage).
Skills & Competencies
- Strong knowledge and understanding of control systems (SCADA/DCS/PLCs, etc.).
- Relevant protocols including Modbus, PROFINET, DNP3, IEC 61850.
- Key technologies including firewalls, IDS, anti-virus, vulnerability assessments in ICS/OT networks.
- Advanced skills in Microsoft Office tools including Teams, SharePoint, Word, Excel, PowerPoint and Visio.
- Excellent written and verbal communication skills with ability to communicate appropriately at all levels of the organization.