
Operational Technology Security Specialist
Job description
Job Description Summary: Responsible for securing industrial control systems (ICS), SCADA environments, and other Operational Technology assets across the organization. This role bridges IT and OT domains, ensuring the protection of critical infrastructure, manufacturing processes, and industrial networks against cyber threats while maintaining operational continuity and safety Job Description: OT Security Strategy & Governance Develop and implement OT security strategy aligned with organizational cybersecurity framework.
Define OT security policies, standards, and procedures based on industry frameworks (e.g., IEC 62443, NIST CSF, ISO 27001 ). Perform OT risk assessments and threat modelling for industrial environments. Collaborate with IT Security, Risk, and Compliance teams to ensure unified security posture. OT Environment Protection Identify, classify, and manage OT assets (PLCs, DCS, SCADA systems, HMIs, Industrial IoT).
Design and implement network segmentation (zones & conduits) in OT environments and IT/OT boundaries Deploy and manage OT security technologies: Industrial firewalls & industrial switches Network intrusion detection systems (NIDS) OT threat detection platforms Ensure secure remote access solutions for vendors and engineers.
Monitoring & Incident Response Monitor OT networks for anomalous behavior and potential threats. Investigate and respond to OT security incidents and alerts. Develop OT-specific incident response playbooks. Coordinate with SOC and incident response teams for cross-domain events. Vulnerability Management & Hardening Conduct vulnerability assessments specific to OT systems (non-intrusive methods).
Work with engineering teams to remediate vulnerabilities without disrupting operations. Manage patching strategies considering uptime and safety constraints. Perform secure configuration reviews for PLCs, SCADA, and industrial devices. Risk, Compliance & Auditing Ensure compliance with regulatory requirements and standards: IEC 62443 NIST SP 800-82 Local critical infrastructure regulations Support internal and external OT security audits.
Provide documentation, reporting, and risk mitigation recommendations. Cross-Functional Collaboration Work closely with: Plant operations / engineering teams IT infrastructure & cybersecurity teams Third-party vendors / OEMs Translate cybersecurity requirements into operationally feasible controls. Provide security awareness training tailored for OT personnel Continuous Improvement Stay updated on emerging OT threats and vulnerabilities.
Evaluate and implement new OT security tools and solutions. Conduct tabletop exercises and simulations for OT cyber incidents. Drive OT security maturity initiatives and roadmap. Job Requirement : Bachelor’s degree in Cybersecurity, Information Technology, Engineering, or related field (Master’s degree is a plus) 3–8+ years in cybersecurity, with at least 2–3 years in OT/ICS security Hands-on experience with SCADA systems, PLCs / DCS environments, Industrial networks and protocols Strong knowledge of OT/ICS protocols : Modbus, S7-Communication, OPC-UA, OPC-DA, PROFINET, MQTT etc.
Familiarity with OT security tools : Nozomi, Claroty, Dragos (or equivalent) Network security expertise : Firewalls, segmentation, IDS/IPS Understanding of Windows/Linux hardening in OT context, Network architecture design Experience with vulnerability assessment tools adapted for OT Having Certifications (Preferred)in GICSP (Global Industrial Cyber Security Professional), CISSP / CISM / CISA, ISA/IEC 62443 certifications, CEH or equivalent Strong analytical and problem-solving abilities Ability to balance security vs.
operational uptime Excellent communication skills across technical and non-technical stakeholders Stakeholder management (especially plant/engineering teams) "Our company has never levied any fees for the recruitment process nor has it required to order tickets and accommodation through a certain travel agent or certain person"