We are seeking a highly experienced Senior OT/ICS Cybersecurity Specialist to lead and strengthen our Operational Technology (OT) security posture. The ideal candidate will have deep expertise in industrial control systems and proven experience in implementing cybersecurity frameworks, conducting risk assessments, and driving governance, risk, and compliance (GRC) initiatives.
This role requires close collaboration with cross-functional stakeholders to ensure secure and resilient industrial environments, along with ownership of audit remediation and continuous improvement initiatives.
Key Responsibilities
OT/ICS Security & Risk Management
- Conduct comprehensive risk assessments across OT environments, including SCADA, PLC, DCS, and industrial networks
- Identify, evaluate, and mitigate cybersecurity risks aligned with industry standards
- Perform vulnerability assessments and configuration reviews for OT assets
Frameworks, Policies & Compliance
- Implement and maintain cybersecurity frameworks such as IEC 62443 and NIST CSF
- Develop and update security policies, standards, and procedures for OT environments
- Drive GRC processes, ensuring compliance with regulatory and organizational requirements
Architecture & Security Design
- Analyze and review OT architecture to identify security gaps and recommend improvements
- Maintain asset inventory and network architecture documentation
- Support secure design and segmentation strategies for industrial networks
Audit & Governance
- Lead and support internal and external audits
- Track and manage audit findings, remediation plans, and closure activities
- Develop and present maturity dashboards and management reports
Stakeholder Management & Communication
- Collaborate with engineering, IT, and business teams to align cybersecurity initiatives
- Provide clear communication and reporting to senior leadership
- Act as a subject matter expert (SME) for OT cybersecurity
Required Skills & Expertise
Technical Skills
- Strong knowledge of OT/ICS systems: SCADA, PLC, DCS
- Experience with industrial communication protocols and networks
- Hands-on experience in vulnerability management and configuration assessments
- Familiarity with network segmentation, firewalls, and secure architecture design
Frameworks & Standards
- Expertise in:
- IEC 62443
- NIST Cybersecurity Framework (CSF)
- OT-specific security best practices
GRC & Documentation
- Experience in governance, risk, and compliance (GRC) processes
- Strong documentation skills for policies, procedures, and audit reports
- Ability to create security maturity models and dashboards
Soft Skills
- Excellent stakeholder management and communication skills
- Strong analytical and problem-solving abilities
- Ability to work independently in a high-impact environment