Role OverviewWe're looking for a skilled professional to lead the evolution of our operational technology (OT) security framework across high-tech manufacturing facilities. The ideal candidate will bridge cybersecurity and industrial operations, ensuring resilient, secure, and always-available production systems.
Key Responsibilities
- Define and drive the implementation of the OT security strategy in alignment with enterprise cybersecurity goals and manufacturing uptime requirements
- Oversee deployment and tuning of OT monitoring platforms including Nozomi Networks, Claroty, Dragos, and Armis, with strategic sensor placement for full network visibility
- Configure and operate deep packet inspection and protocol analysis tools such as Wireshark, Zeek, and Suricata to monitor industrial protocols like Modbus, Profinet, DNP3, and OPC-UA
- Work with SOC and architecture teams to ingest OT telemetry into SIEM and SOAR systems, refine detection rules, and streamline alerting workflows
- Develop and maintain an accurate inventory of OT assets, enforce configuration baselines, and manage vulnerabilities specific to industrial control systems
- Support network segmentation initiatives, review firewall policies, and enforce strict separation between IT and OT environments
- Design secure remote access solutions for third-party vendors and ensure compliance with identity and access controls
- Develop incident response procedures tailored to OT environments, lead simulation exercises, and validate disaster recovery capabilities
- Ensure compliance with NIST Cybersecurity Framework, IEC 62443 standards, and internal security policies; prepare for audits and assessments
- Coordinate with factory IT and operations leadership to plan security changes with minimal impact on production schedules
- Track and report on key performance indicators such as telemetry coverage, mean time to respond, and segmentation compliance to executive stakeholders
Technology Environment
Experience with platforms such as Nozomi Networks, Claroty, Dragos, Armis, and tools including Wireshark, Zeek, Suricata. Familiarity with industrial protocols including Modbus, Profinet, DNP3, and OPC-UA. Integration experience with SIEM and SOAR ecosystems.