We are seeking a highly skilled OT Cybersecurity Engineer to support our growing portfolio of industrial cybersecurity projects. The ideal candidate will have strong hands-on experience in conducting OT cybersecurity risk assessments, developing disaster recovery plans, and implementing security controls in operational technology environments including energy, oil & gas, and utilities. This role will be part of a project delivery team responsible for assessment, design, implementation, testing, and commissioning of OT-CS controls in line with global standards (ISA/IEC 62443, NIST SP 800-82, etc.).
- Conduct site-based OT cybersecurity risk assessments and gap analysis
- Perform asset inventory mapping, network zoning, and data flow analysis
- Identify vulnerabilities in OT environments (PLC/SCADA/DCS/RTU systems)
- Develop risk treatment plans, cybersecurity roadmaps, and disaster recovery plans
- Create network architecture diagrams and zoning segmentation designs
- Configure and deploy OT firewalls, switches, and segmentation appliances (e.g., Fortinet, Juniper, Hirschmann, Cisco, Moxa)
- Implement endpoint protection, application whitelisting, patching, and USB control solutions
- Integrate and tune SIEM, IDS/IPS, and secure remote access platforms
- Perform system backups, hardening, patch management, and monitoring setup
- Coordinate with SOC/NOC teams to ensure proper monitoring, incident detection, and alert correlation for OT environments
- Assist in integrating OT assets into existing SOC workflows and playbooks
- Support commissioning, Factory Acceptance Testing (FAT), Site Acceptance Testing (SAT), and go-live activities
- Align assessments and implementations with global and regional standards: ISA/IEC 62443, NIST SP 800-82, ISO 27001, NCA ECC, and NESA
- Develop comprehensive documentation: High-Level Designs (HLDs), Low-Level Designs (LLDs), FAT/SAT reports, Disaster Recovery and Business Continuity Plans, backup and restoration procedures
- Deliver hands-on training sessions for customer teams on implemented controls
- Support post-deployment SLA services, incident response, and system health checks