Conduct risk assessments and vulnerability assessments for operational technology systems to identify security weaknesses and potential threats.
Design and implement security controls and measures to protect OT systems from cyber threats, including intrusion detection systems, firewalls, access controls, and network segmentation.
Collaborate with cross-functional teams, including OT engineers, IT professionals, and management, to ensure cybersecurity considerations are integrated into the design, deployment, and maintenance of OT systems.
Stay updated on emerging threats, vulnerabilities, and industry best practices related to OT cybersecurity and make recommendations for security enhancements.
Conduct penetration testing and vulnerability assessments on OT systems to identify and remediate security weaknesses.
Provide technical expertise and guidance to internal teams regarding OT security standards, policies, and procedures.
Collaborate with third-party vendors and suppliers to ensure the security of OT systems and evaluate their cybersecurity capabilities.
Conduct security training and awareness programs for OT operators and other personnel involved in OT operations.
Requirements
University Degree qualified in an engineering discipline ideally with Cyber Security Engineering, Computer Science, Information Technology, or Computer and Electronics engineering.
Minimum 5-6 years’ experience in project security, preferably in an Operational Technology (OT) environment.
Minimum 5-6 years' experience within the Electrical Industry or in a similar role.
Solid understanding of industrial control systems (ICS), supervisory control and data acquisition (SCADA) systems, and other OT technologies.
Knowledge of OT-specific protocols and standards such as Modbus, DNP3, IEC 61850, and OPC.
Experience in designing and implementing security controls for OT systems, including firewalls, intrusion detection systems, and access controls.
Familiarity with network segmentation techniques and security architectures for OT systems.
Experience in Industrial communication network and system security IEC 62443 standards.
Knowledge of NIST Cyber security framework.
Good knowledge of Cyber security principles, theories, and techniques.
Cyber security certification in IEC 62443 (min 1 or 2).