Responsibilities:
- Design and implement OT security architectures, network segmentation, and Industrial DMZ solutions.
- Deploy and manage Fortinet and Palo Alto Networks security platforms.
- Configure and support Nozomi Networks, Hirschmann, Microsens, Claroty, Dragos, and TXOne solutions.
- Secure ICS/SCADA environments and industrial protocols including Modbus, DNP3, OPC UA, and PROFINET.
- Assess and secure PLCs, industrial networks, and control systems based on the Purdue Enterprise Reference Architecture.
- Conduct OT security assessments, vulnerability management, remediation, incident response, and root cause analysis.
- Develop OT security policies, hardening standards, and operational procedures aligned with IEC 62443 and NIST SP 800-82.
- Implement and support firewalls, VPNs, NAC, Zero Trust, SIEM, and OT monitoring solutions.
- Work with engineering, IT, and operations teams to strengthen the security of industrial environments.
Requirements:
- 8+ years of cybersecurity experience, including at least 5 years in OT/ICS security.
- Strong hands-on experience with OT/ICS security architecture and technologies.
- Practical experience with Fortinet and Palo Alto Networks solutions.
- Strong knowledge of ICS/SCADA architecture, PLCs, industrial protocols, and Purdue architecture.
- Experience with OT security standards including IEC 62443 and NIST SP 800-82.
- Strong troubleshooting, analytical, incident response, and problem-solving skills.
- Experience in Oil & Gas, Utilities, Manufacturing, Energy, or Critical Infrastructure is preferred.
Preferred Certifications:
- Fortinet FCSS / NSE
- Palo Alto Networks PCNSE
- Nozomi Networks NCE
- GICSP
- ISA/IEC 62443