Tech Stack
CloudCyber SecurityServiceNowSplunk
About the role
- Serve as the trusted security architect guiding industrial organizations through the complexities of Operational Technology (OT) and Industrial Control Systems (ICS) cybersecurity.
- Lead the design and implementation of secure architectures for SCADA, DCS, and PLC-based environments, ensuring safe, resilient, and compliant industrial operations.
- Partner with cross-functional IT and OT teams to close security gaps, integrate tools, and align operational risk management with industry standards such as NIST 800-82 and IEC 62443.
- Deploy and optimize leading security solutions including Claroty for asset discovery and vulnerability management, Palo Alto and Cradlepoint for secure networking, CrowdStrike for monitoring, BeyondTrust for privileged access, and Splunk/ServiceNow for visibility and incident management.
- Conduct consequence-based risk assessments, oversee vulnerability remediation programs, and ensure readiness for regulatory audits.
- Drive incident response preparedness by creating OT-specific playbooks and coordinating joint exercises across IT and OT teams.
- Deliver policies, training, and workshops that empower plant operators, engineers, and third-party vendors to uphold a strong cybersecurity posture.
- Conduct security acceptance testing and validation of new or updated OT systems to ensure compliance with security requirements and industry best practices.
- Serve as a subject matter expert in client meetings, workshops, and presentations; lead project teams, mentor junior staff, and contribute to business development activities.
Requirements
- Bachelor’s degree in Engineering, Computer Science, Information Security, or related field.
- 7+ years of experience in OT/ICS cybersecurity, including hands-on experience with industrial control systems (e.g., SCADA, DCS, PLCs) in sectors such as oil & gas, energy, utilities, or manufacturing.
- 4+ years of demonstrated experience designing and implementing OT/ICS security architectures and controls using tools such as Claroty, Palo Alto, Cradlepoint, CrowdStrike, BeyondTrust PRA, and familiarity with Cisco, ServiceNow, Splunk, and TxOne.
- Ability to travel up to 50%, on average, primarily within the Houston region.
- Strong knowledge of OT/ICS protocols (e.g., Modbus, DNP3, OPC, Profibus), network architectures, and common vulnerabilities.
- Experience conducting consequence-based risk assessments (e.g., Cyber PHA), vulnerability management, and incident response in OT environments.
- Experience with cloud-based OT/ICS security solutions and IT/OT convergence initiatives.
- Familiarity with industry standards and frameworks (e.g., NIST 800-82, IEC 62443, NERC CIP).
- Strong communication skills, with the ability to present complex technical concepts to both technical and non-technical audiences.
- Demonstrated leadership in project delivery and client engagement; prior consulting experience with a focus on critical infrastructure or industrial sectors.
- Experience developing and delivering OT/ICS cybersecurity training programs.
- Professional certifications preferred: GICSP, CISSP, CISM, ISA/IEC 62443, or equivalent.
- Advanced degree preferred.