Job Description
A large global enterprise operating in a highly regulated industry is seeking a Senior Specialist, Security Operations and OT Cybersecurity . This position will lead regional security operations and help expand and mature Operational Technology (OT) cybersecurity programs . The role will focus on incident response leadership , OT security strategy , and vendor performance management across IT, cloud, and manufacturing environments.
The ideal candidate is both technically hands-on and strategically aware, capable of managing complex incidents, guiding SOC operations, and building secure industrial environments in coordination with global security leadership.
Key Responsibilities
- Lead incident response activities for the region, coordinating with global teams for investigation, escalation, and remediation across IT, OT, and cloud environments.
- Manage and continuously improve security monitoring and detection to ensure high-quality visibility and responsiveness.
- Build and mature OT cybersecurity capabilities , partnering with manufacturing, infrastructure, and operations teams to secure industrial control systems, SCADA, PLCs, and laboratory environments.
- Manage and hold vendors accountable for activities such as threat hunting, penetration testing, and forensic analysis, ensuring service quality and effective outcomes.
- Drive the execution of global SOC playbooks, escalation procedures, and threat intelligence integration.
- Support remediation and post-incident activities to strengthen resilience across technology domains.
- Develop, maintain, and enhance operational runbooks and processes to support consistent, repeatable cyber defense practices.
- Collaborate with IT, engineering, and compliance teams to uphold corporate and regulatory security standards.
Required Experience
- Minimum 5 years of cybersecurity operations experience , with direct involvement in SOC management, incident response, and threat detection.
- Demonstrated hands-on experience in OT/ICS environments within manufacturing, utilities, or other regulated sectors.
- Proven ability to lead cross-functional investigations and vendor-driven engagements in complex enterprise environments.
- Knowledge of relevant cybersecurity frameworks, such as NIST CSF and ISA/IEC 62443 , and their application in industrial and regulated settings.
- Strong analytical and communication skills, with the ability to work effectively across technical and business teams.
Technical Expertise
- Expertise in Security Operations and Incident Response , including triage, investigation, containment, and recovery across IT, OT, and cloud domains.
- Hands-on experience with SOC technologies , including SIEM, SOAR, EDR/XDR, and forensic analysis platforms.
- Strong background in OT/ICS cybersecurity , securing SCADA, PLCs, and manufacturing systems using frameworks such as ISA/IEC 62443 and NIST CSF.
- Familiarity with threat detection engineering, use case development, and integration of threat intelligence into monitoring workflows.
- Experience collaborating on vulnerability management and remediation across IT and OT environments.
Certifications
- Required: CISSP
- Preferred: GICSP, GRID, or other OT/ICS-specific certifications.
Education
- Bachelor’s degree in Information Security, Computer Science, or a related technical field required.
- Advanced coursework or training in OT/ICS cybersecurity preferred.
Job Tags