PL
OT/ICS Security Lead
PeopleNTech LLC
🇺🇸 United States
On-site
Staff / Principal
4 months ago
- IEC
- NIST
- PLC
- SCADA
- HMI
- Risk Management
- RBAC
- Windows
- DCS
- CISSP
- CISM
4 months ago
Role : OT/ICS Security Lead
Location :Boston, MA (Hybrid)
Rate : $80/hr – $85/hr
About the position
- Lead and execute OT/ICS cybersecurity activities across multiple industrial sites ( customer sites)
- Focus on industrial security assessment, segmentation, and risk reduction
- Ensure OT environments are:
- Secure
- Stable
- Aligned to IEC 62443 and NIST standards
- Work closely with plant operations, engineering teams, and IT security teams
- Deliver practical, implementable solutions without impacting production
Key Responsibilities
1. OT/ICS Security Assessment
- Site visit and Conduct end-to-end OT security assessments across plants / operational sites ( apprx.10 sites)
- Perform:
- Asset discovery (PLCs, SCADA, HMI, network devices)
- Network architecture reviews
- Vulnerability identification
- Identify:
- Control gaps
- Exposures and attack surfaces
- Legacy system risks
- Perform gap analysis aligned to IEC 62443 / NIST SP 800-82 frameworks
- Deliver:
- OT baseline reports
- Risk findings and recommendations
- Design OT network segmentation using Purdue Model (zones & conduits)
- Define:
- IT–OT DMZ architecture
- Secure communication pathways
- Trust boundaries between systems
- Recommend:
- Firewall placement
- Network isolation strategies
- Ensure:
- Industrial safety is not impacted
- uptime and operational continuity are maintained
- Identify risks across:
- PLCs
- SCADA systems
- Industrial protocols
- Vendor remote access
- Analyze:
- Operational impact
- Safety risks
- Business criticality
- Maintain and update:
- OT risk register
- Risk prioritization matrix
- Provide:
- Risk mitigation strategies
- Residual risk recommendations
- Define and recommend OT-specific security controls, including:
- Network segmentation
- Access control (RBAC, vendor access)
- Monitoring & logging
- Design compensating controls for:
- Legacy PLC/SCADA systems
- Systems that cannot support endpoint agents
- Ensure controls are:
- Practical
- Deployable with minimal disruption
- Deploy and tune OT monitoring tools:
- Claroty
- Nozomi
- Dragos
- Perform:
- Network traffic analysis
- Protocol-level inspection
- Detect:
- Anomalies
- Lateral movement risks
- Unauthorized access
- Integrate OT monitoring insights with IT security systems where feasible
- Develop OT remediation roadmap based on findings
- Define:
- Short-term mitigations
- Long-term improvements
- Track:
- Remediation actions
- Owners and timelines
- Support:
- Technical debt reduction
- Migration to secure baseline architecture
- Work closely with:
- Plant managers
- OT engineers
- Maintenance and automation teams
- Align security solutions with:
- Operational processes
- Maintenance windows
- Safety requirements
- Conduct:
- Workshops
- Site walkthroughs
- Stakeholder discussions
- Ensure alignment with:
- IEC 62443
- NIST SP 800-82
- Support:
- Compliance assessments
- Audit readiness
- Map controls to:
- Industry standards
- Organizational security baselines
- OT asset discovery and baseline report
- Industrial risk assessment and mitigation plan
- Purdue-based segmentation design
- Security control recommendations
- Remediation roadmap and tracking
- Reduced OT cybersecurity risk across sites
Core OT Security Skills
- Hands-on experience with:
- PLC, SCADA, DCS, ICS systems
- Strong knowledge of:
- Industrial network protocols
- OT attack vectors and threats
- Frameworks:
- IEC 62443
- NIST CSF / SP 800-82
- Architecture:
- Purdue Model
- Zone–conduit segmentation
- Tools:
- Armis / Claroty / Nozomi / Dragos
- OT monitoring & network visibility tools
- Experience in:
- Healthcare / pharma /
- Manufacturing / process plants
- Understanding of:
- Safety systems
- Production-critical operations
- Strong problem-solving and analytical thinking
- Ability to work with cross-functional OT + IT teams
- Strong communication skills for:
- Technical and non-technical stakeholders
- GICSP (Global Industrial Cyber Security Professional)
- ISA/IEC 62443 Certification
- CISSP / CISM (optional but beneficial)
OT/ICS Security Lead · PeopleNTech LLC