Staff Engineer, OT Security
Core
Own hands-on security engineering for Operational Technology (OT) environments, translating security architecture into operational controls for instruments, automation platforms, and lab systems.
Role type
Staff OT Security Engineer (Senior IC)
Builds
Operational security controls, segmentation strategies, threat models, and secure deployment patterns for autonomous laboratory platforms.
Domain
Operational Technology (OT) / Industrial Control Systems / Laboratory Automation
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
OT security engineering, network segmentation, identity and access management, threat modeling, vulnerability management, incident response, scripting/automation, risk assessment
Preferred skills
Life sciences/biotech domain knowledge, IEC 62443/NIST frameworks, OT visibility platforms (Claroty, Dragos), PKI/machine identity, privileged access management (CyberArk, Vault), embedded/IoT security
Technologies
Python, PowerShell, IEC 62443, NIST SP 800-82, Claroty, Tenable OT, Dragos, Nozomi Networks, CyberArk, Delinea, HashiCorp Vault, TPM, mTLS
Responsibilities
Design and validate zone-and-conduit segmentation aligned to IEC 62443; develop OT-specific threat models for instruments and automation; own security review and sign-off for new automation platforms and vendor integrations; operate and tune OT monitoring and visibility capabilities; partner with SOC to build OT-specific detection content and incident response exercises; lead OT vulnerability and lifecycle management including patch strategy; mentor engineers and managed-service partners.
Seniority
Staff, hands-on IC with technical direction and mentorship