OT Security Engineer L3
Core
Lead the design, deployment, integration, support, and optimization of OT security monitoring solutions across ICS, SCADA, DCS, and IIoT environments.
Role type
Senior OT Security Engineer (L3)
Builds
OT security monitoring architectures, detection rules, and incident response capabilities for industrial clients
Domain
Industrial Control Systems (ICS) Security / OT Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
OT security architecture, SIEM configuration (Splunk, QRadar, Sentinel, FortiSIEM, Elastic), industrial protocol decoding (Modbus, DNP3, IEC 61850, OPC UA, EtherNet/IP, PROFINET, BACnet, MQTT), threat hunting, incident response, packet analysis (Wireshark), automation integration, mentoring
Preferred skills
GICSP, ISA/IEC 62443 Cybersecurity Expert, CISSP, CEH, Nozomi Certified Engineer, Microsoft SC-200, Splunk Certified Consultant, Purdue Model expertise, SOAR orchestration
Technologies
Nozomi Guardian, Splunk, IBM QRadar, Microsoft Sentinel, FortiSIEM, Elastic Security, Wireshark, Nmap, PowerShell, Linux, Windows Server, REST APIs
Responsibilities
Lead deployment of OT monitoring solutions and SIEM platforms; act as final technical escalation point for complex OT security incidents; perform proactive threat hunting and develop detection rules; conduct advanced packet analysis and forensic triage; mentor L1/L2 analysts and guide implementation engineers; support OT cybersecurity assessments and compliance validations
Seniority
Senior, hands-on IC with technical leadership