CrawlJobs Logo

OT Cybersecurity Expert

https://www.edp.com Logo

EDP

Location Icon

Location:
Portugal , Porto

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided
Save Job
Save Icon
Job offer has expired

Job Description:

The mission of this role is to ensure the security, resilience and compliance of RGA's WS&S Operational Technology (OT) environments worldwide. The OT Cybersecurity Expert will design, implement and maintain robust cybersecurity architectures, standards and controls aligned with EDP Group governance and international regulations. This role supports RGA's WS&S global OT footprint, driving security compliance with NIS2, NERC-CIP, GridCode Cybersecurity, and other regional frameworks, while enabling safe operations and innovation across the renewable energy portfolio. The professional will also promote a culture of cybersecurity awareness and continuous improvement throughout the organization, coordinating cross-functional initiatives and leading cybersecurity projects to ensure consistent implementation and governance across all regions.

Job Responsibility:

  • Develop, maintain, and communicate OT cybersecurity policies, standards, and procedures aligned with corporate governance and international regulations
  • Lead compliance initiatives with NIS2, NERC-CIP, GridCode Cybersecurity, IEC 62443, and other relevant frameworks
  • Perform regular risk assessments, gap analysis, and audits across the regions, defining mitigation and improvement plans
  • Ensure that cybersecurity governance is embedded in OT operations and projects globally
  • Coordinate regional stakeholders to align compliance roadmaps, ensuring timely delivery of milestones and effective follow-up on action plans
  • Design and validate secure OT network architectures, including segmentation, zoning, secure remote access, and data flow control
  • Define functional and technical requirements for OT cybersecurity systems and oversee implementation according to best practices and EDP standards
  • Manage supplier evaluation, tender processes (RFI/RFP), and contract negotiations for OT cybersecurity solutions and services
  • Collaborate with Engineering, IT, and Operations teams to ensure Security by Design in new assets, systems, and upgrades
  • Plan, coordinate, and monitor OT cybersecurity projects from inception to implementation, managing resources, schedules, and deliverables to ensure quality and alignment with business priorities
  • Lead the development and execution of OT-specific incident response plans and coordinate with global SOC and CERT teams
  • Support vulnerability management, intrusion detection, and forensic analysis within OT networks
  • Provide expert troubleshooting and root cause analysis for OT-related cybersecurity incidents
  • Ensure lessons learned and post-incident improvements are incorporated into standards and procedures
  • Coordinate cross-functional response teams during incidents and ensure effective communication and escalation management
  • Promote cybersecurity awareness and capacity building for OT operations and maintenance teams
  • Lead periodic drills, workshops, and tabletop exercises to validate the OT incident response capability
  • Foster innovation by evaluating new technologies such as anomaly detection, zero-trust architectures, and secure cloud integration for OT environments
  • Contribute to RGA's WS&S Cybersecurity Roadmap, ensuring OT initiatives are aligned with business objectives and regulatory requirements
  • Participate in global and regional working groups on compliance, risk management, and technology standardization
  • Support the rollout of global cybersecurity programs such as IDS and PAM systems, and new compliance-driven initiatives
  • Provide leadership and project governance in multi-region OT security programs, ensuring alignment with the corporate cybersecurity strategy

Requirements:

  • University degree in Electrical, Electronic, Automation, Energy or Telecommunications Engineering, or another relevant technical field
  • Complementary education in Cybersecurity or Technology Risk Management is a plus
  • Proven experience in Operational Technology (OT) security, with strong understanding of international cybersecurity frameworks and standards
  • Professional certifications in technical or governance domains (e.g., GICSP, CISSP, CISM, ISO 27001 Lead Implementer) will be considered an advantage
  • English: fluent (mandatory)
  • Portuguese: fluent (mandatory) and Spanish: highly valued
  • Proven experience in OT environments, including SCADA, DCS, PLC, EMS, and industrial networks
  • Previous involvement in energy or industrial infrastructure projects (renewable energy preferred, but not mandatory)
  • Hands-on experience in OT cybersecurity, network segmentation, and regulatory compliance
  • Experience working on or supporting international OT security programs across multiple regions
  • Demonstrated experience in coordinating and managing cybersecurity projects, including budget control, stakeholder management, and progress reporting
  • Strong knowledge of industrial communication protocols (IEC-60870-5-101/104, Modbus, DNP3, OPC-UA, IEC-61850)
  • Solid understanding of industrial networking (firewalls, routing, VLANs, VPNs, DMZs, NAT, IDS/IPS)
  • Proficiency in cybersecurity standards: IEC 62443, NIST 800-82, ISO 27001, NERC-CIP, GridCode Cybersecurity
  • Experience with vulnerability management, asset inventory, and incident response in OT environments
  • Understanding of SOCs, SIEM, and threat intelligence applied to OT
  • Excellent communication and collaboration skills in multicultural environments
  • Strategic and analytical mindset with a focus on problem-solving
  • Ability to influence and coordinate across multidisciplinary global teams
  • Strong sense of ownership, accountability, and adaptability to changing business and regulatory demands
  • Commitment to continuous improvement and operational excellence

Nice to have:

  • Complementary education in Cybersecurity or Technology Risk Management is a plus
  • Knowledge of NIST 800-82, NERC-CIP, GridCode Cybersecurity, or equivalent frameworks is highly valued
  • Professional certifications in technical or governance domains (e.g., GICSP, CISSP, CISM, ISO 27001 Lead Implementer) will be considered an advantage
  • Spanish: highly valued
  • Previous involvement in energy or industrial infrastructure projects (renewable energy preferred, but not mandatory)
What we offer:
  • Empower our employees through a positive and innovative work environment that promotes collaboration and agile decision-making
  • Respect and value each person, providing a flexible, healthy, and inclusive workplace with a range of attractive benefits
  • Provide a meaningful work experience and prepare our people for future challenges through different opportunities for development and internal mobility

Additional Information:

Job Posted:
January 19, 2026

Expiration:
January 29, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for OT Cybersecurity Expert

Manager of NERC Compliance

Client is seeking a Manager of NERC Compliance to lead and enhance its Critical ...
Location
Location
United States , Charlotte
Salary
Salary:
Not provided
bhsg.com Logo
Beacon Hill
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Engineering, Cybersecurity, Information Technology, or related discipline
  • 7+ years of IT/OT and cybersecurity experience
  • Minimum of 3 years dedicated to NERC CIP compliance
  • 2+ years leading teams or managing functional compliance projects
  • Deep working knowledge of NERC CIP standards CIP-002 through CIP-014
  • Strong audit experience and regulatory documentation skills
  • Technical understanding of OT environments, SCADA systems, and cybersecurity controls
Job Responsibility
Job Responsibility
  • Lead and manage the organization's NERC CIP compliance program, ensuring alignment with all applicable CIP standards
  • Interpret and operationalize CIP-002 through CIP-014, including asset identification, access controls, incident response, and change management
  • Partner with IT, OT, cybersecurity, engineering, and operations teams to implement and maintain compliance controls
  • Lead internal and external audits, spot checks, and self-certifications
  • Conduct gap assessments, root-cause analysis, and drive corrective action plans
  • Develop, implement, and maintain CIP policies, procedures, tools, and internal controls
  • Provide leadership and guidance to compliance staff and cross-functional stakeholders
  • Serve as a subject matter expert on NERC CIP requirements and regulatory expectations
  • Fulltime
Read More
Arrow Right

Expert Security Analyst – Incident Coordinator

As an Expert Security Analyst – Incident Coordinator, you will take a leadership...
Location
Location
Netherlands , Veldhoven
Salary
Salary:
Not provided
asml.com Logo
ASML
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or Master’s in Computer Science, Cybersecurity, or related field
  • 7+ years experience in advanced cybersecurity roles
  • Experience working with stakeholders in a complex organization
  • Proven record of influencing upper management towards security best practices
  • Expertise in Security Monitoring, Log Analysis, and Threat Hunting
  • Deep knowledge of a wide range of domains such as Endpoint, Network, OT, Information and Cloud Security
  • Certifications – CISSP, GCIH, GCFA, CISM preferred
  • A Certificate of Good Conduct “Verklaring Omtrent het Gedrag (VOG)” is required
  • Possess a valid work permit for the Netherlands (preferred)
  • Legally authorized to access controlled technology as defined in the United States Export Administration Regulations
Job Responsibility
Job Responsibility
  • Security Monitoring – Actively monitor security alerts for malicious activity or anomalies, ensuring swift response
  • Incident Handling – Lead investigations into high-profile, complex, or advanced persistent threats (APTs)
  • Threat Hunting – Proactively search for hidden threats and improve detection capabilities
  • Incident Analysis – Correlate data across multiple sources to detect sophisticated attack patterns
  • Detection & Response Optimization – Develop advanced detection techniques and security automation strategies
  • Technology Leadership – Act as an SME for SecOps tools and threat domains
  • Mentorship & Training – Provide guidance and mentorship to analysts at all levels
  • Fulltime
Read More
Arrow Right

OT Cybersecurity Expert

We are seeking a highly skilled OT (Operational Technology) Cybersecurity Profes...
Location
Location
India , Navi Mumbai
Salary
Salary:
Not provided
percivon.com Logo
Percivon
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or master’s degree in ECTC, computer science, Cybersecurity, or a related field
  • Minimum 4 years of experience in OT cybersecurity or industrial control systems security
  • Hands-on experience with SCADA systems, PLCs, DCS, and industrial network protocols (e.g., Modbus, OPC, BACnet, Profibus)
  • Knowledge of cybersecurity frameworks like IEC 62443, NIST 800-82, and ISO 27001
  • Proficiency in Claroty’s tools and software like CTD, SRA etc.
  • Strong understanding of network segmentation, firewall policies, and secure remote access solutions
  • Certifications or strong practical know how on (multiple if not all) – ISA/IEC 62443 Cybersecurity Certificates, Certified SCADA Security Architect (CSSA), Certified Information Systems Security Professional (CISSP), CompTIA Security+, Offensive Security Certified Professional (OSCP), Certified Information Systems Auditor / Manager (CISA) / (CISM)
  • Excellent problem-solving and analytical skills
  • Familiarity with safety instrument systems (SIS) and knowledge of industry standards such as IEC 61511
  • Excellent problem-solving skills and attention to detail
Job Responsibility
Job Responsibility
  • Design and Deployment: Architect and implement advanced security solutions tailored to OT environments, such as network segmentation, firewall configurations, and secure remote access gateways
  • Threat Detection and Response: Configure OT-specific intrusion detection systems (IDS), intrusion prevention systems (IPS), and anomaly detection tools of products from companies like Nozomi Networks or Claroty
  • Protocol Analysis: Analyze and secure industrial network protocols (e.g., Modbus, OPC-UA, DNP3, Ethernet/IP, Profibus, Profinet and other fieldbus protocols) against vulnerabilities and unauthorized activity
  • Security Hardening: Implement device hardening practices on PLCs, RTUs, and HMIs, legacy products, including secure firmware updates, role-based access control, and default credential elimination
  • Incident Management: Establish incident response plans for OT environments, including preparation, detection, containment, eradication, recovery, and post-incident review
  • Vulnerability Management: Conduct regular vulnerability scanning and patch management for OT systems, ensuring minimal downtime while adhering to operational requirements
  • Secure Integration: Lead the secure integration of IT-OT environments, ensuring compatibility while minimizing cybersecurity risks, such as lateral movement threats
  • Continuous Monitoring: Configure and maintain Security Information and Event Management (SIEM) systems specifically for OT environments to identify and respond to threats in real time
  • Compliance Audits: Perform in-depth compliance audits for standards like IEC 62443, NIST 800-82, and other relevant frameworks, ensuring regulatory alignment
  • Red Teaming and Penetration Testing: Simulate cyberattacks to test the resilience of OT systems, document findings, and implement necessary remediation measures
  • Fulltime
Read More
Arrow Right

Project Manager

Join our team as a Project Manager overseeing mission-critical OT network infras...
Location
Location
United States , New York
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 10 years of progressive IT experience in complex, high-availability network environments
  • At least 3-5 years leading and managing large, independent networks with a focus on OT/WAN for building operations
  • Expert-level experience with Meraki network infrastructure and dashboard management
  • Proven hands-on expertise with cybersecurity tools and platforms (WSUS, Forescout, Blackpoint, ThreatLocker, Altiris, or equivalent)
  • Strong foundation in networking protocols and concepts (TCP/IP, routing, switching, VPNs, VLANs, QOS)
  • Experience working in regulated or high-security environments is considered an asset
  • Exceptional attention to detail and the ability to resolve complex issues rapidly
  • Strong critical thinking, leadership, and project management skills, with the capacity to manage multiple complex initiatives simultaneously
  • Excellent collaboration and communication skills for effective vendor, partner, and internal team engagement
Job Responsibility
Job Responsibility
  • Own the integrity and security of a large-scale OT WAN, connecting 6,000+ endpoints across diverse devices and systems
  • Enforce management and security policies set by the CIO and cybersecurity team
  • Analyze and administer Meraki network infrastructure, including switches, firewalls, and access points, using the Meraki dashboard for centralized configuration and monitoring
  • Provide technical direction and support for 50+ vendors as they connect devices critical to building operations
  • Implement, monitor, and manage a comprehensive security stack to protect network and OT data
  • Expertly utilize cybersecurity and network management tools such as WSUS, Forescout NAC, Blackpoint MDR, ThreatLocker, Altiris, and GoverLAN
  • Work collaboratively to enforce network security policies and uphold compliance standards
  • Serve as the primary technical liaison for approximately 50 vendors and contractors
  • Collaborate effectively with external partners, contractors, and internal teams for timely problem resolution and deployment of new building technologies
  • Lead network-related projects from initiation to completion, ensuring timely delivery within budget
What we offer
What we offer
  • medical
  • vision
  • dental
  • life and disability insurance
  • company 401(k) plan
Read More
Arrow Right

Senior Manager, Maritime Cyber Safety Operations

The Senior Manager, Maritime Cyber Safety Operations is responsible for leading ...
Location
Location
United States , Miami
Salary
Salary:
Not provided
carnival.com Logo
Carnival Cruises
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Security, Business Informatics, Business administration
  • Minimum 3+ Years leading an IT/Cybersecurity Operations Environment
  • Desired to have one of or more of the following certificates: CISSP, GSLC, GSOC, GCTI, or CISM
  • Expertise in OT Cyber Operations Management, OT Network Design Concepts, and OT System Architecture Design Principles
  • Knowledge of maritime communication systems, bridge systems, propulsion and machinery management systems, power control systems, access control systems, and cargo management systems being a plus
  • Advanced problem-solving capabilities
  • Strong leadership to manage and mentor a global team
  • 24/7 cybersecurity operations mindset
  • Ability to guide cross-functional teams
  • Subject matter expert (SME) capabilities
Job Responsibility
Job Responsibility
  • Implement and operate OT security monitoring, incident response, and threat detection for all OT cyber safety tools delivered across the global fleet
  • Establish and maintain SLAs that align with GCS Threat and Intel Operations metrics to measure KRIs and KPIs for OT cyber operations
  • Establish and manage a global service delivery model to monitor, respond to, and mitigate OT cybersecurity threats aligned with the NIST framework
  • Manage OT security operational processes, including stakeholder management, to ensure effective OT cyber safety alert resolution
  • Build and or maintain a comprehensive inventory of critical OT assets and ensure accurate risk ranking and vulnerability alerting against each asset
  • Develop and maintain effective support process for OT Cyber safety defense tools such as remote access, backup and recovery, removeable media scanners, anti-virus, patching, etc
  • Build, develop, and lead a global team of OT security analysts to maintain a high standard of operational support
  • Act as an escalation point for critical OT cybersecurity incidents, ensuring swift mitigation and communication with stakeholders
  • Maintain knowledge of and implement operational standards in line with industry regulations and guidelines (e.g., CLIA, BIMCO, IMO, MSC-FAL.1/Circ.3)
  • Provide strategic guidance to senior leadership and key stakeholders
What we offer
What we offer
  • Cost-effective medical, dental and vision plans
  • Employee Assistance Program and other mental health resources
  • Company paid term life insurance and disability coverage
  • 401(k) plan that includes a company match
  • Employee Stock Purchase plan
  • Paid Time Off
  • Holidays
  • Vacation Time
  • Sick Time
  • Complementary stand-by cruises, employee discounts on confirmed cruises, plus special rates for family and friends
  • Fulltime
Read More
Arrow Right

Senior Cybersecurity Risk & Compliance Analyst

The Senior Cybersecurity Risk & Compliance Analyst is responsible for executing ...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
kennametal.com Logo
Kennametal
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in information security, Information Systems, Computer Science, or related field
  • 5–8 years of experience in cybersecurity risk management, GRC, or enterprise risk roles
  • Demonstrated hands-on experience conducting formal cybersecurity risk assessments
  • Working knowledge of major cybersecurity frameworks (NIST RMF, NIST CSF, ISO 27001)
  • Strong written and verbal communication skills with the ability to brief technical and non-technical audiences
Job Responsibility
Job Responsibility
  • Lead structured cybersecurity risk assessments across business, IT, and OT environments
  • Perform qualitative and quantitative risk analysis using recognized methodologies (e.g., NIST 800-30, FAIR, OCTAVE)
  • Maintain cybersecurity risk register entries, including risk statements, impact analysis, likelihood assessments, and remediation tracking
  • Monitor and report the status and effectiveness of risk mitigation plans
  • Develop and present cybersecurity risk status metrics and summaries for leadership review
  • Serve as a subject-matter expert for cybersecurity risk identification and treatment guidance
  • Identify confidentiality, integrity, and availability (CIA) requirements for information assets
  • Support Kennametal’s information classification and data protection programs
  • Provide risk-based input into data protection controls, including Data Loss Prevention (DLP) strategies
  • Advise stakeholders on appropriate handling, labeling, and protection of sensitive data
  • Fulltime
Read More
Arrow Right

Metering Solution Engineer

One of my consultancy clients are currently looking to build out a team of Meter...
Location
Location
United Kingdom
Salary
Salary:
Not provided
lawrenceharvey.com Logo
Lawrence Harvey
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Metering device skills: ability to select the right device following site assessments, install them (Elec, Mech, IT, Environment), integrate them (IT/OT architecture) and configure them
  • Experience with floor walks, technical metering assessments (hands on) and offering solutions for metering skills
  • Leads site-level technical coordination for metering deployments
  • Participates to site surveys (so will travel a lot at the beginning) and assessments as OT technical expert (instrumentation + IT/OT integration)
  • Strong specialist in metering technologies, instrumentation, and automation
  • Designs and validates connectivity architecture (PLCs, SCADA, gateways, PME)
  • Oversees configuration, commissioning, and interface validation
  • Ensures cybersecurity compliance with the support of the Cyber SME in the central team
  • Reports to Project managers in each Cluster (by Geo) and the lead architect in the central technical team
Read More
Arrow Right

Cyber Security Analyst

The Cyber Security Analyst will play a critical role in protecting Client’s IT a...
Location
Location
Canada , Montreal
Salary
Salary:
Not provided
globalstep.com Logo
GlobalStep
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Security, or related field
  • 2 to 5 years of experience in cybersecurity, preferably in industrial or enterprise environments
  • Strong knowledge of: SIEM tools (e.g., Splunk, Sentinel, QRadar)
  • Endpoint detection and response (EDR)
  • Network and cloud security (Azure, AWS)
  • Incident response and threat intelligence
  • OT/ICS security principles (a strong plus)
  • Relevant certifications preferred (CISSP, CISM, CEH, CompTIA Security+, GIAC)
  • Excellent analytical, communication, and problem-solving skills
  • Proven ability to advise leadership and translate technical security insights into business solutions
Job Responsibility
Job Responsibility
  • Monitor, analyze, and respond to security events using SIEM tools
  • Lead investigations into incidents, ensuring timely containment, eradication, and recovery
  • Perform root cause analysis and implement corrective and preventive actions
  • Develop and maintain playbooks for incident response and escalation
  • Conduct regular vulnerability assessments and coordinate patch management activities
  • Evaluate emerging threats, assess business impact, and propose mitigation strategies
  • Support risk assessments and audits, ensuring compliance with internal and external standards (e.g., ISO 27001, NIST, CIS)
  • Provide expert guidance on security design, architecture, and control implementation
  • Recommend and evaluate tools and technologies for endpoint, network, and cloud protection
  • Work closely with infrastructure and application teams to ensure security is built into all projects
What we offer
What we offer
  • Equal opportunity workplace
  • Affirmative action employer
  • Committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status
  • Fulltime
Read More
Arrow Right