Security Operations Center Analyst
EC-Council Global Services is hiring!
Job Title: OT SOC Specialist
Department: EGS
Location: Malaysia
Onsite working
EC-Council (www.eccouncil.org) is the world’s largest cyber security technical certification body. We operate in 145 countries globally and we are the owner and developer of various world-famous cyber security programs. We are proud to have trained and certified over 380,000 information security professionals globally that have influenced the cyber security mindset of countless organizations worldwide.
Position Overview:
We are seeking a skilled and motivated OT SOC Specialist to join our team and take responsibility for monitoring, analyzing, and defending our Operational Technology (OT) environment from cyber threats. The ideal candidate will have experience in industrial control systems (ICS), SCADA systems, and a deep understanding of the unique cybersecurity challenges associated with OT. This role involves proactive threat detection, incident response, and collaboration with both IT and OT teams to ensure the security and integrity of critical infrastructure.
Key Responsibilities:
Monitoring & Detection:
- Continuously monitor OT networks, systems, and devices for security threats and vulnerabilities using specialized tools and methodologies tailored for industrial control systems (ICS).
- Analyze network traffic, system logs, and data from OT devices to detect anomalies, potential threats, and security incidents.
- Utilize OT-specific threat intelligence feeds, SIEM (Security Information and Event Management), and other monitoring tools to identify cyber risks in real-time.
Incident Response & Mitigation:
- Lead or assist in the investigation and remediation of security incidents involving OT systems.
- Collaborate with IT and OT teams to develop and implement containment strategies in response to security breaches.
- Conduct post-incident analysis to determine the root cause and recommend preventive measures to minimize future risks.
Vulnerability Management:
- Participate in regular vulnerability assessments of OT networks and systems to identify potential weaknesses.
- Work with the OT engineering and IT teams to patch or mitigate vulnerabilities in OT infrastructure.
- Maintain awareness of emerging threats and vulnerabilities in OT devices and software (e.g., PLCs, RTUs, SCADA).
Collaboration & Communication:
- Collaborate with OT engineers, IT cybersecurity teams, and other stakeholders to improve security posture and align OT-specific security initiatives with overall enterprise security strategies.
- Provide technical expertise and guidance on OT security best practices, threat landscape, and emerging technologies.
- Report and escalate security incidents to senior management, ensuring clear and concise communication.
Security Hardening & Best Practices:
- Assist in the development and implementation of OT security policies, standards, and procedures.
- Promote the adoption of best practices for securing OT systems, such as network segmentation, access control, and regular auditing.
- Provide training and awareness sessions for OT and IT staff on cybersecurity best practices for industrial control systems.
Compliance & Documentation:
- Ensure compliance with relevant regulatory frameworks, industry standards (e.g., NIST, IEC 62443, NERC CIP), and internal security policies.
- Maintain accurate documentation of security incidents, analysis, response actions, and lessons learned.
- Participate in audits and assessments to ensure the OT environment meets all required security standards.
Continuous Improvement:
- Stay up to date with the latest OT cybersecurity threats, trends, and technologies.
- Contribute to the continuous improvement of OT security processes and procedures.
- Participate in simulated attack scenarios (e.g., red teaming, penetration testing) to evaluate the resilience of OT systems.
Qualifications & Requirements:
Education:
- Bachelor's degree in Cybersecurity, Information Technology, Industrial Engineering, or related field.
- Industry certifications (e.g., CISSP, CISM, GIAC GICSP, CompTIA Security+, ISA/IEC 62443) are preferred.
Experience:
- 5+ years of experience in cybersecurity, with at least 2 years focused on Operational Technology (OT) security or Industrial Control Systems (ICS) security.
- Familiarity with OT/ICS systems such as SCADA, PLCs, RTUs, DCS, and other industrial automation technologies.
- Experience with OT security tools, SIEM systems, network monitoring tools, and vulnerability management solutions.
- Hands-on experience with incident detection, analysis, and response in OT environments.
Technical Skills:
- Strong understanding of networking protocols (Modbus, OPC, BACnet, DNP3, etc.) used in OT environments.
- Proficiency in using SIEM platforms (e.g., Splunk, IBM QRadar), IDS/IPS, firewalls, and endpoint protection tools.
- Experience with OT-specific security technologies such as firewalls designed for ICS, intrusion detection systems, and industrial network segmentation.
- Understanding of risk management frameworks, security controls, and regulatory requirements related to OT (e.g., NIST, IEC 62443, NERC CIP).
- Knowledge of cybersecurity tools and methodologies, including vulnerability scanning, patch management, and endpoint detection.
Desirable Attributes:
- Experience with threat intelligence platforms and analysis.
- Knowledge of digital forensics techniques and evidence handling.
- Familiarity with cloud-based OT/ICS systems or hybrid environments.
- Experience with incident management frameworks such as NIST or ISO 27001.
Join Our Team:
At EC-Council, our vision is to empower people at the heart of a safer digital universe driven by trust, integrity, excellence, inclusion, collaboration, and impact. We believe in advancing the pursuit of cybersecurity excellence by developing talent with the relevant knowledge and practical skills to navigate cybersecurity.
Take the next step in your career and join us on our journey of growth and success. Apply now and be part of a dynamic team that is shaping the future of our organization.
Additional Information:
We are an equal opportunity workplace and an affirmative action employer. We are always committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, or veteran status and we do not discriminate on the basis of such characteristics or on the basis of any other status that is protected by the laws or regulations in the locations where we work.
EC-Council is committed to working with and providing reasonable accommodation to individuals with disabilities. If you have a medical condition or disability which inhibits your ability to complete any part of the application process and need reasonable accommodation to complete the process, please contact us at [email protected] and let us know how we may assist you.
To be eligible to apply for this job, you must be able provide proof that you are either a citizen of the country or have legal authorization to work in the country where this job is posted and must be residing in the same country.
EC-Council conducts pre-employment screening which may include verification of work history, academic credentials, licenses, and certifications. Offer of employment may be contingent to the satisfactory results of background checks conducted by EC-Council or a third party; EC-Council reserves the right to revoke any such employment anytime until the results have been found satisfactory.
Our Privacy Policy outlines how we collect, use, and protect your personal data during the recruitment process. Please review it to understand our practices: Privacy Policy