Epicareer Might not Working Properly
Learn More
E

OT SOC Specialist

Salary undisclosed

Checking job availability...

Original
Simplified

Job Description: OT SOC Specialist

Position Title: OT SOC Specialist
Department: Security Operations Center (SOC)
Location: Kuala Lumpur

Position Overview:

We are seeking a skilled and motivated OT SOC Specialist to join our team and take responsibility for monitoring, analyzing, and defending our Operational Technology (OT) environment from cyber threats. The ideal candidate will have experience in industrial control systems (ICS), SCADA systems, and a deep understanding of the unique cybersecurity challenges associated with OT. This role involves proactive threat detection, incident response, and collaboration with both IT and OT teams to ensure the security and integrity of critical infrastructure.

Key Responsibilities:

  • Monitoring & Detection:
  • Continuously monitor OT networks, systems, and devices for security threats and vulnerabilities using specialized tools and methodologies tailored for industrial control systems (ICS).
  • Analyze network traffic, system logs, and data from OT devices to detect anomalies, potential threats, and security incidents.
  • Utilize OT-specific threat intelligence feeds, SIEM (Security Information and Event Management), and other monitoring tools to identify cyber risks in real-time.
  • Incident Response & Mitigation:
  • Lead or assist in the investigation and remediation of security incidents involving OT systems.
  • Collaborate with IT and OT teams to develop and implement containment strategies in response to security breaches.
  • Conduct post-incident analysis to determine the root cause and recommend preventive measures to minimize future risks.
  • Vulnerability Management:
  • Participate in regular vulnerability assessments of OT networks and systems to identify potential weaknesses.
  • Work with the OT engineering and IT teams to patch or mitigate vulnerabilities in OT infrastructure.
  • Maintain awareness of emerging threats and vulnerabilities in OT devices and software (e.g., PLCs, RTUs, SCADA).
  • Collaboration & Communication:
  • Collaborate with OT engineers, IT cybersecurity teams, and other stakeholders to improve security posture and align OT-specific security initiatives with overall enterprise security strategies.
  • Provide technical expertise and guidance on OT security best practices, threat landscape, and emerging technologies.
  • Report and escalate security incidents to senior management, ensuring clear and concise communication.
  • Security Hardening & Best Practices:
  • Assist in the development and implementation of OT security policies, standards, and procedures.
  • Promote the adoption of best practices for securing OT systems, such as network segmentation, access control, and regular auditing.
  • Provide training and awareness sessions for OT and IT staff on cybersecurity best practices for industrial control systems.
  • Compliance & Documentation:
  • Ensure compliance with relevant regulatory frameworks, industry standards (e.g., NIST, IEC 62443, NERC CIP), and internal security policies.
  • Maintain accurate documentation of security incidents, analysis, response actions, and lessons learned.
  • Participate in audits and assessments to ensure the OT environment meets all required security standards.
  • Continuous Improvement:
  • Stay up to date with the latest OT cybersecurity threats, trends, and technologies.
  • Contribute to the continuous improvement of OT security processes and procedures.
  • Participate in simulated attack scenarios (e.g., red teaming, penetration testing) to evaluate the resilience of OT systems.

Qualifications & Requirements:

Education:

  • Bachelor's degree in Cybersecurity, Information Technology, Industrial Engineering, or related field.
  • Industry certifications (e.g., CISSP, CISM, GIAC GICSP, CompTIA Security+, ISA/IEC 62443) are preferred.

Experience:

  • 5+ years of experience in cybersecurity, with at least 2 years focused on Operational Technology (OT) security or Industrial Control Systems (ICS) security.
  • Familiarity with OT/ICS systems such as SCADA, PLCs, RTUs, DCS, and other industrial automation technologies.
  • Experience with OT security tools, SIEM systems, network monitoring tools, and vulnerability management solutions.
  • Hands-on experience with incident detection, analysis, and response in OT environments.

Technical Skills:

  • Strong understanding of networking protocols (Modbus, OPC, BACnet, DNP3, etc.) used in OT environments.
  • Proficiency in using SIEM platforms (e.g., Splunk, IBM QRadar), IDS/IPS, firewalls, and endpoint protection tools.
  • Experience with OT-specific security technologies such as firewalls designed for ICS, intrusion detection systems, and industrial network segmentation.
  • Understanding of risk management frameworks, security controls, and regulatory requirements related to OT (e.g., NIST, IEC 62443, NERC CIP).
  • Knowledge of cybersecurity tools and methodologies, including vulnerability scanning, patch management, and endpoint detection.

Desirable Attributes:

  • Experience with threat intelligence platforms and analysis.
  • Knowledge of digital forensics techniques and evidence handling.
  • Familiarity with cloud-based OT/ICS systems or hybrid environments.
  • Experience with incident management frameworks such as NIST or ISO 27001.

Job Type: Full-time

Schedule:

  • Monday to Friday

Application Question(s):

  • What is your expected compensation?
  • How soon can you join?
  • Do you have experience in OT SOC
  • Are you a cyber security graduate?

Work Location: In person