- Company Name
- Alluvial Concepts (Macro Pros)
- Job Title
- OT Security Architect (Hybrid)
- Job Description
-
Job Title: OT Security Architect (Hybrid)
Role Summary
Senior OT Cybersecurity Architect responsible for designing, implementing, and maintaining security architectures for operational technology environments, ensuring compliance with NIST and federal frameworks, and partnering with cross‑functional stakeholders to enhance cybersecurity posture.
Expectations
- Lead OT security architecture initiatives and shape security roadmaps.
- Translate business and operational requirements into actionable security strategies.
- Champion secure design, risk mitigation, and continual improvement across OT networks and systems.
Key Responsibilities
- Develop and maintain OT/IT security reference architectures, patterns, and standards.
- Design secure network and system architectures for OT environments (segmentation, access control, monitoring, remote access).
- Review OT and facilities projects for cybersecurity impacts; recommend design improvements.
- Engage with facilities, engineering, and program offices to capture requirements and produce prioritized roadmaps.
- Identify gaps in OT security; recommend and support implementation of OT monitoring, asset discovery, and vulnerability management tools.
- Coordinate with network, system, IAM, and security operations teams on cross‑cutting initiatives.
- Guide remediation of OT vulnerabilities, ensuring solutions are operationally viable.
- Integrate OT systems into enterprise security services (logging, SIEM, vulnerability scanning, ticketing).
- Apply NIST CSF, NIST SP 800‑82, NIST SP 800‑53, RMF, FISMA, and FedRAMP frameworks to OT environments.
- Contribute to policies, procedures, standards, and support audits, assessments, and authorizations.
Required Skills
- 8+ years of experience in cybersecurity, OT/ICS, or related fields with hands‑on OT/ICS or building/facility system design.
- Proficiency in networking and security concepts: segmentation, zero trust, IAM, monitoring, incident response.
- Proven ability to lead multi‑functional technical initiatives (remediation, segmentation, tool deployments).
- Strong stakeholder engagement, requirement elicitation, trade‑off communication, and consensus building.
- Excellent written and verbal communication; technical documentation and executive presentations.
- Familiarity with OT protocols (BACnet, Modbus) and industrial systems (BAS/BMS, utilities).
- Knowledge of OT security platforms and cyber‑physical tooling (e.g., Nozomi, Dragos, Claroty).
- Experience with NIST and federal security frameworks (CSF, SP 800‑82, SP 800‑53, RMF, FISMA, FedRAMP).
Required Education & Certifications
- Bachelor’s degree in Cybersecurity, Computer Science, Engineering (mechanical/electrical/control/systems), Information Technology, or equivalent education/experience.
- Must pass a Standard Background Check to obtain Public Trust clearance.
- Preferred certifications: CISSP, CISM, GICSP, GRID, or comparable OT/cybersecurity credentials.