Job Title: OT Security Auditor – Industrial Cybersecurity
Location: Mumbai, Maharashtra
Experience Required: Minimum 4+ years
Department: OT Cybersecurity / Industrial Risk & Compliance
Employment Type: Full-time
Job Summary:
We are looking for a skilled and experienced OT Security Auditor to lead cybersecurity assessments and audits within Operational Technology (OT) environments. This role focuses on evaluating and strengthening the security posture of industrial control systems (ICS), SCADA, PLCs, and manufacturing infrastructure in alignment with global standards such as IEC 62443 and NIST SP 800-82.
Key Responsibilities:
- Conduct security audits and risk assessments for OT/ICS environments across industrial and critical infrastructure sectors.
- Evaluate the implementation and effectiveness of OT security controls aligned with:
- IEC 62443
- NIST SP 800-82
- Industry-specific standards (e.g., energy, manufacturing, automotive).
- Identify vulnerabilities and cybersecurity risks in SCADA systems, PLCs, HMIs, DCS, and sensor networks.
- Work closely with IT, engineering, and plant operations teams to ensure risk remediation and security control implementation.
- Support the development and assessment of Business Continuity Plans (BCP) and Disaster Recovery (DR) strategies specific to OT.
- Define and review network segmentation, patching strategy, remote access policies, and asset inventory for OT environments.
- Prepare and deliver comprehensive audit reports, risk ratings, and prioritized mitigation plans for stakeholders.
Qualifications & Skills:
- Minimum 4 years of experience in OT/ICS cybersecurity auditing or assessments.
- In-depth knowledge of OT environments and protocols (e.g., Modbus, DNP3, Profibus, OPC).
- Strong understanding of OT-specific cyber threats and risk scenarios across physical and digital layers.
- Exposure to ISO 27001 and IT/OT convergence strategies is an added advantage.
- Practical experience in manufacturing, energy, utilities, or automotive sectors is preferred.
- Familiarity with asset management, vulnerability assessment tools, and secure configuration practices in OT.
Preferred Certifications:
- GICSP (Global Industrial Cyber Security Professional)
- ISA/IEC 62443 Certifications
- CISSP / CISA
- Industrial Cybersecurity Professional (TÜV, GIAC, etc.)