Job Description
Job Description : OT Security Engineer (IT & OT Vulnerability Assessment)
\n
Location : San Diego, CA (Local)
\n
Duration : 4 Months (Chances for extension)
\n
\n
Key Responsibilities:
\n
\n
- \n
- Perform onsite OT Vulnerability Assessments across industrial environments.
- Conduct vulnerability scanning and risk assessments for both OT and IT assets.
- Utilize OT security tools such as Nozomi, Claroty, Tenable.ot, Microsoft Defender for IoT, etc.
- Perform IT vulnerability assessments using Nessus Professional, Qualys, Rapid7, etc.
- Review industrial networks, PLCs, SCADA, HMIs, engineering workstations, servers, and network devices.
- Prepare assessment reports, risk ratings, remediation recommendations, and executive summaries.
- Present findings and recommendations to client stakeholders and management teams.
- Coordinate with plant operations, automation, and IT teams during assessments.
\n
\n
\n
\n
\n
\n
\n
\n
\n
Required Skills & Experience
\n
- \n
- 8+ years of experience in OT/ICS Cybersecurity and Industrial Automation.
- Hands-on experience with PLC, SCADA, HMI Programming and Commissioning.
- Strong understanding of ICS/OT architectures, Purdue Model, IEC 62443, and NIST 800-82.
- Experience performing OT Vulnerability Assessments in manufacturing, utilities, energy, mining, or critical infrastructure environments.
- Hands-on experience with:
- Nozomi Networks
- Claroty
- Tenable.ot
- Experience conducting IT Vulnerability Assessments using:
- Nessus Professional
- Qualys
- Rapid7
- Knowledge of industrial protocols such as Modbus, DNP3, OPC-UA, Ethernet/IP, and Profinet.
- Strong report writing, presentation, and client-facing communication skills.
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
Preferred Certifications
\n
- \n
- IEC 62443 Cybersecurity Fundamentals
- GICSP
- CISSP
\n
\n
\n
\n
Ideal Candidate
\n
A hands-on OT Security professional capable of independently performing IT & OT Vulnerability Assessments, conducting onsite plant assessments, preparing detailed reports, presenting findings to clients, and recommending practical remediation measures.
