Job at a glance
We are looking for an experienced OT/IACS Cybersecurity Engineer to join our growing UK&I cybersecurity delivery team focussed on the delivery of cybersecurity solutions, consulting services and technical support within industrial and critical infrastructure environments. The successful candidate will act as a trusted technical expert, supporting customers throughout the lifecycle of cybersecurity projects, from assessments and design through to implementation, support and continuous improvement.
The role requires a broad blend of cybersecurity, networking, industrial systems and infrastructure expertise, alongside strong troubleshooting and customer engagement skills. This role requires approximately 30-50% travel across the UK, with occasional travel to Ireland and other locations across Europe as business needs require. Responsibilities: Design, implement and support cybersecurity solutions for industrial and critical infrastructure customers.
Configure, maintain and troubleshoot network and host-based security technologies. Develop and review secure architectures, standards, procedures and security controls. Support system hardening, vulnerability management and security improvement initiatives. Produce high-quality technical documentation, reports, procedures and customer deliverables. Perform cybersecurity IEC62443 risk assessments and vulnerability assessments within OT and industrial environments.
Undertake and manage customer workshops for OT cybersecurity requirements gathering, design and implementation. Work closely with customer and Schneider Electric project teams, operations teams and customer stakeholders to successfully deliver cybersecurity projects. Provide technical leadership and act as an escalation point for complex technical issues. Support the professional development of other cybersecurity team members through mentoring, coaching and knowledge sharing.
Extensive experience in OT, ICS or SCADA environments, with strong knowledge of industrial cybersecurity architectures including zones, conduits and segmentation, Active Directory, PKI, secure remote access, and cybersecurity risk and vulnerability management. Hands-on experience with security technologies such as firewalls, IDS/IPS, endpoint security and SIEM platforms, including security monitoring, threat detection and incident response.
Strong understanding of industrial protocol security and OT security best practices, including secure remote access architectures, jump hosts, bastion hosts and MFA-enabled connectivity. Applied knowledge of cybersecurity frameworks and standards, including NIST, ISO 27001, IEC 62443 and the NCSC Cyber Assessment Framework (CAF). Strong understanding of Networking, Ethernet-based industrial networks, switching technologies, high-availability and network redundancy concepts, including segmentation, link aggregation and protocols such as STP, RSTP, MSTP, OSPF, EIGRP, HSRP and VRRP, as well as wireless technologies including Wi-Fi, 3G/4G/5G, LoRaWAN, Zigbee and industrial radio communications.
Direct practical experience with design and implementation of TCP/IP networking, VLANs, trunking, VPN, NAT, firewalls, Data Diodes, WAN and secure remote access solutions, network troubleshooting and packet analysis, including industrial protocols. Experience administering and securing Windows Server and clients, Linux/Unix and Active Directory environments, including Group Policy, PKI, Certificate Authorities and certificate management, hardening.
Experience with virtualisation platforms (VMware vSphere, ESXi, Hyper-V), endpoint security solutions in OT environments, backup and recovery technologies, and automation through Bash, Python or similar scripting languages. Experience of using cybersecurity assessment tools, working with cloud-connected OT architectures (Desirable). Familiarity with variety of Vendors cybersecurity, networking and remote access technologies; For example - Cisco, Palo Alto, Fortinet, Moxa, Hirschmann, C