Ot/Ics Cybersecurity Analyst

Capgemini
Asturias, Spain
19 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English, German

Tech stack

Microsoft Access Cyber Security Health Information Management Supervisory Control and Data Acquisition (SCADA) Modbus Kusto Query Language Security Information and Event Management Software Vulnerability Management Mitre Att&ck Microsoft Sentinel Splunk

Job description

¿Te apasiona la ciberseguridad aplicada a entornos industriales?Buscamos un/a Analista Senior de Ciberseguridad OT/ICS con experiencia real en SOC y análisis de incidentes en SIEM para nuestro equipo de SOC en Asturias.¿Qué harás?Formarás parte de un equipo especializado protegiendo infraestructuras críticas, trabajando en la intersección entre IT y OT: Ciberseguridad OT Protección de entornos SCADA, DCS, PLCs, HMIs Monitorización de redes industriales y protocolos (Modbus, DNP3, IEC104…) Gestión de vulnerabilidades en sistemas OT SOC, SIEM & Threat Detection (clave del rol) Análisis e investigación de alertas en SIEM (Microsoft Sentinel, Splunk, etc.) Detección de amenazas en entornos IT/OT híbridos Threat hunting y correlación de eventos Identificación de movimientos laterales entre redes Incident Response Gestión de incidentes sin impacto en producción Análisis forense en entornos industriales Coordinación con equipos de ingeniería y operaciones Gobernanza y mejora continua Evaluación de riesgos OT Cumplimiento normativo (IEC **, NIS2, NIST) Mejora de reglas de detección y capacidades SOC ¿Qué buscamos?+5 años en ciberseguridad (mín. 2 en OT/ICS) Experiencia real en SOC y análisis de alertas en SIEM Conocimiento de entornos industriales (SCADA, PLCs, DCS) Familiaridad con protocolos industriales Experiencia en incident response y threat hunting Muy valorable: Microsoft Sentinel (KQL, playbooks) Herramientas OT (Claroty, Nozomi, Dragos) MITRE ATT&CK for ICS Certificaciones (GICSP, CISSP, SC?200…) ¿Qué ofrecemos?Wellbeing HUB - A full program designed to support your physical and mental wellbeing, including initiatives such as Wellhub.Flexible Compensation Plan - Choose benefits that best fit your needs: medical insurance, transportation, training, meal card or meal allowance, childcare vouchers, and more.Continuous Learning - Access to Mylearning, Capgemini University, Digital Campuses, and our Professional Communities.You’ll also have learning platforms like Coursera, Udemy, Pluralsight, Harvard Manager Mentor, and Education First for language training (English, French, German…), among others!Volunteer & Social Impact Programs - Get involved through our Sustainability, Inclusion, and Equality Groups.Buddy Program - Receive personalized support to help you settle in during your first months.Life & Accident Insurance - Additional protection and peace of mind.#J-**-Ljbffr

Requirements

+5 años en ciberseguridad (mín. 2 en OT/ICS) Experiencia real en SOC y análisis de alertas en SIEM Conocimiento de entornos industriales (SCADA, PLCs, DCS) Familiaridad con protocolos industriales Experiencia en incident response y threat hunting Muy valorable: Microsoft Sentinel (KQL, playbooks) Herramientas OT (Claroty, Nozomi, Dragos) MITRE ATT&CK for ICS Certificaciones (GICSP, CISSP, SC?200…) ¿Qué ofrecemos? Wellbeing HUB - A full program designed to support your physical and mental wellbeing, including initiatives such as Wellhub. Flexible Compensation Plan - Choose benefits that best fit your needs: medical insurance, transportation, training, meal card or meal allowance, childcare vouchers, and more. Continuous Learning - Access to Mylearning, Capgemini University, Digital Campuses, and our Professional Communities. You’ll also have learning platforms like Coursera, Udemy, Pluralsight, Harvard Manager Mentor, and Education First for language training (English, French, German…), among others! Volunteer & Social Impact Programs - Get involved through our Sustainability, Inclusion, and Equality Groups.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

Videos

See all

Related articles

See all