OT & ICS Security Engineer

Pvh (tommy Hilfiger/calvin Klein
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Tech stack

Systems Engineering
Computer Security
Deep Packet Inspection
Ethernet
Health Information Management
Network Security
Modbus
Network Segmentation
OPC Unified Architecture
Security Information and Event Management
System Availability
Process Control Systems
Operational Systems
Fortinet
Cisco networks
Vulnerability Analysis

Job description

Responsible for securing the critical infrastructure that powers our clients' industrial operations, focusing on availability, safety, and integrity of OT environments, including manufacturing plants, control systems, and IIoT devices., * OT Network Defense & Discovery: Implement and manage network discovery and anomaly detection solutions specifically designed for industrial environments. Perform deep packet inspection (DPI) across critical OT protocols (Modbus, DNP3, Profinet, OPC UA, IEC 104). Design and deploy secure remote access and micro-segmentation strategies to isolate control networks from enterprise IT.

  • Vulnerability & Risk Management: Execute technical vulnerability assessments on industrial hardware (PLCs, HMIs, embedded systems). Lead remediation of security gaps while maintaining high system availability. Map industrial security controls to global frameworks such as ISA/IEC 62443 and NIST 800-82.
  • Industrial Security Architecture: Collaborate with automation and plant engineers to implement "security by design" in new IIoT and IC deployments. Monitor lateral movement and industrial-specific threats using specialized OT security monitoring tools. Develop and document technical standards for system hardening and incident response in the field.

Requirements

  • OT Visibility: Experience with Claroty, Nozomi Networks, Dragos, or Microsoft Defender for IoT.
  • Industrial Protocols: Deep understanding of Modbus, DNP3, Profinet, OPC UA, EtherNet/IP.
  • Network Security: Industrial firewalls (Fortinet, Cisco ISA, Palo Alto) and unidirectional gateways (data diodes).
  • Compliance: Practical application of ISA/IEC 62443 and NIST 800-82., * 5-8+ years of experience in cybersecurity focused on industrial control systems (ICS) or operational technology (OT).
  • Technical depth: Ability to analyze industrial traffic and identify misconfigurations or malicious behavior in non-IT environments.
  • Operational awareness: Deep understanding of a "safety-first" mindset required when working with production-critical assets.
  • Framework expertise: Proven experience implementing international industrial security standards.
  • Background: Often comes from an electronic, mechatronic, or systems engineering background with a pivot to security., EU: AspenView does not provide visa sponsorship for this role. Candidates must already be legally authorized to work in their country of residence.

Benefits & conditions

  • Competitive base salary
  • Comprehensive benefits and wellness support
  • Flexible work model: hybrid, remote, or in-office
  • Real growth opportunities and leadership visibility
  • Inclusive, respectful culture blending U.S. innovation with Colombian heart
  • A company that listens, invests in you, and celebrates wins together

Apply for this position