Cybersecurity Architect

Excelon Solutions
United States
about 1 month ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$124,800.0 - $139,360.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security RAID Health Information Management Supervisory Control and Data Acquisition (SCADA) Information Systems Security Architecture Professional Network Architecture Network Segmentation Remote Access Technology System Testing Software Vulnerability Management Firewalls (Computer Science) Information Technology
+3 more
Process Control Systems Operational Systems Vulnerability Analysis

Job description

We are seeking an experienced OT Cyber Security Architect to lead the design, implementation, and enhancement of Operational Technology (OT) and Industrial Control Systems (ICS) cybersecurity initiatives. The ideal candidate will have extensive experience securing OT environments within manufacturing, pharmaceutical, life sciences, medical device, or other regulated industries.

This role requires expertise in OT network architecture, SCADA systems, industrial protocols, network segmentation, cybersecurity frameworks, and secure OT infrastructure. The successful candidate will collaborate with cross-functional teams to strengthen the organization’s OT security posture while ensuring compliance with industry standards and regulatory requirements., * Design, implement, and support OT/ICS cybersecurity architecture for manufacturing and industrial environments.

  • Develop and execute cybersecurity strategies to protect Operational Technology (OT) networks and Industrial Control Systems (ICS).
  • Assess OT environments and recommend security improvements based on industry best practices.
  • Design and implement secure OT network architectures using the Purdue Model, Zones and Conduits, and IT/OT DMZ concepts.
  • Support network segmentation, firewall rule optimization, micro-segmentation, and secure remote access solutions.
  • Collaborate with engineering, manufacturing, operations, quality, network, and cybersecurity teams to implement security controls.
  • Secure industrial assets, including PLCs, HMIs, SCADA systems, historians, engineering workstations, and shop floor connectivity.
  • Perform cybersecurity risk assessments, vulnerability analysis, and remediation planning for OT environments.
  • Develop architecture diagrams, technical documentation, implementation plans, security standards, and audit-ready documentation.
  • Ensure compliance with cybersecurity frameworks including IEC 62443, NIST SP 800-82, NIST Cybersecurity Framework (CSF), and ISO 27001.
  • Participate in security governance, risk management, RAID tracking, and project status reporting.
  • Support change management activities within regulated manufacturing environments.
  • Work closely with vendors, suppliers, and internal stakeholders to deliver secure OT solutions.
  • Facilitate technical workshops and provide cybersecurity guidance to engineering and operational teams.
  • Support global cybersecurity programs and drive continuous improvements in OT security architecture., * NIST Cybersecurity Framework (CSF)
  • ISO 27001
  • Risk Assessment
  • Vulnerability Management
  • Cyber Security Architecture
  • Manufacturing
  • Pharmaceutical
  • Life Sciences
  • Medical Device
  • Critical Infrastructure
  • Stakeholder Management
  • Technical Documentation
  • Governance & Compliance
  • CSV SCADA

Requirements

Do you have experience in Vulnerability management?, * Bachelor’s degree in Cyber Security, Computer Science, Information Technology, Engineering, or a related field.

  • 15+ years of experience in Cyber Security, with significant experience in OT/ICS security.
  • Proven experience delivering OT or ICS cybersecurity programs in manufacturing, pharmaceutical, life sciences, medical device, or critical infrastructure environments.
  • Strong understanding of Operational Technology (OT) and Industrial Control Systems (ICS).
  • Hands-on experience with SCADA, PLCs, HMIs, Historians, Engineering Workstations, and Industrial Protocols.
  • Experience designing secure OT network architectures using the Purdue Model, Zones and Conduits, and IT/OT DMZ architecture.
  • Expertise in network segmentation, firewall management, micro-segmentation, secure remote access, and least-privilege connectivity.
  • Strong knowledge of cybersecurity standards including:
  • IEC 62443
  • NIST SP 800-82
  • NIST Cybersecurity Framework (CSF)
  • ISO 27001
  • Experience preparing architecture documentation, implementation guides, audit evidence, and technical reports.
  • Strong communication, stakeholder management, and leadership skills.
  • Experience working in complex enterprise or global transformation programs.

Preferred Qualifications

  • Experience in regulated manufacturing environments.
  • Knowledge of Computer System Validation (CSV) within OT/SCADA environments.
  • Experience with cybersecurity governance, risk management, and compliance programs.
  • Industry certifications such as CISSP, GICSP, CISM, GIAC, ISA/IEC 62443, or similar are highly preferred., * OT Cyber Security
  • Industrial Control Systems (ICS)
  • SCADA
  • PLC
  • HMI
  • Historians
  • OT Network Architecture
  • Purdue Model
  • Zones & Conduits
  • IT/OT DMZ
  • Industrial Protocols
  • Network Segmentation
  • Firewall Management
  • Micro-Segmentation
  • Secure Remote Access, * Cybersecurity architect: 10 years (Required)
  • OT/ICS security: 5 years (Required)
  • scada: 4 years (Required)
  • Industrial Control Systems (ICS): 6 years (Required)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

7:25 min

Writing system tests to verify operational infrastructure

Ryan Latta · WWC 2021

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:51 min

Writing characterization tests to document existing behavior

Gil Zilberfeld · JS Congress

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

Videos

See all

Related articles

See all