Source description
About the role
As a Senior in the EY Cyber Architecture Operational Technology & Engineering (CAOE) team, you will play a crucial role in delivering Operational Technology (OT) security engagements and developing effective solutions to tackle the security challenges faced by clients on a daily basis. Your responsibilities will include: - Leading and performing vulnerability assessments on OT assets such as PLCs, HMIs, SCADA systems, historians, and industrial networks - Creating and maintaining vulnerability reports, risk registers, and remediation status documentation - Supporting clients with audits, assessments, and internal security reviews - Assisting clients with risk-based prioritization and remediation planning considering production constraints - Demonstrating understanding of security-related operational processes in OT-ICS environments - Familiarity with OT SOC, OT Identity Access Management, OT Pen testing, and Zero Trust on OT - Proficiency in technologies used by OT-ICS systems and networks, cyber/information security concepts, and risk and controls concepts - Knowledge of TCP/IP, OSI layer, networking and security concepts, technical security solutions in OT-ICS systems, and OS (Windows/Linux) security - Previous experience collaborating with delivery leads and architects to identify and manage risks will be advantageous To qualify for this role, you should have: - 5+ years of experience in the Cyber Security and OT Security Domain - Minimum B. Tech. or equivalent educational qualification - Certifications such as ISA/IEC 62443 Fundamentals Specialist, ISA/IEC 62443 Risk Assessment Specialist, CompTIA Network+, CompTIA Security+, and Cisco CCNA (Industrial) Additionally, the ideal candidate will possess the following skills and attributes: - Completed technical higher education in industrial automation, computer science, electronics, or other relevant fields - Knowledge of OT network monitoring solutions and tools like Nessus, BackTrack, NMAP, BurpSuite - Familiarity with OT-ICS Security standards, IT/OT/IoT communication protocols, and security standards such as ISO 27001/2, NIST, HITRUST, etc. At EY, you will have the opportunity to work with a team of professionals dedicated to creating a better working world. You will be part of a global network of over 1400 professionals, collaborating with leading businesses across various industries. EY offers a flexible environment, continuous learning opportunities, and a culture that values diversity, equity, and inclusiveness. Join EY and be empowered to develop future-focused skills, gain world-class experiences, and contribute to a globally connected team. Apply today to shape your future with confidence and be part of an inclusive environment where diverse perspectives are celebrated. As a Senior in the EY Cyber Architecture Operational Technology & Engineering (CAOE) team, you will play a crucial role in delivering Operational Technology (OT) security engagements and developing effective solutions to tackle the security challenges faced by clients on a daily basis. Your responsibilities will include: - Leading and performing vulnerability assessments on OT assets such as PLCs, HMIs, SCADA systems, historians, and industrial networks - Creating and maintaining vulnerability reports, risk registers, and remediation status documentation - Supporting clients with audits, assessments, and internal security reviews - Assisting clients with risk-based prioritization and remediation planning considering production constraints - Demonstrating understanding of security-related operational processes in OT-ICS environments - Familiarity with OT SOC, OT Identity Access Management, OT Pen testing, and Zero Trust on OT - Proficiency in technologies used by OT-ICS systems and networks, cyber/information security concepts, and risk and controls concepts - Knowledge of TCP/IP, OSI layer, networking and security concepts, technical security solutions in OT-ICS systems, and OS (Windows/Linux) security - Previous experience collaborating with delivery leads and architects to identify and manage risks will be advantageous To qualify for this role, you should have: - 5+ years of experience in the Cyber Security and OT Security Domain - Minimum B. Tech. or equivalent educational qualification - Certifications such as ISA/IEC 62443 Fundamentals Specialist, ISA/IEC 62443 Risk Assessment Specialist, CompTIA Network+, CompTIA Security+, and Cisco CCNA (Industrial) Additionally, the ideal candidate will possess the following skills and attributes: - Completed technical higher education in industrial automation, computer science, electronics, or other relevant fields - Knowledge of OT network monitoring solutions and tools like Nessus, BackTrack, NMAP, BurpSuite - Familiarity with OT-ICS Security standards, IT/OT/IoT communication protocols, and security standards such as ISO 27001/2, NIST, HITRUST, etc. At EY, you will have the opportunity to work with a team of professional
More at EY