





Mid-level, metro location, and explicit 5+ years increase competition but niche OT SIEM expertise limits candidates.
Requires OT cybersecurity domain expertise, making skills less transferable across industries.
Mandatory 5+ years SIEM/OT integration experience, protocol knowledge, and scripting skills create strict filtering.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Design, implement, and optimize SIEM and SOAR solutions specialized for OT environments focusing on industrial control systems data integration and threat detection.
Develop and maintain custom parsers, correlation rules, and dashboards for OT-specific security monitoring in SIEM to ensure effective detection and reporting of threats.
Collaborate with cybersecurity, OT operations, and IT teams to integrate data sources, tune alerts, document procedures, and train stakeholders on OT SIEM use.
5+ years experience integrating OT data sources with enterprise SIEM platforms.
Strong understanding and hands-on experience with SIEM platforms (e.g., Sumo Logic, Palo Alto Cortex XSOAR) including architecture and rule development.
Knowledge of OT protocols (Modbus, DNP3, IEC 61850), industrial control systems (PLC, SCADA, DCS), and OT-specific logging mechanisms.
Willingness to work shift timings from 12:00 PM to 09:00 PM.
Experienced in scripting languages (Python, PowerShell) for SIEM automation and data manipulation in complex OT environments.
Certified in relevant OT cybersecurity or SIEM fields (e.g., GICSP, GRID, CISSP) indicating familiarity with industry standards like NIST SP 800-82 and IEC 62443.
Capable of collaborating across multiple business units and evolving technologies, with an ability to work on complex dependencies and multiple service offerings.