Role Descriptions Architecture StrategyDefine and govern OT network architecture standards across manufacturing environmentsDevelop reference architectures for segmentation secure access and connectivity patterns across sitesEstablish architecture for zones and microsegmentation aligned to Zero TrustDefine longterm architecture roadmap for OT network and security capabilities Segmentation Identity Secure Access ArchitectureDefine architecture for OT segmentation using Dynamic VLANs firewalls DMZs and identityaware controlsEstablish patterns for rolebased access certificatebased authentication and secure remote vendor connectivityDefine and govern authentication traffic flows Kerberos LDAP DNS RADIUS between OT environments and identity servicesEnsure authentication design supports reliability low latency and secure communication across regions and sitesEstablish architectural standards for identity service integration AD NAC certificate services within OT environmentsArchitect solutions that reduce lateral movement and enforce restricted explicitly permitted communication paths Active Directory Identity IntegrationPartner with Active Directory team to define architecture for a segmented AD setting Tier 0 Tier 1 Tier 2 Define connectivity and access models between OT systems and identity servicesEstablish architecture for domain controller access patterns identity boundaries and privileged access enforcementEnsure alignment of network segmentation with identitybased access and Zero Trust principles CrossTeam Architecture LeadershipPartner with Network OT Cybersecurity and AD teams to align architecture decisions and prioritiesProvide architectural direction to engineers and delivery teams implementing OT network solutionsLead resolution of complex crossdomain issues involving network identity and security dependenciesDrive consistency across global site implementations Standards Governance LifecycleDefine and maintain architecture standards design patterns and decision frameworksEnsure alignment with applicable frameworks e g Zero Trust NIST IEC 62443 Review and approve designs for alignment to segmentation identity and security architectureSupport technology selection for network NAC firewall and OT security platforms Program Site EnablementTranslate architecture into deployable standards and implementation guidanceSupport site design and readiness activities to ensure alignment with enterprise OT architectureProvide architectural guidance to programs involving segmentation NAC and AD integrationIdentify and mitigate architectural risks across OT deployments Essential Skills OT Network Architect Desirable Skills Keyword Skills EIS Network Engineer