Title: OT Operation and Security: Senior Consultant | Deputy Manager
Interested candidates can directly share their updated resumes at
[email protected]
- Job Title: Senior Consultant/ Deputy Manager OT (Operational Technology) Security & Consulting
- Location: Anywhere in India (Any Protiviti office)
- Travel: Up to 70% travel to the Middle East (UAE, KSA, Oman, Qatar, Kuwait, Bahrain etc.)
- Experience: 3+ Years
- Preferred Certificate: ISA/IEC 62443 Certification (any level), CISA, CRISC, CEH
- Employment Type: Full-time | Auditing & Consulting | Client-facing
Position Summary:
We are looking for a highly skilled Senior Consultant/ Assistant Manager OT Security & Consulting to join our Audit and Risk Advisory practice. The role requires hands-on experience in Operational Technology (OT) environments, focusing on Operational aspects, security assessments, governance reviews, and regulatory compliance audits for critical infrastructure. This role will be based in India, with frequent travel to client sites across the Middle East (up to 70%).
The ideal candidate will bring deep domain knowledge in OT/ICS cybersecurity, solid audit experience, and the ability to work across industrial sectors including Oil & Gas, Utilities, Aviation, and Telecom.
Key Responsibilities:
OT Security Assessments
- Perform security audits of OT environments, including SCADA, PLC, DCS systems, and IIoT integrations.
- Review OT-specific policies and procedures for access management, configuration baselines, and asset inventories.
- Assess implementation of network segmentation, firewalls, and endpoint protection mechanisms in OT infrastructure.
- Evaluate OT vulnerability management, patching practices, and secure configurations.
- Assess backup & disaster recovery mechanisms for OT systems with focus on RTO/RPO alignment.
- Conduct OT-specific incident response readiness reviews, including logging, alerting, and simulation exercises.
- Review logging and monitoring practices using SIEM or similar tools for OT systems.
OT Governance & Strategic Alignment
- Review OT strategy documents and validate alignment with business objectives and regional regulations (e.g., GACAR, ICAO).
- Evaluate OT governance structures including roles, responsibilities, and oversight mechanisms.
- Assess integration of cybersecurity risk into strategic planning.
- Review OT-related stakeholder engagement and communication mechanisms.
Regulatory & Compliance
- Perform compliance assessments against global and regional standards: IEC 62443, NIST 800-82, NCA ECC, ISO 27019, GACAR, ICAO.
- Develop detailed audit reports, control gap analyses, and risk treatment recommendations.
- Support development of risk and control matrices (RCMs) and minimum baseline security standards.
Experience:
- Minimum of 3+ years in OT/ICS cybersecurity, consulting, or auditing roles.
- Robust hands-on exposure to OT protocols (Modbus, DNP3, OPC, etc.), SCADA/DCS/PLC systems.
- Experience with risk assessment, control testing, and policy development in industrial environments.
- Prior consulting experience in sectors such as Energy, Utilities, Oil & Gas, Aviation, or Manufacturing is highly preferred.
Certifications (Mandatory: One or more recent):
- GICSP GIAC Global Industrial Cyber Security Professional
- ISA/IEC 62443 Certification (any level)
- CISM or CISSP (preferred)
- CISA Certified Information Systems Auditor (audit-focused candidates)
- ISO 27001:2022 Lead Auditor
- CRISC Certified in Risk and Information Systems Control (desirable)
Interested candidates can directly share their updated resumes at
[email protected]
📌 Operational Technology (OT) Security & Consulting- Middle East clients (India)
🏢 protiviti india
📍 India