About this role
Key Responsibilities
• Own the OT vulnerability and exposure management methodology, prioritisation model and remediation governance.
• Coordinate safe assessment and mitigation of vulnerabilities across industrial assets and supporting infrastructure.
• Develop OT incident response plans, playbooks, escalation paths and decision frameworks.
• Lead or coordinate OT forensic investigations, threat hunting and technical lessons learned.
• Integrate OT response with the existing CDC/SOC, crisis management, Legal and business continuity processes.
• Define resilience expectations for backup, configuration recovery, restoration testing and critical dependencies.
• Provide clusters and plants with risk-based mitigation options where immediate patching is not operationally feasible.
Qualifications
• Bachelor's degree in cyber security, engineering, digital forensics, computer science or a related discipline, equivalent senior experience accepted.
• Strong understanding of OT vulnerability risk, industrial operations, incident command and recovery constraints.
• Knowledge of forensic integrity, evidence handling, threat hunting and compensating control design.
Experience
• 5+ years in vulnerability management, incident response, digital forensics or resilience, including 4+ years in OT/ICS.
• Experience leading high-severity cyber incidents and coordinating technical, operational and executive stakeholders.
• Experience designing exposure prioritisation and remediation programmes for distributed environments.
Certifications
• GCIH, GCFA, GCFE, GRID or GICSP preferred.
• CISSP, IEC 62443, CRISC or relevant incident command/resilience certification desirable.