About this role
Location(s)
- Chennai - Tamil Nadu - India
Dear Aspirant!
We empower our people to stay resilient and relevant in a constantly changing world. We’re looking for people who are always searching for creative ways to grow and learn. People who want to make a real impact, now and in the future. Does that sound like you? Then it seems like you’d make a great addition to our vibrant international team.
We are looking for: Cybersecurity Operations Lead
You’ll make an impact by:
- Lead day-to-day cybersecurity operations covering vulnerability management, remediation coordination, ACP compliance, operational reporting, and security governance.
- Provide hands-on technical direction for vulnerability analysis, risk prioritization, remediation planning, validation, and closure.
- Own operational KPIs, service capacity, backlog management, escalation mechanisms, and continuous improvement.
- Coordinate with asset owners, application teams, infrastructure teams, cybersecurity specialists, vendors, and governance stakeholders to drive timely closure of security findings.
- Provide technical guidance for ACP activities, including asset identification and classification, protection requirements, protection concept development, approval, implementation, and evidence monitoring.
- Review security reports and dashboards, identify trends and systemic risks, and translate operational data into actionable management insights.
- Establish and maintain operating procedures, service standards, RACI models, escalation paths, and quality controls.
- Lead technical discussions with stakeholders and vendors and represent the cybersecurity operations function in governance forums.
- Mentor analysts and engineers, review deliverables, and build technical capability within the team.
- Drive automation and process improvements for vulnerability management, ACP evidence handling, reporting, and operational workflows.
- Ensure audit readiness and support internal and external assessments with accurate evidence, traceability, and documented controls.
- Drive risk-based prioritization of vulnerabilities affecting OT assets and coordinate compensating controls where direct patching is not immediately feasible.
- Coordinate vulnerability and security remediation activities in OT environments while considering operational availability, safety, maintenance windows, vendor dependencies, and change-control requirements.
- Provide cybersecurity operations leadership for both IT and OT environments, including critical infrastructure, SCADA, substations, utility systems, HMI, PLC, RTU, and industrial control environments.
Use your skills to move the world forward!
- B.E./B.Tech. in Computer Science, Information Technology, Cybersecurity, Electronics, or a related discipline; M.E./M.Tech./MCA/M.Sc. preferred.
- 12–16 years of overall experience in cybersecurity, IT security operations, vulnerability management, or related domains.
- Demonstrated experience leading technical teams or cybersecurity operations.
- Experience working with enterprise stakeholders, security governance teams, auditors, and technology owners.
- Relevant certifications such as CISSP, CISM, CEH, GIAC, ISO 27001, IEC 62443, or equivalent are preferred.
- Experience in OT/ICS cybersecurity environments such as SCADA, substations, utilities, HMI, PLC, RTU, DCS, industrial control systems, or similar operational technology environments.
- Good understanding of OT security architecture, Purdue/zone-and-conduit concepts, industrial network segmentation, remote access, asset criticality, and availability/safety considerations.
- Working knowledge of industrial protocols and technologies such as IEC 61850, Modbus, DNP3, OPC/OPC UA, PROFINET, Ethernet/IP, or similar is desirable.
- Experience applying OT cybersecurity standards such as IEC 62443 and relevant utility/critical-infrastructure security practices is preferred.
- Strong cybersecurity operations and vulnerability management experience.
- Hands-on knowledge of vulnerability assessment, CVE/CVSS concepts, risk-based prioritization, remediation validation, and exception management.
- Strong understanding of infrastructure security across Windows, Linux, network, cloud, and enterprise application environments.
- Working knowledge of security frameworks and standards such as ISO 27001, IEC 62443, NIST CSF, CIS Controls, and organizational security policies.
- Experience with vulnerability management platforms such as Tenable, Qualys, Wiz, Rapid7, or equivalent.
- Experience with SIEM/SOC operations, security monitoring, incident triage, and operational dashboards is an advantage.
- Strong understanding of ACP/protection concept lifecycle, asset criticality, security requirements, residual risk, and control implementation.
- Strong stakeholder management, escalation, presentation, and technical communication skills.
- Ability to lead distributed teams and manage priorities across multiple business units and geographies.
- Experience with automation, scripting, APIs, workflow tools, or data-driven security operations is desirable.
Create a better #TomorrowWithUs!
This role is based in Chennai, where you’ll get the chance to work with teams impacting entire cities, countries - and the shape of things to come.
We value your unique identity and perspective and are fully committed to providing equitable opportunities and building a workplace that reflects the diversity of society. Come bring your authentic self and create a better tomorrow with us.
We’re Siemens. A collection of over 312,000 minds building the future, one day at a time in over 200 countries. We're dedicated to equality, and we encourage applications that reflect the diversity of the communities we work in. All employment decisions at Siemens are based on qualifications, merit and business need. Bring your curiosity and imagination and help us shape tomorrow.
Find out more about Siemens careers at: www.siemens.com/careers
Find out more about the Digital world of Siemens here: www.siemens.com/careers/digitalminds