Only W2
Â
Remote Position
Â
Position Details:
Seeking an Operational Technology Security Architect with a strong background in core cybersecurity skills and a deep understanding of the Operational Technology (OT) / Industrial Control System (ICS) domain. You will require a broad understanding of OT/ICS security concepts, but also heavily rely upon the architect’s business acumen to successfully implement such technologies. The successful candidate is familiar with security architecture concepts, comfortable with cross-functional partnership, and has experience creating, socializing, and implementing a domain-specific security strategy.Â
Â
This position reports to the Director of Security Architecture.Â
Â
You will:Â
The OT Security Architect is responsible for defining and governing the enterprise-wide security framework that secures Grainger’s OT assets. The architect translates business objectives and initiatives into a comprehensive, standards-based OT security architecture, ensuring robust risk management, compliance, and secure IT/OT interactions.Â
Â
Core responsibilities include:Â
- Security Architecture Design: Design and lead the implementation of security architectures for new systems and modifications of existing systems. Lead discussions pertaining to security; ensure project planners and business stakeholders are aligned on expectations and intended outcomes.Â
- Architectural Strategy & Policy: Define and maintain the OT security architecture, standards, and policies in support of Grainger’s business objectives.Â
- Risk Assessment & Roadmaps: Lead OT risk assessments, gap analyses, and develop a multi-year OT security roadmap influenced by Grainger’s business objectives and risk appetite.Â
- Technology Governance & Selection: Assess existing security technologies and evaluate new technologies, ensuring alignment with the architectural vision.Â
- Compliance & Audit Management: Establish governance frameworks and oversee compliance to Grainger’s internal standards, managing audit readiness and assisting with remediation tracking.Â
- Cross-Functional Leadership: Act as the primary liaison between OT operations, IT security, engineering, and senior leadership, ensuring cohesive security partnership and clear communication of risk.Â
You have:Â
- Bachelor's/Master's Degree in a relevant field (e.g., Cybersecurity, Electrical Engineering, Computer Science, etc.); or an equivalent level of knowledge gained through on-the-job experience.Â
- Relevant industry certifications such as CISSP, GICSP, or ISA/IEC 62443 Cybersecurity ExpertÂ
- 10+ years of direct experience in the cybersecurity field with minimum 5 years in OT SecurityÂ
Have strong technical understanding of the following:Â
- Secure Remote Access methods specific to the OT domain. Experience may include Zscaler, Beyond Trust, CyberArk, Xage, etc.Â
- Network segmentation and the supporting architecture patternsÂ
- OT network monitoring and intrusion detection systems. These may include Dragos, Nozomi, and Claroty.Â
- Modern-day architectures which account for the hybrid and connected nature of many new & emerging technologies (Industry 4.0, edge compute, and CPwE Cloud Connectivity).Â
- A working understanding of major Cloud Service ProvidersÂ
- Experience creating OT security policies and supporting technical standardsÂ
- Experience with threat modeling frameworks and applying these concepts to the OT/ICS domainÂ
- Working understanding of the IEC/ISA 62443 frameworkÂ