Only W2
ย
Remote Position
ย
Position Details:
Seeking an Operational Technology Security Architect with a strong background in core cybersecurity skills and a deep understanding of the Operational Technology (OT) / Industrial Control System (ICS) domain. You will require a broad understanding of OT/ICS security concepts, but also heavily rely upon the architectโs business acumen to successfully implement such technologies. The successful candidate is familiar with security architecture concepts, comfortable with cross-functional partnership, and has experience creating, socializing, and implementing a domain-specific security strategy.ย
ย
This position reports to the Director of Security Architecture.ย
ย
You will:ย
The OT Security Architect is responsible for defining and governing the enterprise-wide security framework that secures Graingerโs OT assets. The architect translates business objectives and initiatives into a comprehensive, standards-based OT security architecture, ensuring robust risk management, compliance, and secure IT/OT interactions.ย
ย
Core responsibilities include:ย
- Security Architecture Design: Design and lead the implementation of security architectures for new systems and modifications of existing systems. Lead discussions pertaining to security; ensure project planners and business stakeholders are aligned on expectations and intended outcomes.ย
- Architectural Strategy & Policy: Define and maintain the OT security architecture, standards, and policies in support of Graingerโs business objectives.ย
- Risk Assessment & Roadmaps: Lead OT risk assessments, gap analyses, and develop a multi-year OT security roadmap influenced by Graingerโs business objectives and risk appetite.ย
- Technology Governance & Selection: Assess existing security technologies and evaluate new technologies, ensuring alignment with the architectural vision.ย
- Compliance & Audit Management: Establish governance frameworks and oversee compliance to Graingerโs internal standards, managing audit readiness and assisting with remediation tracking.ย
- Cross-Functional Leadership: Act as the primary liaison between OT operations, IT security, engineering, and senior leadership, ensuring cohesive security partnership and clear communication of risk.ย
You have:ย
- Bachelor's/Master's Degree in a relevant field (e.g., Cybersecurity, Electrical Engineering, Computer Science, etc.); or an equivalent level of knowledge gained through on-the-job experience.ย
- Relevant industry certifications such as CISSP, GICSP, or ISA/IEC 62443 Cybersecurity Expertย
- 10+ years of direct experience in the cybersecurity field with minimum 5 years in OT Securityย
Have strong technical understanding of the following:ย
- Secure Remote Access methods specific to the OT domain. Experience may include Zscaler, Beyond Trust, CyberArk, Xage, etc.ย
- Network segmentation and the supporting architecture patternsย
- OT network monitoring and intrusion detection systems. These may include Dragos, Nozomi, and Claroty.ย
- Modern-day architectures which account for the hybrid and connected nature of many new & emerging technologies (Industry 4.0, edge compute, and CPwE Cloud Connectivity).ย
- A working understanding of major Cloud Service Providersย
- Experience creating OT security policies and supporting technical standardsย
- Experience with threat modeling frameworks and applying these concepts to the OT/ICS domainย
- Working understanding of the IEC/ISA 62443 frameworkย