Andiamo is a globally recognized staffing and consulting firm specializing in technology and go-to-market professionals. They are seeking an OT Cybersecurity Analyst to protect critical infrastructure by identifying risks and strengthening defenses in manufacturing environments.
Responsibilities:
- Evaluate findings from OT security assessments and identify vulnerabilities across industrial control systems, including PLCs, HMIs, SCADA environments, and plant networks
- Support the configuration, tuning, and operational use of OT security platforms, ensuring accurate visibility, monitoring, and threat detection
- Partner with vulnerability management, risk, and incident response teams to assess threats, prioritize remediation, and support investigations when needed
- Leverage OT visibility tools to analyze network segmentation, remote access activity, endpoint protection, and overall system health
- Map findings and recommendations to recognized frameworks such as IEC 62443, NIST guidelines, and CIS standards to ensure compliance and best practices
- Document risks, findings, and remediation strategies, translating technical insights into clear, actionable recommendations for stakeholders
- Act as a connector between cybersecurity teams, IT, and manufacturing operations, ensuring alignment and effective communication across all groups
Requirements:
- 3–7 years working in OT/ICS cybersecurity, industrial networking, or related environments
- Hands-on experience with OT security tools, including visibility platforms, secure remote access solutions, and network segmentation technologies
- Strong understanding of industrial communication protocols, control systems, and manufacturing environments
- Familiarity with models such as Purdue, OSI, and TCP/IP, and their application within OT environments
- Ability to interpret vulnerability data, monitoring outputs, and security alerts to identify meaningful risks and solutions
- Strong ability to explain complex technical issues to diverse audiences, from engineers to leadership teams
- Comfort leading initiatives, managing priorities, and delivering results in environments with multiple stakeholders
- Industry certifications such as GICSP, IEC 62443-related credentials, CISSP, CompTIA Security+, or Cisco networking certifications are highly valued