Назад
Company hidden
4 часа назад

Operational Technology (OT) Incident Response Consultant

Формат работы
remote (только Romania)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Romania
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Operational Technology (OT) Incident Response Consultant (Cybersecurity): Investigating and responding to high-severity incidents affecting industrial control systems and OT networks with an accent on threat analysis, root cause investigation, and detection engineering. Focus on analyzing network traffic and security telemetry, tuning OT-specific alerts, and strengthening industrial cyber defense capabilities.

Location: Remote from Romania; legal authorization to work in Romania is required, without employer sponsorship.

Company

hirify.global operates in the cybersecurity sector, providing security products and services.

What you will do

  • Investigate and respond to high-severity security incidents affecting industrial control systems and OT networks.
  • Perform root cause analysis, threat analysis, and research into threat actors, attack campaigns, and OT-specific TTPs.
  • Analyze network traffic, system logs, firewall logs, IDS/IPS events, and other security telemetry.
  • Develop and tune OT-specific detection use cases, alerts, SIEM monitoring strategies, and escalation workflows.
  • Provide SME-level consulting and recommendations for remediation, mitigation, risk reduction, and OT security improvements.
  • Contribute to new security capabilities, tools, automation initiatives, and proactive monitoring controls.

Requirements

  • Experience in cybersecurity, incident response, security operations, or threat detection.
  • Understanding of OT and ICS architectures, operational environments, and the Purdue Enterprise Reference Architecture model.
  • Experience with SIEM technologies, event monitoring, detection use cases, alert tuning, threat intelligence, and security investigations.
  • Knowledge of TCP/IP, UDP, and industrial protocols such as Modbus and DNP3.
  • Ability to analyze network traffic and identify indicators of compromise in OT environments.
  • English communication skills and willingness to work nights, weekends, and holidays in a 24x7x365 MDR service.

Culture & Benefits

  • Remote-first work environment.
  • Permanent employment.
  • Exposure to industrial cybersecurity incidents, threat research, detection engineering, and advisory work.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →