- Location
- DKI Jakarta, Indonesia
- Type
- Full-time
- Department
- IT
- Closing date
- Today
- Source
- Workday
Description
Job Description Summary:
Responsible for securing industrial control systems (ICS), SCADA environments, and other Operational Technology assets across the organization. This role bridges IT and OT domains, ensuring the protection of critical infrastructure, manufacturing processes, and industrial networks against cyber threats while maintaining operational continuity and safety
Job Description:
OT Security Strategy & Governance
Develop and implement OT security strategy aligned with organizational cybersecurity framework.
Define OT security policies, standards, and procedures based on industry frameworks (e.g., IEC 62443, NIST CSF, ISO 27001).
Perform OT risk assessments and threat modelling for industrial environments.
Collaborate with IT Security, Risk, and Compliance teams to ensure unified security posture.
OT Environment Protection
Identify, classify, and manage OT assets (PLCs, DCS, SCADA systems, HMIs, Industrial IoT).
Design and implement network segmentation (zones & conduits) in OT environments and IT/OT boundaries
Deploy and manage OT security technologies:
Industrial firewalls & industrial switches
Network intrusion detection systems (NIDS)
OT threat detection platforms
Ensure secure remote access solutions for vendors and engineers.
Monitoring & Incident Response
Monitor OT networks for anomalous behavior and potential threats.
Investigate and respond to OT security incidents and alerts.
Develop OT-specific incident response playbooks.
Coordinate with SOC and incident response teams for cross-domain events.
Vulnerability Management & Hardening
Conduct vulnerability assessments specific to OT systems (non-intrusive methods).
Work with engineering teams to remediate vulnerabilities without disrupting operations.
Manage patching strategies considering uptime and safety constraints.
Perform secure configuration reviews for PLCs, SCADA, and industrial devices.
Risk, Compliance & Auditing
Ensure compliance with regulatory requirements and standards:
IEC 62443
NIST SP 800-82
Local critical infrastructure regulations
Support internal and external OT security audits.
Provide documentation, reporting, and risk mitigation recommendations.
Cross-Functional Collaboration
Work closely with:
Plant operations / engineering teams
IT infrastructure & cybersecurity teams
Third-party vendors / OEMs
Translate cybersecurity requirements into operationally feasible controls.
Provide security awareness training tailored for OT personnel
Continuous Improvement
Stay updated on emerging OT threats and vulnerabilities.
Evaluate and implement new OT security tools and solutions.
Conduct tabletop exercises and simulations for OT cyber incidents.
Drive OT security maturity initiatives and roadmap.
Job Requirement :
Bachelor’s degree in Cybersecurity, Information Technology, Engineering, or related field
(Master’s degree is a plus)3–8+ years in cybersecurity, with at least 2–3 years in OT/ICS security
Hands-on experience with SCADA systems, PLCs / DCS environments, Industrial networks and protocols
Strong knowledge of OT/ICS protocols : Modbus, S7-Communication, OPC-UA, OPC-DA, PROFINET, MQTT etc.
Familiarity with OT security tools : Nozomi, Claroty, Dragos (or equivalent)
Network security expertise : Firewalls, segmentation, IDS/IPS
Understanding of Windows/Linux hardening in OT context, Network architecture design
Experience with vulnerability assessment tools adapted for OT
Having Certifications (Preferred)in GICSP (Global Industrial Cyber Security Professional), CISSP / CISM / CISA, ISA/IEC 62443 certifications, CEH or equivalent
Strong analytical and problem-solving abilities
Ability to balance security vs. operational uptime
Excellent communication skills across technical and non-technical stakeholders
Stakeholder management (especially plant/engineering teams)
"Our company has never levied any fees for the recruitment process nor has it required to order tickets and accommodation through a certain travel agent or certain person"