- Location
- Pune, MH,IN, IN
- Type
- Full-time
- Department
- Engineering
- Seniority
- Lead
- Experience
- 8+ years
- Source
- Eightfold
Description
## What you’ll do:
The person will serve as the technical lead and subject matter expert for OT Cybersecurity Service offerings. This role will drive the development of hardening standards, reference architectures, cybersecurity design guidance, technical methodologies, and service delivery artifacts. The position will act as the technical advisor for the global cybersecurity services team and support capability development through mentoring and training.
"Lead Engineer - Cybersecurity Services will be the lead subject matter expert in driving ICS/OT security assessments of Eaton customer solutions, networks and the associated remediation. The Cybersecurity Services Engineer responsibilities will include :
- Support the execution of the technical strategy for cybersecurity service offerings to Eaton’s customers.
- Own the creation and maintenance of OT cybersecurity hardening standards, secure configuration guides and implementation playbooks
- Develop and maintain secure reference architectures for industrial control systems, power management systems and critical infrastructure environments
- Lead architecture reviews and provide technical guidance on OT cybersecurity assessments, remediation plans and solution implementations
- Create reusable cybersecurity service delivery artifacts including assessment methodologies, checklists, templates and technical documentation
ntation.
- Evangelize and provide technical security trainings to Eaton sales, marketing, Product managers, service & support personnel within the organization, evangelizing the importance of cybersecurity while building Cybersecurity assessment & defense capabilities in support of the delivery of our Cybersecurity Services.
- Develop and deliver technical training programs and workshops for global Cyebrsecurity Services / Field Service engineering and services teams
- Assume lead and/or support role in cybersecurity assigned projects (e.g. RFP responses, pre-sale presentations, consulting etc.) ensuring projects are delivered on time, within budget, and to the satisfaction of the customer.
- Execute a broad range of full lifecycle cybersecurity services for ICS and SCADA environments, for Eaton’s clients, including risk assessments, design, consulting, commissioning, hardening, solution deployment (e.g. industrial cybersecurity monitoring), and training and generation of associated security docume
- Define and execute the technical strategy, standards, methodologies, playbooks, runbooks and architecture frameworks for OT Cybersecurity Services.
- Travel to customer sites to drive / support the above activities
This position will work with both the Sales and Marketing team and the Cybersecurity Center of Excellence, to ensure close coordination and compatibility of efforts to drive security strategies in Eaton."
## Qualifications:
Bachelor’s in Computer science, Computer [Cyber]Security, Computer Engineering, Software Engineering, Electrical Engineering or comparable degree.
"An Overall 8-10 years of experience in the area of OT/ ICS Cybersecurity, Industrial Automation and Control.
- 3+ years of experience performing cybersecurity services at customer sites, preferably in ICS environments.
- 3+ years of experience designing and implementing ICS and OT systems (e.g. DCS, SCADA, BAS, BMS, EPMS) and familiarity with SCADA/ICS protocols, communication, and technologies (Modbus, BACnet, DNP3, IEC-61850, WiFi, Cellular communication, LAN, WAN, VPN, PLCs, VFDs, UPSs)
- 3 + years of experience in network architecture and design
"
## Skills:
"* Experience creating cybersecurity reference architectures and technical design guidance
\- Experience developing hardening standards, security baselines and deployment methodologies
\- Experience conducting cybersecurity architecture reviews and design assessments
\- Deep understanding of IEC 62443 zones and conduits methodologies
-Ability to translate standards and best practices into operational procedures and technical documentation
\- Track record of architecting and building security solutions for ICS/OT SCADA systems, IoT & cloud based systems
\- Solid understanding of security protocols (HTTPS, TLS, SSH, Kerberos, 802.11 security, Bluetooth LE, Zigbee) and how they can be used to secure the communications within industrial environments.
\- Knowledge of Industrial automation protocols (IEC 61850, DNP3, ICCP, Modbus, WirelessHART)
\- Deep understanding of networking fundamentals,TCP/IP, network security best practices and implementation.
\- Demonstrated Experience spanning across all phases of Secure Product Development Lifecycle especially conducting architecture reviews, threat modeling, identifying security requirements, framing security policies and designing protection mechanisms with a consideration of Usabilty & User Experience.
\- Understanding of cybersecurity standards and regulations (eg: NERC-CIP, IEC 62351, IEC 62443, NIST 800-53, UL 2900)
"
"• Strong technical writing and documentation skills, with the ability to simplify complex cybersecurity concepts into practical implementation guidance.
- Excellent interpersonal, communication, and presentation skills, including the ability to explain cybersecurity risks and technical concepts to executives, business leaders, and customers.
- Ability to influence technical direction and collaborate with technical leads without direct authority.
- Strong mentoring, coaching, training, and knowledge-transfer capabilities.
- Demonstrated ability to drive alignment and standardization across global cybersecurity teams.
- Ability to lead large, complex projects across diverse areas and respond quickly and effectively to changing priorities.
- Execute complex projects, tasks, and assignments with minimal or strong management direction, depending on project requirements
- Strong problem-solving and reasoning ability, with technical innovation and creative solution development.
- Ability to work effectively across multicultural, geographically dispersed, and multidisciplinary teams, including legal, IT, product management, and project management."