
Especialista de Segurança Industrial OT – Operational Technology
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in Brazil.
• Serve as a technical specialist in Cyber Security for OT/ICS environments, supporting high-criticality industrial operations across various companies within the Cosan Group.
• Lead initiatives to expand OT security monitoring, including the onboarding of new plants, industrial networks, critical assets, and operational technologies.
• Develop and enhance detection use cases for industrial environments utilizing OT monitoring platforms, SIEM, EDR, and specialized solutions.
• Conduct analyses of industrial network architectures, assessing segmentation, zones, conduits, communication flows, and ICS security best practices.
• Participate in defining and reviewing secure architectures for industrial projects, operational expansions, and digital transformation in OT.
• Identify, analyze, and evaluate cyber threats, vulnerabilities, and exposures, proposing risk-based mitigation plans.
• Collaborate with Engineering, Automation, Networking, and Operations teams to implement OT security controls.
• Provide technical support for incident response in industrial systems, including root cause analysis, containment, and corrective actions.
• Conduct maturity assessments, hardening, industrial network segmentation, and compliance with frameworks and standards.
• Manage vendors and partners specializing in OT security, ensuring technical quality, governance, and service evolution.
• Prepare executive reports and presentations on risks, indicators, progress, and investment needs.
• Support the definition of the group's Cyber Security OT strategy and the evolution of industrial security maturity.
• Bachelor's degree in Technology, Information Security, or related fields.
• Practical experience in OT industrial environments, including field visits for system and infrastructure assessments.
• Experience in ICS/SCADA automation network security and familiarity with NIST, ISA/IEC 62443, and ISO standards.
• Ability to operate with a risk perspective, identifying actions and establishing priorities.
• Experience in vulnerability remediation and management.
• Experience managing contracts and third-party OT vendors.
• Experience with EDR management.
• Experience in managing Threat Detection Devices (TDD).
• Basic knowledge of IPS and Firewalls.
• Understanding of IT Governance, Risk Management, Indicators, and Maturity Assessment Models.
• Ability to work collaboratively with technical and multidisciplinary teams.
• Knowledge for engaging in discussions about architectures.
• Interest in and awareness of market best practices.
• Analytical mindset and problem-solving skills.
• Assertive communication and adaptability.
• Basic knowledge of SIEM.
• Desirable knowledge in OWASP Top 10, PTES, NIST, and MITRE.
• Desirable knowledge in Cloud Computing, such as Azure and AWS.
• Understanding of authentication and authorization.
• Desirable knowledge in application security and encryption, including WAF, API Management, and Vault.
• Understanding of agile methodology.
• Advanced English proficiency for reading, writing, and listening.
• Spanish proficiency for reading and listening.
• Open position for individuals of any affectional-sexual orientation, gender identity, race, ethnicity, and age, with or without disabilities.
• Opportunities for learning and career advancement.
• Remote work flexibility.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.