TC-CS-Cyber Architecture- OT and Engineering-OTSecurity-Senior - Bengaluru, India - EY

    EY
    EY background
    Description
    The opportunity


    The GDS Architecture Engineering and Emerging Technology (AEET) services help our clients tackle the many security challenges they face on a daily basis and develop effective solutions using people, processes and technology, while enabling better security and risk decisions, and reducing costs related to manging security risks.

    The AEET team is looking for individuals who will play a direct role in delivery of Operational Technology (OT)Identity and Access Management (IAM) security engagements, development of proposals in this area, and develop OT IAM security solutions.

    You will play a key role in supporting our clients to secure their IT/OT environments, either through advisory and/or implementation support.


    Your key responsibilitiesTo qualify, candidates must have:

    Understanding of security-related operational processes in the OT-ICS environmentsUnderstanding of technologies (typical assets, communication protocols, technical architectures) utilized by OT-ICS systems and networksKnowledge of Purdue reference model used for ICS SecurityExposure across one or more of the following OT IAM areas: Identity Governance; Access Management; Privileged Access Management; Remote access management; Physical access management; IT/OT AD management and worked with one or more of the following IAM technologies: SailPoint; Saviynt, CyberArk; Azure AD; OneIdentity, BeyondTrust, Okta; Ping, ForgeRock, Claroty, Fortinet and Zscaler.

    OT IAM business analysis experience; requirements gathering and use case developmentOT IAM assessment, strategy and roadmap developmentOT IAM controls governance frameworks over processes, controls, organisation and infrastructureExperience managing and coaching others in the development and delivery of complex client solutions and/or OT IAM proposition developmentDesign experience for OT IAM solutions on client transformationsKnowledge of different network components such (Switch, Routers, Firewalls) and their configurations.

    CCNA certified will be an added advantage.

    Prior experience of network segmentation (as per ISA 62443, Purdue model) will be an added advantageKnowledge of cyber / information security concepts, risk and controls conceptsUnderstanding of aspects of functional safety (SIS)Knowledge of TCP/IP, concepts of OSI layer and protocols, networking and security conceptsKnowledge of the technical security solutions utilized within OT-ICS systems and networksKnowledge of OS (Windows / Linux) security, Database securityKnowledge of IT infrastructureKnowledge of cyber threats and vulnerabilities related to platform and infrastructure is a plusPrior experience working alongside delivery leads and architects to Identify and manage risks is a plusPrior experience of working on industrial control systems and industrial protocols such as Modbus, Profibus, Profinet etc.

    Familiar with Microsoft tools such as Microsoft Excel, Microsoft Project, and Microsoft Visio (for network diagram creation)Creation of network diagrams for network segmentation implementation using Microsoft Visio.


    Skills and attributes for successCompleted technical higher education in the field of industrial automation, computer science, electronics or other relevant fieldsCertificates or education related to industrial automation / engineering etc.

    Knowledge of OT-ICS Security standards, including ISA/IEC 62443, NIST 800-82, NERC-CIPKnowledge on OT network monitoring solution such as Nozomi, Claroty, Armis, DarkTrace, Azure Defender.

    Project management experience on IAM solution deployments (waterfall and/or agile)Professional services experience working as a consultant with market leading organisations in the delivery of their OT IAM solutions


    To qualify for the role, you must have5+ years of experience in the Cyber Security and OT Security DomainMinimum B.

    Tech.

    or equivalent educational qualificationISA/IEC 62443 Fundamental*SCADA FundamentalsCompTIA Network+CompTIA Security+What we look forA Team of people with commercial acumen, technical experience and enthusiasm to learn new things in this fast-moving environment with consulting skills.

    An opportunity to be a part of market-leading, multi-disciplinary team of professionals, in the only integrated global transaction business worldwide.