OT Technical Architect
Role Purpose:
Design and define secure OT architectures aligned to business, safety, and operational constraints across industrial environments, leveraging an OT strategic roadmap and cybersecurity vision.
Core Responsibilities:
Ability to lead design strategy and OT architecture across large groups and initiatives
Solid communications
Ability to define, bridge, and communicate the direction of OT target-state cybersecurity architectures
Partner w/Cyber teams to align OT architecture strategy with overall cyber roadmap
Act as the main resource lead for OT Security Analyst support
Design strategy for visibility, secure remote access, segmentation, zoning, and conduit models per IEC 62443, NIST SP 800-82r3
Develop and publish secure reference architectures for:
o Manufacturing sites
o Remote access
o Other as needed related to OT security
Support, evaluate, select, and implement OT security technologies (visibility, SRA, endpoint protection, segmentation, monitoring, vulnerability, identity, data security, etc.)
Lead OT cybersecurity design reviews and technical security requirements
Provide OT architectural guidance to:
o Engineering teams
o System integrators
o IT, MFG-IT teams
o Cybersecurity teams
Translate cybersecurity requirements into implementable designs aligned with the OT cybersecurity strategy
Support M&A or greenfield OT security architectures across domestic/international MFG discussions and projects
Participating in and support OT tabletop exercises as needed
Align OT security architecture to controls from IEC 62443, NIST SP800-82r3, CISv8, NIST CSF.
Communicate and share updates with leadership
Required Skills & Experience:
7 12+ years in Networking with OT/ICS environments
Strong architecture experience across:
o Industrial networks
o OT DMZ design
o Secure remote access
o OT monitoring platforms
o Networking Routing & Switching concepts
o Network & security architecture design
o Segmentation
Deep knowledge of:
o IEC 62443, NIST SP800-82r3, NIST CSF, CISv8
o Purdue Model / OSI / TCPIP Model
o Zero Trust concepts applied to OT
Ability to balance:
o Workload
o Safety
o Availability
o Security
Preferred Certifications:
IEC 62443 Cybersecurity Expert
CISSP
SANS OT Certifications
CCNP / CCIE / CCDE (Industrial & security focus)
Industry Architectural Frameworks