IT/OT Identity Separation Lead (Only Visa Independent Candidate/W2)

Remote • Posted 11 hours ago • Updated 10 hours ago
Contract Independent
Contract W2
6 Months
No Travel Required
Remote
Depends on Experience
Fitment

Dice Job Match Score™

⭐ Evaluating experience...

Job Details

Skills

  • Enterprise Resource Planning
  • Cyber Security
  • CyberArk
  • DHCP
  • Cloud Computing
  • Computer Networking
  • DNS
  • Acquisition
  • Active Directory
  • CISSP
  • Identity Management
  • Group Policy
  • ICS
  • IT Management
  • Communication
  • Dragon NaturallySpeaking
  • Energy
  • Risk Management
  • SailPoint
  • Stakeholder Management
  • Pharmaceutics
  • Programmable Logic Controller
  • Migration
  • Multi-factor Authentication
  • Manufacturing Engineering
  • Microsoft Azure
  • Kerberos
  • MES
  • Manufacturing
  • Microsoft
  • PKI
  • SCADA

Summary

Job Title:- IT/OT Identity Separation Lead
Location:- Remote
Duration:- Contract
 

Job Overview:
We are seeking a highly experienced IT/OT Identity Separation Lead with proven, hands-on experience delivering large-scale identity separation and carve-out initiatives across complex enterprise environments. The ideal candidate has successfully led both greenfield and brownfield IT/OT identity separation projects, integrating cybersecurity, identity governance, and operational technology while minimizing business disruption.

 

Responsibilities:

  • Lead enterprise-scale IT/OT identity separation programs supporting mergers, acquisitions, divestitures, and organizational transformations.
  • Design and implement identity architectures for both greenfield and brownfield environments.
  • Assess current-state identity ecosystems and develop future-state architectures supporting independent IT and OT operations.
  • Lead identity separation initiatives involving:
    • Microsoft Active Directory
    • Microsoft Entra ID (Azure AD)
    • OT Active Directory Domains
    • Privileged Access Management (CyberArk, BeyondTrust, Delinea)
    • Identity Governance & Administration (SailPoint, Saviynt, etc.)
    • Multi-Factor Authentication (MFA)
    • PKI & Certificate Services
    • Service Accounts & Non-Human Identities
  • Coordinate identity migrations across enterprise applications, manufacturing systems, ICS, SCADA, MES, PLC, and OT environments.
  • Develop migration waves, cutover plans, rollback strategies, and risk mitigation plans.
  • Work closely with cybersecurity, infrastructure, networking, manufacturing engineering, application owners, and business stakeholders.
  • Identify dependencies across identity services, networking, DNS, PKI, ERP, MES, SCADA, historians, and manufacturing applications.
  • Ensure alignment with NIST CSF, IEC 62443, ISA/IEC standards, and Zero Trust principles.
  • Provide hands-on technical leadership throughout architecture, implementation, troubleshooting, and delivery.

 

Required Skills:

  • 10+ years of enterprise Identity & Access Management (IAM) experience.
  • Proven success leading large-scale IT/OT identity separation or enterprise carve-out initiatives.
  • Hands-on experience delivering both greenfield identity implementations and brownfield modernization/separation projects.
  • Strong expertise with:
    • Microsoft Active Directory
    • Microsoft Entra ID (Azure AD)
    • Identity Governance (SailPoint, Saviynt, etc.)
    • Privileged Access Management (CyberArk, BeyondTrust, Delinea)
    • MFA & Conditional Access
    • DNS, DHCP, PKI, Group Policy, Kerberos, LDAP
  • Deep understanding of Operational Technology (OT), including:
    • Industrial Control Systems (ICS)
    • SCADA
    • Manufacturing Execution Systems (MES)
    • PLC environments
  • Experience supporting mergers, acquisitions, divestitures, or enterprise carve-outs.
  • Strong understanding of identity migration strategies, directory synchronization, coexistence models, and trust relationships.
  • Excellent communication and stakeholder management skills

 

Preferred Qualifications:

  • Experience within pharmaceutical, manufacturing, energy, utilities, or other critical infrastructure environments.
  • Knowledge of Zero Trust architecture and OT cybersecurity.
  • Experience with hybrid and cloud identity modernization.
  • Certifications such as CISSP, GIAC, Microsoft Identity, CyberArk, SailPoint, or IEC 62443 are highly preferred.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 90859492
  • Position Id: 9041717
  • Posted 11 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

Today

Full-time

USD 101,100.00 per year

Remote

10d ago

Easy Apply

Full-time

Depends on Experience

Remote

Yesterday

Easy Apply

Contract, Third Party

$65 - $68

Remote

Today

Easy Apply

Contract, Third Party

Search all similar jobs