OT Security Analyst
Department: Information Technology / OT Security
Location: Houston, TX Hybrid (3 days onsite per week)
Role Type: Contract (1 Year+)
About Our Client
Our client is a globally recognized technology services and solutions company with decades of experience delivering cutting-edge IT infrastructure, digital transformation, and managed services to some of the world's most complex organizations. Operating across a wide range of industries including energy, financial services, healthcare, and government they partner with leading technology vendors to design, build, and manage mission-critical environments. With a strong presence across the United States and internationally, they are known for their innovation-first culture, commitment to operational excellence, and deep technical expertise. Their mission centers on helping clients accelerate technology adoption while reducing risk and complexity.
Job Description
We are seeking a skilled OT Security Analyst to join our client's team supporting critical industrial environments in Houston, TX. In this hybrid role, you will be responsible for administering and supporting OT cybersecurity platforms and processes, with a primary focus on asset visibility, vulnerability management, and regulatory compliance. You'll work at the intersection of IT and operational technology helping to protect infrastructure that keeps energy and utility systems running safely and reliably.
Day-to-day, you will administer key OT security tools including Industrial Defender and the Dragos Platform, manage configuration change monitoring, track and remediate vulnerabilities, and support incident response when needed. You'll develop dashboards and reporting to keep stakeholders informed on risk posture and compliance status. This role exists because of the growing criticality of OT security in regulated environments the right person will help strengthen the security posture of industrial control systems at scale.
You'll collaborate closely with engineering, operations, regulatory, and IT/OT security teams, and will report into the OT security leadership function. The ideal candidate is passionate about critical infrastructure protection, thrives in technically complex environments, and brings both deep tool expertise and strong communication skills to navigate cross functional stakeholder relationships.
Duties and Responsibilities
Platform Administration
- Administer and support Industrial Defender modules, including OT Asset Management, Configuration Change Management, and Vulnerability Management.
- Maintain an accurate and up-to-date inventory of OT assets across industrial environments.
- Administer and manage the Dragos Platform for OT threat detection and monitoring.
- Tune and optimize Dragos detections to reduce false positives and improve threat visibility.
Security Monitoring & Risk Management
- Monitor, analyze, and validate configuration changes within control systems.
- Identify, assess, and track remediation of OT vulnerabilities.
- Assist with incident response activities involving OT environments.
Reporting, Compliance & Collaboration
- Develop and maintain dashboards and reports for asset visibility, compliance, and risk management.
- Support compliance initiatives related to NERC CIP standards, including documentation and audit preparation.
- Collaborate with engineering, operations, OT, regulatory, and IT/OT security teams to strengthen OT security posture.
- Contribute to continuous process improvements and OT security best practices.
Required Experience / Skills
- 5+ years of experience in OT cybersecurity, industrial control systems (ICS), or critical infrastructure environments.
- 3+ years of hands-on experience with Industrial Defender (required).
- Strong understanding of OT asset management processes, configuration baselining, change detection, and OT vulnerability management practices.
- Working knowledge of NERC CIP standards and compliance requirements.
- Familiarity with ICS/SCADA systems and industrial network architectures.
- Experience working in regulated critical infrastructure environments (energy, utilities, or oil & gas preferred).
- Strong analytical, communication, and documentation skills.
Nice-to-Haves
- Experience in the electric utilities or energy sector.
- Experience supporting NERC CIP audits.
- Familiarity with additional OT security monitoring and detection tools beyond Industrial Defender and Dragos.
Education
- A bachelor's degree in Computer Science, Information Security, Engineering, or a related field is preferred. Equivalent professional experience and relevant certifications (e.g., GICSP, CSSA, CISSP) may be considered in lieu of a degree.