OT Penetration Tester - Industrial Cybersecurity
Flatgigs
نشرت في 17 مارس
أرسل لي وظائف مثل هذه
الجنسية
أي جنسية
جنس
غير مذكور
عدد الشواغر
1 عدد الشواغر
الوصف الوظيفي
الأدوار والمسؤوليات
This role focuses on assessing the security posture of industrial control systems (ICS), SCADA environments, and operational technology networks across sectors such as utilities, energy, and industrial infrastructure.
The role requires a safety-first testing approach, ensuring all security assessments are conducted without disrupting operations or compromising critical infrastructure.
The successful candidate will identify vulnerabilities, evaluate operational risks, and provide clear remediation guidance to strengthen the resilience of industrial systems.
Key Responsibilities
- Design and implement OT-specific penetration testing methodologies and frameworks
- Develop testing procedures tailored for utility and industrial environments, including:
- Electric grid systems
- Water and wastewater treatment facilities
- Gas distribution networks
- Renewable energy installations
- Build capabilities for assessing industrial communication protocols and control systems
- Support development of OT cybersecurity testing practices aligned with UAE cybersecurity frameworks
Conduct safe and controlled penetration testing across OT environments including:
- ICS / SCADA networks
- PLCs, RTUs, and HMIs
- Industrial communication networks
Assess network segmentation, firewall rules, and access controls
Identify vulnerabilities, misconfigurations, and attack vectors
Ensure all testing is non-disruptive and aligned with operational safety requirements
Evaluate security of OT environments using protocols such as:
- Modbus
- DNP3
- IEC 61850
- IEC 60870-5-104
- OPC UA
- BACnet
- Profinet
- EtherNet/IP
Perform testing across industrial networks, control systems, and communication infrastructure.
Design and execute red team exercises and adversary simulations
Emulate real-world attack scenarios targeting industrial control systems
Build knowledge repositories for:
- OT vulnerabilities
- Exploitation techniques
- Vendor-specific weaknesses
- Produce high-quality technical reports and risk assessments
- Provide remediation recommendations aligned with industry standards
- Present findings to:
- Technical teams
- Engineering teams
- Executive leadership
- Regulatory stakeholders
Translate technical vulnerabilities into business and operational risk insights.
Ensure testing activities comply with relevant frameworks including:
- IEC 62443
- NIST 800-82
- UAE national cybersecurity frameworks (NESA, DESC, TDRA)
- Deliver penetration testing engagements within defined scope, timelines, and SLAs
- Coordinate testing windows with client engineering and operations teams
- Document testing activities and evidence in accordance with audit and compliance requirements
- Support remediation validation and re-testing activities
- Conduct wireless security assessments for industrial infrastructure including:
- Radio communications
- Satellite connectivity
- Cellular backhaul
- Industrial wireless sensor networks
- Assess security of cloud and hybrid OT architectures, including distributed energy management systems and industrial monitoring platforms.
الملف الشخصي المطلوب للمرشحين
8 10 years of experience in cybersecurity, penetration testing, or red teaming
Minimum 3 years working specifically in OT / ICS / SCADA environments
Experience conducting controlled testing in industries such as:
- Utilities
- Oil & Gas
- Manufacturing
- Critical infrastructure
Hands-on experience testing:
- ICS / SCADA networks
- PLCs, RTUs, HMIs
- Industrial communication protocols
Technical Skills
Strong knowledge of:
- OT / ICS architecture and industrial networks
- Industrial communication protocols
- Penetration testing tools and techniques
- Network and segmentation testing
- Wireless security testing
- Secure configuration assessments
- Vulnerability assessment and reporting
Tools familiarity may include:
- Nmap
- Metasploit
- Wireshark
- ICS-specific security testing tools
Understanding of OT-specific risks, including operational downtime, safety impact, and infrastructure availability.
Qualifications
Bachelor s degree in one of the following:
- Computer Science
- Information Security
- Electrical / Control Engineering
- Cybersecurity or related technical field
Preferred certifications:
- GICSP
- ISA/IEC 62443 certifications
- OSCP / OSCE / OSEP
- GPEN / GXPN
- CEH / CPT
القطاع المهني للشركة
المجال الوظيفي / القسم
الكلمات الرئيسية
- OT Penetration Tester - Industrial Cybersecurity
تنويه: نوكري غلف هو مجرد منصة لجمع الباحثين عن عمل وأصحاب العمل معا. وينصح المتقدمون بالبحث في حسن نية صاحب العمل المحتمل بشكل مستقل. نحن لا نؤيد أي طلبات لدفع الأموال وننصح بشدة ضد تبادل المعلومات الشخصية أو المصرفية ذات الصلة. نوصي أيضا زيارة نصائح أمنية للمزيد من المعلومات. إذا كنت تشك في أي احتيال أو سوء تصرف ، راسلنا عبر البريد الإلكتروني abuse@naukrigulf.com
وظائف مماثلة
مهندس أمن الشبكات
Confidential Company
- 7 - 11 سنوات
- دبي - الإمارات العربية المتحدة
مهندس أمن الشبكات
Abdulwahed Bin Shabib Investment Group LLC
- 1 - 6 سنوات
- دبي - الإمارات العربية المتحدة
Senior Network Engineer
SUNDUS MANAGEMENT CONSULTANCY & STUDIES BUREAUL.L.C
- 1 - 3 سنوات
- Abu Dhabi - United Arab Emirates (UAE)
مهندس شبكة (معتمد CCNP)
Alaberah
- 2 - 4 سنوات
- أبوظبي - الإمارات العربية المتحدة
مهندس أمن المعلومات
SUNDUS MANAGEMENT CONSULTANCY & STUDIES BUREAUL.L.C
- 3 - 6 سنوات
- دبي - الإمارات العربية المتحدة