"Alerted.org

Job Title, Industry, Employer
City & State or Zip Code
20 mi
  • 0 mi
  • 5 mi
  • 10 mi
  • 20 mi
  • 50 mi
  • 100 mi
Advanced Search

Advanced Search

Cancel
Remove
+ Add search criteria
City & State or Zip Code
20 mi
  • 0 mi
  • 5 mi
  • 10 mi
  • 20 mi
  • 50 mi
  • 100 mi
Related to

  • OT SOC Manager

    Jacobs (Chicago, IL)



    Apply Now

    At Jacobs, we are at the forefront of protecting critical infrastructure through innovative cybersecurity solutions. As we expand our Operational Technology (OT) security capabilities, we are seeking a dynamic OT SOC Manager to lead the establishment and growth of our Security Operations Center (SOC) focused on OT environments, including industrial control systems (ICS), SCADA, and other critical infrastructure. This remote role, available to candidates in the United States only, will report to the Manager of Managed Services and collaborate closely with OT, Engineering, and business unit leaders.

     

    The ideal candidate will bring hands-on experience in building OT SOC infrastructure from the ground up, combined with senior-level expertise in networking and system administration. You will play a pivotal role in designing, implementing, and maturing our OT SOC to ensure proactive threat detection, rapid incident response, and compliance with industry standards like NERC CIP, NIST, and IEC 62443. If you thrive in a fast-paced environment where you can shape the future of OT cybersecurity, join us in safeguarding the operations that power the world.

     

    In this role, you will drive the foundational build-out of our OT SOC while managing ongoing operations.

    Key responsibilities include:

    * Lead the design, implementation, and optimization of OT SOC infrastructure, including selection and deployment of core tools such as SIEM (e.g., Elastic, Splunk, Microsoft Sentinel), SOAR platforms, EDR/XDR solutions, and threat intelligence feeds tailored to OT environments.

    * Develop and maintain OT-specific incident response playbooks, runbooks, and automation workflows to enable efficient triage, escalation, and resolution of security events in ICS/SCADA systems.

    * Oversee the recruitment, training, mentoring, and performance management of SOC analysts (Tier 1-3), fostering a high-performing team capable of 24/7 monitoring and threat hunting in OT networks.

    * Conduct risk assessments, vulnerability management, and threat modeling for OT assets, integrating findings into SOC processes to mitigate risks from industrial protocols (e.g., Modbus, DNP3, OPC, Profinet, EtherNet/IP, BACnet) and legacy systems.

    * Collaborate with cross-functional teams—including OT engineers, network administrators, and business units—to onboard assets, ensure data ingestion from OT sources, and align SOC operations with business objectives.

    * Establish governance, escalation protocols, and reporting mechanisms, providing executive-level updates on SOC metrics such as MTTD/MTTR, incident trends, and compliance status.

    * Drive continuous improvement initiatives, including post-incident reviews, tool integrations, and simulations/drills to enhance OT SOC resilience against evolving threats like ransomware targeting critical infrastructure.

    * Ensure adherence to regulatory requirements (e.g., NERC CIP, TSA guidelines) and industry best practices, while managing budget and resources for SOC scalability in a remote, distributed model.

    * Work with sales team to develop client value propositions that leverage the full capabilities of the OT SOC across the client delivery lifecycle.

    * Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field (or equivalent experience).

    * 8+ years of experience in cybersecurity operations, with at least 5 years in SOC management or leadership roles, including direct experience building and scaling a SOC from inception.

    * Proven expertise in OT/ICS cybersecurity, including in-depth knowledge of industrial protocols such as Modbus, DNP3, OPC, Profinet, EtherNet/IP, and BACnet, along with the Purdue Enterprise Reference Architecture (PERA) Model and IT/OT network segmentation strategies.

    * Expertise in MITRE ATT&CK® and ATT&CK for ICS Frameworks for threat modeling, adversary emulation, and mapping defensive coverage gaps in OT environments.

    * Senior-level knowledge of networking (TCP/IP, firewalls, switches, VLANs, routing protocols, IDS/IPS) and system administration (Windows/Linux servers, Active Directory, virtualization, patch management) as applied to secure OT infrastructures.

    * Hands-on experience with SOC technologies, including SIEM/SOAR deployment, endpoint detection, log analysis, and network traffic analysis in hybrid/cloud environments.

    * Strong leadership skills with a track record of managing remote, distributed teams and driving incident response in high-stakes OT settings.

    * Excellent communication and stakeholder management abilities, with experience presenting to C-level executives and technical teams.

    * Ability to obtain and maintain necessary security clearances or certifications for critical infrastructure roles.

    Preferred: Nice to Have Assets

    * Advanced certifications such as CISSP, CISM, GICSP, or GIAC Critical Infrastructure Protection.

    * Experience in energy, manufacturing, or utilities sectors, with knowledge of NERC CIP, NIST CSF, or IEC 62443 frameworks.

    * Proficiency in scripting/automation (Python, PowerShell) for SOC enhancements and familiarity with AI/ML-driven threat detection.

    * Prior consulting or advisory experience in OT SOC transformations.

    * Experience with OT-specific security tools (e.g., Nozomi, Claroty, Dragos, etc.).

    * Familiarity with ICS asset inventory and management platforms.

    * Knowledge of secure remote access solutions for OT environments (e.g., Beyond Trust, Cyolo, Dispel, etc.).

    * Experience conducting tabletop exercises and red/blue team simulations in OT contexts.

    Essential Functions

    * Interpersonal Skills: Ability to effectively communicate complex technical concepts to diverse audiences, from analysts to executives. Strong collaboration and conflict resolution skills in a remote setting.

    * Communication: Excellent verbal and written skills; proficiency in tools like Microsoft Teams, Slack, or Jira for remote coordination.

    * Work Environment: Fully remote with occasional virtual meetings across US time zones. Must be able to work flexible hours to support 24/7 SOC operations as needed

     

    Travel: Minimal; up to 10% for optional team events or client site visits.

    What We Offer

    * Opportunity to shape a greenfield OT SOC and contribute to mission-critical cybersecurity initiatives.

    * To apply, please submit your resume and a cover letter highlighting your experience building SOC infrastructure in OT environments.

     

    Jacobs is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language.

     


    Apply Now



Recent Searches

  • Avp Learning Technology Data (United States)
  • Legal Assistant BI UM (Virginia)
  • Senior Engineering Manager Identity (New York)
  • Power Distribution Design Engineering (United States)
[X] Clear History

Recent Jobs

  • OT SOC Manager
    Jacobs (Chicago, IL)
  • Security Officer I, Armed
    SSM Health (St. Louis, MO)
  • Network Production Engineer, Network Infrastructure
    Meta (Menlo Park, CA)
  • Sr Medical Science Liaison (Remote)
    Cordis (Miami Lakes, FL)
[X] Clear History

Account Login

Cancel
 
Forgot your password?

Not a member? Sign up

Sign Up

Cancel
 

Already have an account? Log in
Forgot your password?

Forgot your password?

Cancel
 
Enter the email associated with your account.

Already have an account? Sign in
Not a member? Sign up

© 2025 Alerted.org