Job Description
OT Cyber Solution Architect (Reading 1-2 days a week max.) - 6+ months
You will be a hands on OT Solution Architect responsible for owning Design and Implementation of Zero Trust architecture, ensuring successful rollout across a complex, safety critical OT environment.
The role will lead OT teams and SMEs, providing clear Design and technical direction, fostering collaboration, and ensuring solutions are practical, deployable, and aligned to operational constraints.
Ownership & Delivery Accountability:
- Own the complete Zero Trust architecture and design lifecycle
- From Requirements, to Design, POC and Roll-out. Supporting Build, Deployment and BAU Transition
- Accountable for delivering:
- Secure, scalable, and resilient OT security architecture
- High Level Design
- Low Level Design
- Testing plans and strategy
- Change Impact Assesment
End to End Architecture Leadership:
- Define and deliver Zero Trust OT architecture, including:
- NAC (FortiNAC)
- NDR (Claroty + Fortigate + Fortiguard +SOC integration)
- EDR (SentinelOne and Microsoft Defender)
Scope: The architect will lead design and delivery across the entire scope of this project containing 3 workstreams:
1. Network Access Control (NAC)
- Implement NAC (802.1X) across L2 Switches in 64 OT sites
- Deliver: Device authentication & posture checking
- Dynamic access control and segmentation
- Safe deployment in OT constrained environments
2. Endpoint Detection & Response (EDR)
- Deploy advanced endpoint protection capability (EDR) to: ~2000 OT compute endpoints
- Using: SentinelOne (currently in POC) for air-gapped endpoints
- MDE for Internet exposed endpoints
- Ensure: Behaviour based threat detection
- Safe deployment in OT constrained environments
3. Network Detection & Response (NDR) + OT Visibility
- Deploy across: Layer 3/Boundary NW of ¬111 sites
- Using the following stack: FortiNAC + FortiGate + FortiGuard + Claroty