Job OverviewWe are seeking a
Senior OT Threat Intelligence Analyst to join our team. You will serve as a Subject Matter Expert in Operational Technology (OT) cybersecurity, actively gathering and analyzing threat intelligence to detect, monitor, and report on advanced cyber threats. Additionally, you will collaborate with cross-functional incident response and engineering teams to identify security gaps, perform root cause analysis, and drive remediation efforts for OT-related incidents. You will be located in Columbus, OH.
Responsibilities include, but are not limited to:Threat Intelligence & Actionable Reporting- Continuously collects, reviews, and analyzes cybersecurity threat intelligence from both open-source and government channels to deliver actionable intelligence and comprehensive briefings specifically tailored for OT cybersecurity analysts.
Proactive Threat Hunting & Event Monitoring- Actively monitors and investigates log files, network events, and system alerts within OT environments to detect malicious activity, anomalies, and potential Advanced Persistent Threats (APTs).
Incident Response & Root Cause Analysis- Leads forensic and investigative efforts during OT cybersecurity incidents by performing in-depth root cause analysis and actively supporting subsequent remediation and recovery operations.
Security Posture Optimization & Gap Analysis- Collaborates with cybersecurity engineers and content developers to assess current security architectures, specifically identifying and addressing gaps in the protection, detection, and defense mechanisms of OT systems.
Cross-Functional Collaboration & SME Leadership- Acts as the definitive Subject Matter Expert (SME) for OT cybersecurity, partnering closely with Cyber Intelligence and Incident Response teams to ensure cohesive, expert-level analysis and reporting of threats and attacks.
Required Qualifications:- A minimum of six (6) years of relevant IT experience.
- A minimum of two (2) years of experience working with OT or related technologies.
- A minimum of two (2) years utilizing cyber threat intelligence.
- A minimum of two (2) years working with a SIEM in an engineering or incident response role.
- Experience collecting and interpreting qualitative and quantitative data from multiple sources
- Understanding of the NIST Incident Response Framework
- Understanding of the MITRE ATT&CK framework
- Experience with OT such as Programmable Logic Controllers (PLCs) and Supervisory Control and Data Acquisition (SCADA) software
- Understanding of threats and vulnerabilities in OT environments
Preferred Qualifications:- A bachelor's degree in a relevant field of study.
Clearance Requirements:- Must be a U.S. citizen.
- Must possess a DoD current Top-Secret clearance.