OT Security Architect — 6–12 Month Contract
identify securityNew York (NY)
OT Security Architect — 6–12 Month Contract
Posted 2 days ago
identify securityNew York (NY)
SENIORITY
Lead
About the role
OT Security Architect — 6–12 Month Contract Confidential manufacturing client | Remote when not onsite | 30–50% travel | Travel expenses covered We are supporting a confidential manufacturing client on an OT security remediation and architecture program across multiple production environments. The ideal profile is a hands-on OT security architect with real controls, automation, manufacturing, or industrial systems experience. This is not a slide-deck-only role. The architect needs to turn site data into practical remediation plans that can be executed safely in production.
What you will do:
Help define OT security architecture standards and remediation approach Review asset, inventory, OS, firmware, application, CPU utilization, and data-flow findings Provide guidance on compensating controls, patching, endpoint/security agent deployment, whitelisting, exclusions, segmentation, NAC, and access control Partner with OT engineers, controls teams, plant teams, SOC/security teams, and leadership Help refine an initial pilot/line validation into a repeatable enterprise approach Support security control design for OT engineering projects Create practical documentation, standards, risk guidance, and executive-ready recommendations Balance security requirements with uptime, safety, and production constraints
What we are looking for:
Strong OT / ICS security architecture experience Manufacturing, controls, automation, industrial, or critical infrastructure background Ability to understand PLCs, HMIs, SCADA, drives, firmware, industrial networks, and production-line constraints Experience translating field findings into remediation plans and compensating controls Understanding of endpoint protection, segmentation, NAC, firewalls, remote access, vulnerability remediation, and OT monitoring Ability to work with controls engineers, plant teams, security teams, and leadership Comfortable with 30–50% travel Ideal background Former controls engineer, automation engineer, OT engineer, or industrial systems engineer who moved into cybersecurity Experience designing or implementing OT reference architecture Experience with security controls in live production environmentsIEC 62443, NIST 800-82, MITRE ATT&CK for ICS, NERC CIP, or related frameworks Crowd Strike/Falcon, Cortex, Defender, Claroty, Nozomi, Tenable.ot, Dragos, Splunk, or similar tools This is a strong fit for someone who can bridge controls engineering, OT security, architecture, and hands-on remediation.
Before you apply
Applying takes about a minute. These four things decide how fast it moves after that.
Your profile is current
It's what we read first. Occupations, seniority and locations matter more than a long history.
Two examples you can talk through
Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.
A number in mind
What you're on now and what would make you move. We negotiate better when we know both.
Your notice period
Employers plan around it, and it's the question that stalls offers most often.
Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.
More like this
