×
Register Here to Apply for Jobs or Post Jobs. X

Cyber OT SecOps

Job in Atlanta, Fulton County, Georgia, 30301, USA
Listing for: Coca-Cola
Full Time position
Listed on 2026-08-10
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Network Security
Job Description & How to Apply Below

Cyber OT Sec Ops

The Manager, Cyber OT Sec Ops is The Coca-Cola Company's operational leader for monitoring, detecting, and responding to cyber threats targeting the industrial control systems and manufacturing technology that keep Coca-Cola production running. This role sits within Cybersecurity Operations and owns the SOC-side of OT security — ensuring that threats to plant floor systems are detected, triaged, investigated, and resolved with the speed and manufacturing context required to protect production, safety, and product quality.

Reporting to the Senior Director, Cybersecurity Operations, this is an individual-contributor role that also provides day-to-day operational leadership of the managed security service provider (MSSP) SOC analysts supporting OT environments. The Manager builds deep relationships with plant teams to understand how manufacturing operations work, designs detection playbooks calibrated to OT realities, and partners with the OT Cybersecurity engineering team to ensure the right monitoring and detection mechanisms are in place.

The role bridges the gap between traditional IT-centric SOC operations and the unique requirements of operational technology environments.

Key Responsibilities
  • OT Security Monitoring & Detection
    • Own the OT security monitoring and detection capability within the SOC, ensuring comprehensive visibility into threats targeting industrial control systems, SCADA, HMIs, PLCs, historians, and manufacturing networks.
    • Design, tune, and maintain OT-specific detection rules, alerts, and use cases across OT monitoring platforms (such as Claroty or Microsoft Defender for IoT), EDR, network monitoring (such as Palo Alto), and SIEM.
    • Continuously evaluate and improve detection coverage for OT-relevant threats, including unauthorized access, network anomalies, configuration changes, and lateral movement between IT and OT environments.
    • Partner with the OT Cybersecurity engineering team to ensure monitoring tools are properly deployed, configured, and maintained across manufacturing sites.
  • OT Incident Triage & Response
    • Lead the triage, investigation, and response to security events and incidents in OT environments, providing manufacturing context and ensuring response actions account for safety, uptime, and operational continuity.
    • Develop and maintain OT-specific incident response playbooks, escalation procedures, and communication templates in partnership with SOC leadership and plant teams.
    • Coordinate with IT SOC, Incident Response, and OT engineering teams during cross-domain incidents that span IT and OT boundaries.
    • Conduct post-incident reviews and drive lessons learned into improved detection, response, and prevention capabilities.
  • Plant Partnerships & OT Context
    • Build and maintain trusted relationships with plant leadership, plant engineers, and operations teams to understand manufacturing processes, control system architectures, and operational constraints.
    • Translate plant floor operational knowledge into SOC detection playbooks and triage procedures that reduce false positives and improve response relevance.
    • Educate SOC analysts and MSSP team members on OT-specific concepts, protocols, and operational considerations.
    • Support plant visits and site assessments to evaluate monitoring effectiveness and identify coverage gaps.
  • MSSP SOC Team Leadership
    • Provide day-to-day operational direction to MSSP SOC analysts supporting OT monitoring, setting priorities, reviewing alert quality, and maintaining service-level expectations.
    • Define standard operating procedures, detection playbooks, and training materials for the MSSP team specific to OT environments.
    • Monitor MSSP performance and drive continuous improvement in OT alert handling, triage accuracy, and escalation quality.
  • Reporting & Continuous Improvement
    • Provide clear, executive-framed reporting to Cybersecurity Operations leadership on OT security monitoring posture, incident trends, detection coverage, and key risks.
    • Track and report on OT SOC metrics, including alert volume, triage times, detection coverage, and incident outcomes.
    • Continuously improve OT monitoring capabilities, detection logic, and SOC processes based on evolving threats, plant feedback, and lessons learned.
    • Support new plant projects, expansions, and technology changes with monitoring requirements and detection design.
Qualifications
  • Minimum 6–10 years of progressive cybersecurity experience, with significant focus on security operations and hands-on experience with OT/ICS cybersecurity in manufacturing, industrial, or critical infrastructure environments.
  • Demonstrated experience operating or leading SOC functions with OT/ICS monitoring responsibilities, including alert triage, incident investigation, and escalation.
  • Hands-on familiarity with OT monitoring and detection platforms such as Claroty, Microsoft Defender for IoT, or similar, as well as traditional security tools (EDR, SIEM, network monitoring).
  • Working knowledge of industrial control systems (PLC, HMI, SCADA,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary