OT Security & Architecture Manager
Listed on 2026-08-03
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security, Security Management & Operations
Operational Technology (OT) Security & Architecture Manager
The Operational Technology (OT) Security & Architecture Manager is responsible for leading and maturing the organization's OT cybersecurity program across industrial control systems (ICS), operational technology (OT), marine, offshore, manufacturing, robotics, and critical infrastructure environments. This role provides strategic leadership and operational oversight for OT cybersecurity governance, risk management, security architecture, vulnerability management, monitoring, and compliance activities.
Role provides the opportunity to work in a hybrid environment, working both virtually and in the Houston office when required.
ESSENTIAL
The OT Security Manager partners closely with OT engineering teams, site management, business units, IT cybersecurity, compliance, and operations leadership to ensure cybersecurity controls are effectively implemented while maintaining operational safety, reliability, and availability.
This position is accountable for establishing and maintaining an enterprise-wide OT cybersecurity program aligned with industry standards, including NIST Cybersecurity Framework, NIST 800-82, Purdue Model, Title 33 CFR maritime cybersecurity requirements, customer obligations, and internal cybersecurity policies. Responsibilities include oversight of OT patching, vulnerability management, change management, architecture reviews, policy development, firewall governance, OT security monitoring, and adversary simulation exercises.
OT Cybersecurity Program Leadership
Lead the enterprise OT Cybersecurity Program across all business units and operational environments.
Develop and execute OT cybersecurity strategy, roadmap, standards, and maturity improvement initiatives.
Establish governance processes to ensure consistent implementation of OT cybersecurity controls globally.
Serve as the primary cybersecurity advisor to OT operations, engineering, manufacturing, and offshore stakeholders.
Provide executive reporting on OT cyber risks, vulnerabilities, remediation efforts, and security posture.
OT Threat & Vulnerability Management
Own the OT vulnerability management program, including identification, prioritization, risk assessment, remediation planning, and reporting.
Lead enterprise OT patch management activities while balancing operational availability, safety, and cyber risk.
Establish risk-based remediation processes focused on exploitability, operational impact, and criticality.
Coordinate vulnerability assessments across OT environments, including ICS, SCADA, DCS, PLC, HMI, and IIoT systems.
Develop and report KPIs related to remediation effectiveness, patch compliance, and exposure reduction.
OT Security Architecture & Risk Assessments
Lead OT cybersecurity architecture governance and provide security oversight for operational technology environments.
Review and approve OT security architecture designs, network segmentation strategies, remote access solutions, and major technology initiatives.
Oversee cybersecurity risk assessments for new and existing OT systems and infrastructure.
Ensure security controls are incorporated into all OT projects from design through deployment.
Partner with the OT Security Architect to maintain secure reference architectures and technology standards.
- Drive IT/OT convergence initiatives while maintaining appropriate security boundaries.
OT Change Management
Establish cybersecurity governance within OT Management of Change (MoC) processes.
Ensure cyber risk review and approval requirements are incorporated into OT engineering and operational changes.
Validate cybersecurity impacts of system modifications, upgrades, integrations, and technology refresh activities.
Ensure asset inventories, baseline configurations, and security documentation remain current following approved changes.
OT Monitoring, Logging & Incident Readiness
Lead OT security monitoring strategy, including collection, analysis, and retention of OT security logs.
Partner with the Security Operations Center to integrate OT asset telemetry and detection capabilities.
Develop OT-specific use cases, detection rules, playbooks, and incident response…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).