This role collects, analyzes, and briefs threat intelligence while reviewing logs and alerts to detect advanced cyber attacks on Operational Technology (OT) systems. Additionally, it serves as an OT subject matter expert, supporting engineers in filling defense gaps and collaborating with incident response teams to perform root cause analysis and remediation.
Collects, reviews, and identifies cybersecurity threat intelligence from open source and government intelligence reporting to analyze and provide actionable threat reporting and briefings for Operational Technology (OT) cybersecurity analysts. Provides support to content developers and cybersecurity engineers in identifying gaps in protection and detection of OT systems. Reviews log and network events and alerts related to OT systems for signs of attack or Advanced Persistent Threats. Works closely with Cyber Intelligence analysts and Incident Response analysts to ensure expert analysis and reporting of Cybersecurity OT threats and attacks. Performs root cause analysis and supports remediation efforts for incidents related to Operational Technology cybersecurity incidents. Acts as the Subject Matter Expert on OT cybersecurity related issues.
Required Qualifications:
REQ: CSSP