L2 OT Analyst

3 years

5 - 7 Lacs

Posted:1 day ago| Platform: GlassDoor logo

Apply

Work Mode

On-site

Job Type

Part Time

Job Description

    3 - 5 Years
    1 Opening
    Trivandrum


Role description

Role Proficiency:

With strong knowledge and competence independently carry out the assigned tasks with minimal support from the supervisors. Handle the internal audits to ensure the compliance requirements of various applicable standards and more independently handle VAPT/Red Teaming assignments and involve in customer discussions to identify requirements. (Minimum Supervision)

Outcomes:

  • Handle the assigned tasks from the allocated domain with minimal guidance from the leads. (Domain Examples: BCMS Risk assessment Incident management HITRUST SOC Customer Assurance Awareness activities Data Privacy VAPT Red Teaming etc.)
  • Should independently handle internal audits (with minimal support from the leads) to ensure compliance with ISO 27001/ISO 22301/ISO 27701 requirement as well as process specific requirements.
  • Responsible for the effective documentation of internal audits (reports) with accurate mapping to control points.
  • Point out the non-conforming areas and suggest measures to improve the information security posture.
  • Understand IT Controls implementation and to conduct Risk Assessment.
  • Involve with the leads in customer discussions to clearly identify/document the requirement.
  • Perform Security Assessment scoping independently based on security standards like OWASP.
  • Perform Web Application Penetration Testing Network Penetration Testing Mobile Penetration Testing and Code Review independently based on the guidance from leads.
  • Learn and understand existing and emerging security practices with minimal guidance from the leads.
  • Mentor A1 and A2 band employees
  • Independently handle preparatory sessions and evidence collections from all applicable teams as part of any external audits
  • Independently contribute to infosec awareness activities
  • Contribute to establish a tracking and reporting strategy.

Measures of Outcomes:

  • Number of internal audits conducted or security assessments been a part of.
  • Number of Areas of responsibility on cross domains
  • Number of NCs in external audits
  • Less than two stake holder escalations
  • More than two appreciation from the stakeholders

Outputs Expected:

Documentation:

  • Policy and Procedure amendments Awareness training materials Presentations decks for internal/ external discussions Audit /Security Assessment reports


Process:

  • Internal ISMS audits – independently carry out audits prepare audit reports and ensure timely closure of audit reports
  • Compliance Audits – Representation in certification audits conduct preparatory session and evidence collection
  • Infosec activities – training material conducting sessions co-ordinate with other teams for trainings conducting
  • Customer Assurance – assist in customer assurance requirements and evidence collection
  • Vulnerability Assessment and Penetration Testing/Red Teaming Activities
  • CM activities
  • Assisting the leads in executing other location responsibilities.


Monitoring:

  • Mentoring and monitoring the responsibilities of A1 and A2 band employees


Training or certifications:

  • 3 per year (1 certification and minimum 2 of UST training related to Information/Cyber Security domains)

Skill Examples:

  • Ability to understand prioritize and escalate tasks to resolve issues quickly and make decisions.
  • Strong compliance auditing knowledge.
  • Ability to interpret all scenarios applicable to the business for identifying the potential risks associated with various functions/services.
  • Proficiency in Network Security Controls' implementation like IAM IPS/IDS E-Mail Security Controls Cloud Security Controls etc.
  • Detail oriented customer oriented result delivery oriented analytical thinking
  • Strong Excel and Dashboard skills.
  • Excellent Presentation and communication skills
  • Excellent verbal and written communication skills required including the ability to effectively communicate in both highly technical and non-technical environments
  • A great problem solver with the knack of coaching others to do the same
  • Good at working in a team and with other teams
  • Good time management
  • A desire for continuous learning and skill development.
  • Self-motivated and enthusiastic

Knowledge Examples:

Should have a strong understanding of concepts of Information Security Business Continuity Data Privacy VAPT Red Teaming and various compliance standards.

  • Knowledge on ISO and other Compliance standards efficient to evaluate the security controls.
  • Knowledge on ISO 22301/27001/9001/27701 Risk Management incident management awareness activities customer assurance etc.
  • Knowledge on standard SDLC and project management life cycles.
  • Knowledge on the operations of various functional units like HR REFM IT Finance etc. and units involved in IT Asset lifecycle management.
  • Expert on security testing standards like OWASP Top
  • Expert on Linux commands.
  • Expert on Scripting Languages like Shell Script Python etc.
  • Development and Testing knowledge would an added advantage.
  • Hands on experience in RSA Archer Burp Suite Nessus Nmap Postman Genymotion MobSF Drozer etc.
  • Good to have Certifications like ISO 27001/22301/9001/27701 Lead Auditor/Implementor CEH (MASTER) ECSA CASE OSWP etc.

Additional Comments:

Role Overview: We are seeking a skilled OT Security Engineer with strong infrastructure knowledge to support our Threat and Vulnerability Management (TVM) initiatives across Operational Technology environments. The ideal candidate will be responsible for securing OT systems, identifying and mitigating vulnerabilities, and ensuring compliance with cybersecurity standards. Key Responsibilities: Support TVM activities across OT environments, including vulnerability scanning, assessment, and remediation tracking. Collaborate with infrastructure teams to ensure secure configuration and patch management of OT assets. Analyse and respond to security s and incidents related to OT systems. Implement and maintain security controls for ICS/SCADA systems, PLCs, and other industrial devices. Develop and maintain asset inventories and risk profiles for OT environments. Work with cross-functional teams to ensure alignment between IT and OT security strategies. Assist in the deployment and tuning of security tools (e.g., Defender for IoT, Nessus, Qualys). Document and report vulnerabilities, remediation status, and risk posture to stakeholders. Stay updated on emerging OT threats, vulnerabilities, and mitigation techniques. Required Skills & Experience: 4+ years of experience in OT security, OT infrastructure, and related cybersecurity roles. Strong understanding of industrial control systems (ICS), SCADA, and network segmentation. Hands-on experience with TVM tools and processes. Familiarity with Microsoft Defender, SIEM, and endpoint protection in OT environments. Knowledge of network protocols used in OT (Modbus, DNP3, OPC, etc.). Experience with firewalls, IDS/IPS, and network monitoring tools. Ability to interpret CVEs and coordinate remediation with engineering teams. Excellent communication and documentation skills.

Skills

Cyber Security,Siem,Modbus,DNP3

About UST

UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients’ organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
UST Global logo
UST Global

Information Technology Services

Oxnard

RecommendedJobs for You

trivandrum, kerala, india

trivandrum, kerala, india