Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
Etihad Rail Operating Companies seeks a strategic Head of Cyber Security specializing in Operational Technology (OT) for Railway Systems in the UAE. You will protect signaling, train control, and critical railway assets, leading cross-functional teams to implement robust cyber measures and regulatory compliance.
Responsibilities include risk assessment, OT-focused controls design, SIEM-enabled monitoring, contractor oversight, and collaboration with IT, engineering, and regulatory bodies to
The Head of Cyber Securityspecializing in Operational Technology (OT) for Railway Systems plays a vital role in protecting the integrity, availability, and confidentiality of railway infrastructure from cyber threats. This position focuses on securing OT environments, including signaling systems, train control, communication networks, and other mission-critical assets crucial for safe and efficient railway operations. The officer will support cross-functional teams in implementing security measures, ensuring compliance with regulations, and addressing emerging risks in a high-stakes industry.
Assist in assessing and prioritizing risks for railway OT through vulnerability scans and threat modeling support.
Contribute to designing and implementing OT-specific controls (e.g., firewalls, IDPS, encryption) with minimal disruption.
Monitoring & Incident Response: Support OT network monitoring, assist in incident response, and utilize SIEM tools for threat detection under supervision.
Monitor SOC subcontractor performance, ensuring SLA compliance through metrics and review support.
Regulatory Compliance: Ensure adherence to standards like IEC 62443, NIST, EN 50128/50129; assist in audits and compliance reporting.
Collaboration: Work with IT, engineering, vendors, and stakeholders to integrate cybersecurity across the OT lifecycle.
Support delivery of OT-focused cybersecurity training to mitigate human vulnerabilities.
Assist in adopting advanced solutions (e.g., AI, zero-trust) to address evolving threats.
Maintain security records and contribute to executive reports on risk and posture.
Coordinate with internal teams and regulatory safety entities as directed.