# OT Cybersecurity Risk & Compliance SpecialistAbu Dhabi, UAEUnited Arab EmiratesCapital of the UAE — sovereign wealth, regulators and large-scale transformation programmes.We are seeking an experienced OT Cybersecurity Risk & Compliance Specialist to support cybersecurity risk assessments, compliance reviews, and assurance activities across Operational Technology and Industrial Control System environments. This role combines OT cybersecurity knowledge with risk, audit, and compliance expertise. You will assess cybersecurity controls, identify gaps and risks, track remediation actions, and help ensure industrial systems comply with relevant company, UAE, and international cybersecurity requirements. The successful candidate should understand how cybersecurity controls are applied within DCS, SCADA, PLC, and industrial network environments, but this is not primarily a hands-on engineering or system administration position.Key Responsibilities:- Conduct OT/ICS cybersecurity risk assessments, compliance reviews, and control assessments.- Identify cybersecurity gaps and risks and develop practical corrective actions and risk-treatment plans.- Review OT cybersecurity controls including network segmentation, system hardening, access control, patching, endpoint protection, backup/recovery, and security monitoring.- Support cybersecurity assessments during FAT, SAT, projects, system modifications, and commissioning activities.- Conduct and coordinate internal and external OT cybersecurity audits and compliance reviews.- Track audit findings, security gaps, and remediation actions through to closure.- Maintain OT cyber risk registers, compliance records, and supporting evidence.- Assess OT vulnerabilities, vendor security advisories, and emerging threats and determine their relevance to operational environments.- Review new OT/control-system designs and significant modifications from a cybersecurity risk and compliance perspective.- Support alignment with UAE Information Assurance requirements, ISA/IEC 62443, ISO 27001, NIST, and applicable company OT cybersecurity standards.- Support development and improvement of OT security policies, procedures, standards, and assessment methodologies.- Work with Operations, Engineering, IT/OT Cybersecurity, Risk, Compliance, Internal Audit, and external vendors.- Prepare clear risk, compliance, and audit reports for technical and management stakeholders.Experience We're Looking For:- Approximately 6+ years' experience across cybersecurity, OT/ICS, technology risk, audit or compliance, including meaningful OT/ICS security exposure.- Practical experience conducting cybersecurity risk assessments, compliance assessments, audits or control reviews.- Good understanding of OT/ICS environments, including DCS, SCADA, PLC, and industrial network architecture.- Experience assessing cybersecurity controls such as segmentation, hardening, access control, patching, vulnerability management, backup/recovery, and security monitoring.- Working knowledge of ISA/IEC 62443 and ISO 27001.- Experience maintaining risk registers, tracking audit findings, and developing remediation/risk-treatment plans.- Strong report-writing, documentation, and stakeholder-management skills.- Experience within industrial or critical-infrastructure environments such as Oil & Gas, energy, utilities, power, water, transport, petrochemical, or manufacturing would be advantageous.- Knowledge of UAE Information Assurance requirements and/or ADNOC OT cybersecurity requirements would be particularly valuable.Qualifications:A Bachelor's degree in Cybersecurity, Information Security, Computer Science, Engineering, Instrumentation & Control, Information Technology, or a related discipline is preferred.Relevant certifications such as CISA, GICSP, ISA/IEC 62443, ISO 27001 Lead Auditor/Implementer, CISSP, CISM or CRISC are advantageous. One relevant certification is preferred, but strong practical OT risk and compliance experience should carry greater weight than a particular certification combination.Work Environment:The role is based in Abu Dhabi, with approximately 50% office-based work and 50% operational site visits. The position requires interaction with operational, engineering, cybersecurity, audit, risk, and third-party teams.## Apply for this roleMax salary: AED 20,000/mo