Location: Katowice - 2 days office / 3 days remote
Opportunity
The GDS Cyber Architecture Operational Technology & Engineering (CAOE) services help our clients tackle the many security challenges they face on a daily basis and develop effective solutions using people, processes and technology. The CAOE team is looking for individuals who will play a direct role in delivery of Cyber security engagements (IT and OT engagements), development of proposals in this area, and develop Cyber Security solutions. You will play a key role in supporting our clients to secure their IT/OT environments, either through advisory and/or implementation support.
Skills and Attributes for Success
- Prior experience working alongside delivery leads and architects to identify and manage risks.
- Knowledge of standards such as ISO 27001/2, ISO 22301, ISO 27018, PCI – DSS, NIST standards on Cyber Security, HITRUST, etc. is a plus.
- Understanding of technologies (typical assets, communication protocols, technical architectures) utilized by OT-ICS systems and networks.
- Knowledge of the technical security solutions utilized within IT and OT systems and networks.
- Knowledge on firewall and switch configuration.
- Knowledge on new technologies such as the Internet of Things (IoT), Operational Technology Threats is a definite plus.
- Threat identification and monitoring tools used along with SIEM solutions such as Nozomi Networks, Claroty, Microsoft Sentinel.
- Exposure/hands‑on to IT/OT monitoring solutions (Claroty, Nozomi Networks, Armis, Azure IoT Defender, etc.).
To qualify for the role, you must have
- 4+ years of experience in the Cyber Security or OT Security Domain.
- Certifications – CCNA, CISSP, CISA, CISM, GICSP or equivalent (technology‑based).
- Strong knowledge of cyber / information security concepts, risk and controls concepts.
- Knowledge of OT-ICS Security standards, including NIS2, ISA/IEC 62443, NIST 800-82, NERC-CIP, and strong knowledge of IT infrastructure and networking, including firewalls and IDS/IPS.
- Strong knowledge of TCP/IP, concepts of OSI layer and protocols, networking, and security concepts.
- Strong understanding of security‑related operational processes in OT environments.
- Knowledge of cyber threats and vulnerabilities related with OT infrastructure (OS, network, OT‑specific equipment is a definite plus).
- Security Assessments: Proven experience conducting Information Security assessments.
Benefits
- Continuous learning: develop the mindset and skills to navigate whatever comes next.
- Success as defined by you: tools and flexibility to make a meaningful impact in your own way.
- Transformative leadership: coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture: be embraced for who you are and empowered to use your voice.
In compliance with the requirements of the Whistleblower Protection Act, our company has established the Procedure for reporting breaches of law and undertaking appropriate follow‑up actions. Any misconduct should be reported through the EY Ethics Hotline.