Teraco Data Environments
2025/06/27 Gauteng
Job Reference Number: FDTJB5
Department: Infrastructure Management
Industry: Information Technology
Job Type: Permanent
Positions Available: 1
Salary: Market Related
Purpose of the Role: The Field Device Technician is responsible for the secure operation and lifecycle management of all OT (Operational Technology) devices, with a focus on cybersecurity risk mitigation, threat intelligence, and compliance with industry standards. The role includes managing OT cyber hygiene, vulnerability patching, secure protocol configuration, and staying informed on current threat advisories and mitigations as issued by CISA. Technologies involved include Schneider EBO, PME, internally developed tools, and security platforms like Microsoft Defender for IoT, Claroty, and Dragos.
Main Functions of the Job:
- Manage the lifecycle of OT field devices (e.g., HVAC, power meters, fire detection, telemetry equipment), including planning for and managing end-of-life replacements.
- Manage the security of OT field devices, ensuring they are hardened and securely configured.
- Monitor and respond to alerts from OT cybersecurity platforms, maintaining integrations with external threat feeds such as CISA advisories.
- Translate CISA guidance into action plans for patching, network segmentation, or threat mitigation.
- Collaborate with security teams to assess exposure to threats.
- Maintain an up-to-date OT asset database with vulnerability metadata and firmware status.
- Ensure secure communication protocols (BACnet/IP Secure, Modbus/TCP with authentication, MQTT with TLS, secure NTP) are correctly implemented and monitored.
- Validate firmware updates and patches against advisories before deployment; develop rollback plans.
- Align OT operations with cybersecurity standards (IEC 62443, ISO27001, NIST CSF) and maintain documentation.
- Create and share incident response documentation for OT vulnerabilities, referencing external advisories like CISA's.
Skills Requirements:
- Minimum 3 years of experience in OT device management, including firmware updates, vulnerability patching, and communication protocols such as BACnet, Modbus, MQTT, NTP.
- Strong understanding of security practices for OT devices, including ISO27001.
- Experience with threat detection tools like Microsoft Defender for IoT, Claroty, Dragos.
- Knowledge of industry-recognized training in OT device management.
- Ability to collaborate with cross-functional teams including BMS engineers, IT security, and vendors.
- Excellent communication and problem-solving skills.
- Strong project management skills with the ability to handle multiple projects.
- Experience with configuring devices on Schneider EBO, PME, and internally developed software/web applications.
- Knowledge of TLS/SSL encryption standards.
- Ability to implement corrective actions promptly.
- Skills in packet inspection, CVE analysis, asset management.
- Understanding of CISA alert classifications, CVSS severity scoring, and mitigation practices.
- Ability to coordinate with cybersecurity teams and vendors for technical controls.
Qualifications and Experience:
- Matric / Grade 12 (essential)
- 3-year IT-related degree (preferred)
- Certifications such as CompTIA Security+, GICSP, CCNA/CCNP Security preferred
- Certified OT Security Practitioner (ISA/IEC 62443)
- Threat intelligence or ICS-CERT training
- Familiarity with CISA advisories and threat mitigation techniques
- Strong understanding of secure networking principles and OT zoning