OT Cybersecurity Engineer
Company Description
Bosch Global Software Technologies Private Limited is a 100% owned subsidiary of Robert Bosch GmbH, one of the world's leading global supplier of technology and services, offering end-to-end Engineering, IT and Business Solutions. With over 27,000+ associates, it’s the largest software development center of Bosch, outside Germany, indicating that it is the Technology Powerhouse of Bosch in India with a global footprint and presence in the US, Europe and the Asia Pacific region.
Job Description
Roles & Responsibilities :
Seeking a highly technical, hands-on OT Cybersecurity Engineer to secure customer’s Battery Energy Storage Systems (BESS).
The candidate will be directly responsible for evaluating security tools, hardening systems, and implementing
the cybersecurity stack required to protect critical infrastructure in alignment with the IEC 62443 standard.
Qualifications
- OT Threat Detection & Tool Evaluation: Actively evaluate, test, and deploy OTspecific
threat intelligence and network security monitoring tools. You will lead
Proof of Concepts for commercial platforms as well as evaluate open-source
alternatives like Security Onion.
2. Comprehensive System Hardening: Execute hands-on security hardening across
all layers including physical devices, virtual environments, software components
, and network devices to mitigate risks and enforce secure
configurations.
3. Identity & Access Management (IAM): Configure IAM solutions (e.g., Authentik) for
OT networks. Enforce Multi-Factor Authentication (MFA), Role-Based Access
Control (RBAC), and strict authorization policies.
4. Vulnerability Management: Perform OT-safe vulnerability scanning (e.g., Tenable).
Prioritize and remediate vulnerabilities in collaboration with engineering teams.
5. Security Monitoring: Maintain security monitoring platforms to support future
Incident Response and recovery plans being built for OT environments. Build,
evaluate, and integrate future security tools to support the broader incident
handling capabilities.
Qualifications and Experience:
• Bachelor's degree in Computer Science, Cyber Security, Engineering, or a related field.
• Hands-on experience configuring Linux operating systems, deploying security agents, and executing technical security controls.
• Hands-on experience with vulnerability assessment tools, penetration testing, and security analysis tools specific to ICS environments.
• Foundational knowledge of networking protocols, firewalls, VPNs, IDS/IPS, and other network security concepts, with a strong understanding of network segmentation and the Purdue Model applied to OT environments.
• Deep understanding of how industrial and application messaging protocols function, specifically MQTT, Modbus, and ZMQ.
• Familiarity with standards like NERC CIP and IEC 62443, coupled with the ability to translate a compliance requirement directly into a technical firewall rule, IAM policy, or OS configuration.
• Familiarity with scripting and automation tools, specifically Python and Ansible, to streamline configurations, deploy tools, and parse data.
• Strong analytical and problem-solving skills with an ability to think critically and innovatively in complex cyber security scenarios.