OT Cyber Security Analyst
Culham
Location: Culham, Oxfordshire (2 days/week on-site)
Contract: Until 18/12/2026
IR35: In Scope
Rate: £50/hr Umbrella
Clearance: Active SC or lapsed within 12 months
Role Overview
We are seeking an experienced OT Cyber Security Analyst to support the security, monitoring, and continuous improvement of Operational Technology environments within a critical infrastructure setting.
This role combines hands-on OT security engineering with governance and risk responsibilities, ensuring OT systems are protected, monitored, and aligned with industry standards and frameworks.
You will work closely with OT engineers, security teams, and third-party providers to implement and maintain effective OT security controls.
Key Responsibilities
* Implement OT security controls (segmentation, secure remote access, monitoring tools)
* Integrate OT environments into SIEM/SOC platforms and tune detections
* Support OT asset discovery, inventory, and security assessments
* Identify vulnerabilities and support remediation planning
* Assist with OT incident response (log collection, triage, SOC coordination)
* Work with engineers to ensure secure system changes with minimal disruption
* Track OT security maturity, control coverage, and reporting
* Contribute to OT security policies, standards, and continuous improvement
Essential Requirements
* Experience in oil & gas, rail, chemical, nuclear, or similar critical infrastructure environments
* Strong OT/ICS security background
* Experience implementing OT security controls and strategies
* Knowledge of OT networks, segmentation, and industrial protocols
* SIEM/SOC integration experience in OT environments
* Strong understanding of:
* IEC 62443
* NIST Cybersecurity Framework
* ISO 27001
* UK CAF framework
* Experience with OT risk assessments and gap analysis
* Strong communication and documentation skills
* Max 2-week notice period
Desirable
* OT asset discovery / monitoring tooling experience
* Exposure to UK critical infrastructure regulation (e.g. NIS, CAF)
* ITSM and service delivery lifecycle understanding
* Hybrid IT/OT environment experience