OT Security Engineer (m/w/d)
Indexed description
Who We Are?
ITC Infotech is a leading global technology services and solutions provider, led by Business and Technology Consulting. ITC Infotech provides business-friendly solutions to help clients succeed and be future-ready, by seamlessly bringing together digital expertise, strong industry specific alliances and the unique ability to leverage deep domain expertise from ITC Group businesses. The company provides technology solutions and services to enterprises across industries such as Banking & Financial Services, Healthcare, Manufacturing, Consumer Goods, Travel and Hospitality, through a combination of traditional and newer business models, as a long-term sustainable partner.
What are we looking for?
The Splunk / SOC / OT Security Engineer helps implement OT detection and response capabilities for the SOC. This role is hands-on and practical, focused on deploying and connecting the right technologies, onboarding relevant OT data, building useful detections, and shaping the processes needed for analysts to investigate and respond to OT-related security events. The role also connects several teams that do not always speak the same language: SOC, infrastructure, network, OT, architecture, and vendors. A key part of the job is turning OT monitoring requirements, threat scenarios, and tool capabilities into detections, procedures, documentation, and workflows that the SOC can adopt and use with confidence.
Key Responsibilities
- Implement and configure Splunk capabilities needed for OT detection and response, including OT data onboarding, source types, indexes, field extractions, data quality checks, dashboards, and alerts.
- Build, tune, test, and document detections for OT-related security use cases, including supporting IT, network, endpoint, and cloud context where needed.
- Connect OT detect and response technologies, NDR, IDS, Firewalls, and other relevant security tools into Splunk and SOC workflows.
- Turn OT threat scenarios and monitoring needs into alerts, investigation steps, escalation guidance, and response procedures that analysts can use.
- Create alert handling procedures, triage guidance, escalation criteria, response plans, and playbooks for OT-related detections.
- Enable SOC teams to use the OT detection and response capabilities through clear workflows, guidance, training material, and practical handover.
- Work closely with SOC, infrastructure, network, OT, architecture, and vendor teams to implement OT detect and response capabilities that are technically solid and usable by the SOC.
- Test and validate OT detection and response technologies and features through proof of concepts, MVPs, use case testing, and clear documentation.
- Create documentation, analyst guidance, onboarding material, and knowledge transfer content for OT detections, tools, processes, and response workflows.
- Troubleshoot issues during implementation, including data ingestion, integrations, alert logic, dashboards, and monitoring platform behavior.
- Help mature SOC readiness for OT by reducing noise, improving detection quality, identifying automation opportunities, and making the new capabilities easier for analysts to use.
Required Skills & Experience:
- Hands-on Splunk implementation and engineering, including configuration, integrations, troubleshooting, and enablement for SOC use.
- Use case design, detection logic, tuning, validation, documentation, and transition into SOC workflows.
- Analyzing logs, network traffic, endpoint telemetry, and security alerts to understand what matters and what can be improved.
- Integrating OT detection and response technologies, security tools, and telemetry sources into Splunk and SOC processes.
- Writing clear documentation such as playbooks, investigation guides, response procedures, analyst instructions, and knowledge transfer material.
- Communicating clearly with technical teams, operational teams, vendors, and stakeholders.
Our X-Factor
- Work ethic: You are a consummate professional.
- Aptitude: You have an innate capacity to transition from project to project without skipping a beat.
- Communication: You have excellent written and verbal communication skills for coordination across projects and teams.
- Impact: You are a critical thinker with an emphasis on creativity and innovation.
- Passion: You have the drive to succeed paired with a continuous hunger to learn.
- Leadership: You are trusted, empathetic, accountable, and empower others around you.
At ITC Infotech we believe diversity drives innovation and makes us stronger. We welcome applications from people of all backgrounds, abilities, and experiences — including those living with disabilities or long-term health conditions. If you need any adjustments during the recruitment process, just let us know and we’ll work with you to make it happen.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search