Experienced Analyst, Ot Cybersecurity Engineering

Johnson & Johnson Johnson & Johnson · Pharma · São Paulo, Brazil +1

Experienced Analyst, Operational Technology Cybersecurity Engineering role at Johnson & Johnson, focusing on supporting, integrating, and automating global OT Security platforms and solutions. Responsibilities include leading technologies, driving integration, assessing risk, testing security controls, generating threat analytics, implementing detection strategies, and performing administrative tasks for security platforms. Requires hands-on scripting, OT/ICS cybersecurity expertise, strong security principles, experience with security solutions in hybrid environments, familiarity with agile/DevSecOps, and knowledge of security frameworks and the MITRE ATT&CK framework.

What you'd actually do

  1. Lead one or more global technologies in our OT Security Engineering team which offers global defense in depth security capabilities for IT/OT networks, controls, infrastructure, systems, and applications.
  2. Drive integration and automation between different IT/OT technologies.
  3. Support OT Cybersecurity workflows, to assess risk, increase visibility and reduce impact of vulnerabilities across the OT environment.
  4. Test and validate security controls throughout the different phases of the Cyber Kill Chain, and the MITRE ATT&CK framework to prevent, detect, and respond.
  5. Generate innovative threat behavior analytics for discovering historical and emerging threats to OT networks and systems.

Skills

Required

  • Python
  • PowerShell
  • Bash
  • Operational Technology (OT) / (ICS) cybersecurity
  • Information security principles
  • Debugging
  • Root cause analysis
  • Forensic investigation
  • Engineering security solutions
  • Installing security solutions
  • Configuring security solutions
  • Operating security solutions
  • AWS
  • Azure
  • GCP
  • On-prem environments
  • Endpoint management platforms
  • Visibility platforms
  • Agile frameworks
  • DevSecOps practices
  • Complex implementations
  • Risk-aware problem solving
  • Communication skills
  • NIST CSF
  • CIS Controls
  • OWASP
  • SANS
  • MITRE ATT&CK framework
  • Global teams collaboration

What the JD emphasized

  • Operational Technology (OT) / (ICS) cybersecurity expertise
  • Hands-on scripting and automation skills
  • Ability to engineer, customize, and extend endpoint management and visibility platforms in OT environments