Responsibilities
-
Build and maintain structured IT/OT compliance frameworks
-
Define and document security levels based on IEC 62443
-
Responsibilities
-
Perform and facilitate IT/OT risk assessments
-
Develop and maintain incident response and security policies
-
Ensure documentation complies with relevant legislation and contractual requirements
-
Advise project teams and customers on compliance and OT security matters
-
Support secure design of solutions delivered to customers
-
Contribute to standardization of compliance practices across projects Establish and mature the company’s IT/OT compliance and security framework
-
Ensure alignment with international standards (primarily IEC 62443)
-
Strengthen compliance level in customer projects within production and utilities
-
Support regulatory alignment and increasing market requirements for OT security
-
Reduce operational and contractual risk related to cybersecurity and compliance
-
Act as internal subject matter expert on IT/OT compliance and security level design
Requirements
-
Strong technical understanding of IT and/or OT environments
-
Solid interest in cybersecurity and compliance frameworks
-
Analytical mindset with structured documentation skills
-
Ability to translate technical risk into structured compliance requirements
-
Experience with OT environments or automation industry is an advantage
-
Experience with risk assessments and security standards is an advantage
-
Willingness to specialize in IEC 62443 (training provided if needed)
Expectations
-
Act as proactive driver of compliance maturity within the organization
-
Challenge existing practices where security or compliance gaps are identified
-
Work independently with clear ownership of assigned areas
-
Contribute to reducing business risk and strengthening market position
-
Ensure high quality and audit-ready documentation
-
Support commercial competitiveness by enabling compliance in tenders and contracts
-
Decision Rights
-
Recommend and define IT/OT security levels within projects and customer environments
-
Decide on compliance documentation standards within assigned scope
-
Propose risk mitigation measures based on IT/OT assessments
-
Determine appropriate incident response actions within their area
-
Advise on technical solution design where security requirements apply
-
Escalate any non-compliance or unacceptable risk to management for further action
Note: This role does not include staff management or budget authority; decision rights are limited to technical and process areas under the specialist’s ownership.