Cyber Security Data Engineer, Contract Capabilities

Remote: 
Full Remote
Contract: 
Work from: 

Offer summary

Qualifications:

Experience with SIEM platforms and OT data sources., Strong understanding of OT protocols and industrial control systems., Proficiency in scripting languages like Python and PowerShell., Knowledge of OT security standards and threat intelligence platforms..

Key responsibilities:

  • Design, implement, and test SIEM and SOAR solutions for OT environments.
  • Integrate various OT data sources into the SIEM platform.
  • Optimize and manage the SIEM for high-performance security monitoring.
  • Collaborate with OT and IT security teams to enhance security detection and reduce false positives.

Sensia Global logo
Sensia Global Mechanical or Industrial Engineering Large https://www.sensiaglobal.com/
1001 - 5000 Employees
See all jobs

Job description

Rockwell Automation is a global technology leader focused on helping the world’s manufacturers be more productive, sustainable, and agile. With more than 28,000 employees who make the world better every day, we know we have something special. Behind our customers - amazing companies that help feed the world, provide life-saving medicine on a global scale, and focus on clean water and green mobility - our people are energized problem solvers that take pride in how the work we do changes the world for the better.

We welcome all makers, forward thinkers, and problem solvers who are looking for a place to do their best work. And if that’s you we would love to have you join us!

Job Description

As an OT Cybersecurity Data Engineer, you will be responsible for the design, implementation, configuration, and testing of our Security Information and Event Management (SIEM) system with a specific focus on integrating and analyzing data from critical OT/ICS environments. You will work closely with cybersecurity teams to ensure the effective monitoring, detection, and reporting of security threats within industrial infrastructure. This role requires a strong understanding of SIEM and SOAR technologies, OT protocols, and cybersecurity best practices...).You will report to the Global engineering Manager, Contract Capabilities, and will be fully remote, working anywhere in Poland.

Your Responsibilities:
  • Design, implement, and test SIEM and SOAR solutions tailored for OT environments, considering the unique challenges and protocols involved.
  • Integrate various OT data sources (e.g., IDS, EDR, control system logs, network traffic from industrial protocols) into the SIEM platform.
  • Develop and maintain custom parsers, normalizers, and correlation rules to effectively analyze OT-specific logs and events within the SIEM.
  • Optimize and manage SIEM for OT environments – Configure, tune, and maintain the SIEM platform to ensure high-performance security monitoring with actionable insights.
  • Enhance security detection and integration – Collaborate with OT and IT security teams to refine SIEM alerts, reduce false positives, and integrate security events across both environments.
  • Drive cybersecurity awareness and improvements – Stay updated on OT security threats, document SIEM architecture, recommend new features, and provide training for security analysts.

The Essentials - You Will Have:
  • SIEM expertise & OT integration – Experience with SIEM platforms, OT data sources, and security event analysis (e.g., Sumo Logic, Palo Alto Cortex XSOAR).
  • Industrial systems & protocols – Understanding of OT protocols, industrial control systems, and logging mechanisms.
  • Technical skills & automation – Proficiency in parsing log formats, scripting languages (Python, PowerShell), and SIEM rule development.
  • Security frameworks & threat intelligence – Knowledge of OT security standards (NIST SP 800-82, IEC 62443) and threat intelligence platforms.
  • Problem-solving & collaboration - troubleshooting abilities, and effective collaboration across technical and non-technical teams.
  • Teamwork – excel in multicomplex environments with geographically dispersed teams.
The Preferred - You Might Also Have:
  • High level of IPC to keep up with evolving technology, understand complex technology dependency and working across a range of service offerings that may leverage a wide array of technologies and partners.
What We Offer:

Our benefits package includes …

  • Comprehensive mindfulness programs with a premium membership to Calm
  • Volunteer Paid Time off available after 6 months of employment for eligible employees
  • Company volunteer and donation matching program – Your volunteer hours or personal cash donations to an eligible charity can be matched with a charitable donation.
  • Employee Assistance Program
  • Personalized wellbeing programs through our OnTrack program
  • On-demand digital course library for professional development

... and other local benefits!

At Rockwell Automation we are dedicated to building a diverse, inclusive and authentic workplace, so if you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right person for this or other roles.

#LI-Remote

#LI-AJ1

Required profile

Experience

Industry :
Mechanical or Industrial Engineering
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Problem Solving
  • Collaboration
  • Teamwork

Cybersecurity Engineer Related jobs