Claroty OT Security
2 days ago
Hiring: OT/ICS SOC Analysts (L1 & L2)
We are looking for skilled and motivated OT/ICS Security Analysts (L1 and L2) to join our cybersecurity operations team. The role involves monitoring, incident investigation, protocol analysis, and working closely with OT engineers to protect critical industrial environments. Experience with Claroty or similar OT security platforms will be a strong advantage.
Role Overview
The position covers responsibilities across both Tier-1 (L1) and Tier-2 (L2) levels, depending on experience.
L1 focuses on monitoring and triage, while L2 handles deep investigations, rule tuning, and coordinated remediation.
ResponsibilitiesL1 – Tier-1 (First Line)
- Perform 24x7 monitoring of Claroty alerts and dashboards.
- Conduct initial alert triage to identify true and false positives.
- Add contextual details to alerts, such as asset owner, site, and maintenance activities.
- Execute approved low-impact containment actions when required.
- Create and update tickets with accurate details, evidence, and recommended next steps.
- Follow runbooks, SOPs, and escalate incidents to L2/OT teams when necessary.
L2 – Tier-2 (Second Line)
- Perform detailed investigations, RCA, and incident validation.
- Coordinate with OT engineers, SMEs, and asset owners to drive remediation activities such as configuration changes, segmentation updates, and firmware updates.
- Tune detection rules, reduce false positives, and improve baseline models.
- Maintain and enhance playbooks, runbooks, and detection signatures.
- Conduct advanced packet analysis and reconstruct sessions using pcaps.
- Correlate Claroty telemetry with SIEM, NMS, and other monitoring systems.
- Manage asset inventory, reconciliation, anomaly detection tuning, and forensic data collection.
Minimum Experience and BackgroundL1 Requirements
- 1 to 3 years of experience in IT/OT monitoring, SOC/NOC operations, or similar roles.
- Exposure to industrial or critical infrastructure environments is preferred.
- Basic understanding of networking fundamentals (TCP/IP, VLANs, routing).
- Conceptual familiarity with ICS protocols such as IEC 61850, DNP3, Modbus, IEC
- Willingness to work in rotational shifts.
L2 Requirements
- 3 to 6+ years of experience in ICS/OT security or SOC operations.
- Demonstrated experience in handling incidents in industrial environments.
- Hands-on experience with Claroty or similar OT security platforms.
- Strong networking and protocol analysis skills.
- Familiarity with power system devices, substation architecture, and OT networks.
Required Technical SkillsL1 Skills
- Understanding of Claroty UI workflows: alerts, asset view, inventory, topology, and risk dashboards.
- Ability to read and interpret packet/flow data and key fields in pcaps/logs.
- Basic SIEM knowledge: creating and reading alerts, adding context.
- Basic Windows and Linux troubleshooting.
- Familiarity with OT devices such as RTUs, IEDs, PLCs, and HMIs.
L2 Skills
- Deep understanding of ICS/SCADA protocols (IEC 61850, DNP3, Modbus, IEC
- Advanced packet analysis using Wireshark and ability to reconstruct sessions.
- Experience with Claroty functions: asset discovery, risk scoring, anomaly detection, session monitoring, forensic retrieval.
- Ability to create and update detection rules, playbooks, and containment steps.
- Knowledge of secure OT change management practices.
- Familiarity with IEC 62443 framework and OT security concepts.
Preferred Certifications (L1 and L2)
- Claroty product training (administrator/operator/advanced).
- ICS/SCADA certifications such as SANS ICS, GICSP, or equivalent.
- Networking and security certifications (CCNA, CCNP, CISSP).
- Security fundamentals such as CompTIA Security+.
Work Environment
- Exposure to industrial OT environments such as power grids and substations.
- 24x7 SOC operations with rotating shifts for L1 analysts.
If you are interested in building your career in OT cybersecurity and contributing to the protection of industrial systems, we encourage you to apply.
Job Types: Full-time, Permanent
Pay: From ₹1,800,000.00 per year
Benefits:
- Cell phone reimbursement
- Commuter assistance
- Flexible schedule
- Food provided
- Health insurance
- Internet reimbursement
- Leave encashment
- Life insurance
- Paid sick time
- Paid time off
- Provident Fund
- Work from home
Work Location: In person
-
Mumbai, Maharashtra, India Cisco Full time ₹ 6,00,000 - ₹ 18,00,000 per yearAbout the CompanyThe Cisco Sales Solutions Engineering business group is dedicated to crafting and delivering coordinated technology solutions that address the multifaceted needs of businesses. By working closely with customers, the group identifies specific challenges and offers innovative solutions using Cisco's comprehensive range of networking, security,...
-
Cyber Security Lead
2 weeks ago
Navi Mumbai, Maharashtra, India Adani Full time ₹ 12,00,000 - ₹ 36,00,000 per yearResponsibilitiesRisk Management:Identify, assess, and prioritize cybersecurity risks.Develop risk mitigation strategies and ensure timely resolution.Define and monitor Key Risk Indicators (KRIs) for assessing the effectiveness of the cyber security controls.Policy and Regulatory Compliance:Develop security policies/processes as per industry standards and...
-
Plant Operations
6 days ago
Mumbai, Maharashtra, India Sun Pharmaceutical Industries, Inc. Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPlant OperationsDate: 14 Nov 2025Location: Sun House - Corporate OfficeCompany: Sun Pharmaceutical Industries LtdJob Title:Senior Manager- Plant Operations(OT and Security plant governance)Job GradeG9BFunction:ITSub-function:Cyber SecurityLocation:MumbaiJob SummaryAt Sun Pharma, we commit to helping you "Create your own sunshine"— by fostering an...
-
Chief Information Security Officer
4 days ago
Mumbai, Maharashtra, India Adani Electricity Full time ₹ 12,00,000 - ₹ 36,00,000 per yearRole PurposeThe Chief Information Security Officer (CISO) will lead the cybersecurity strategy and operations for Adani Electricity Mumbai, ensuring the protection of critical infrastructure, customer data, and operational technologies. This role is pivotal in safeguarding the organization's digital assets, aligning with Adani Group's commitment to...
-
Network Security Administrator
2 weeks ago
Mumbai, Maharashtra, India Netxcell Limited Full time ₹ 6,00,000 - ₹ 10,00,000 per yearHello,Greetings for the day Hiring "Security Administrator" for one of our public sector client based @ Mumbai Experience: 3+ yearsMandatory Skill Sets for System Administrator – SecurityCo-ordination with SOC team and resolution of incidents raised by SOC team for malwareinfected endpoints, abnormal denied requests etc.Monitoring security dashboard for...
-
Mumbai, Maharashtra, India BSR & Co Full time ₹ 15,00,000 - ₹ 25,00,000 per yearDescriptionAbout KPMG in IndiaKPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with local laws, regulations, markets and competition. KPMG has offices...
-
Cyber Security Pentester
2 weeks ago
Mumbai, Maharashtra, India RIGVED Full time ₹ 2,46,000 - ₹ 14,97,845 per yearRole: Penetration Tester (Individual Contributor)Location: MumbaiYour experienceAt least 4-8 years of experience in Information Security/ Cybersecurity, primarily in performing Vulnerability Assessment and Penetration Testing for Web/ Mobile/ Client Applications, IT Infrastructure and Network Devices, Red Team Assessment, OSINT, Purple Teaming, etc.Primary...
-
Manager - Cybersecurity - Products
2 weeks ago
Mumbai, Maharashtra, India Tata Communications Full time ₹ 15,00,000 - ₹ 25,00,000 per yearAbout The CompanyTata Communications Redefines Connectivity with Innovation and IntelligenceDriving the next level of intelligence powered by Cloud, Mobility, Internet of Things, Collaboration, Security, Media services and Network services, we at Tata Communications are envisaging a New World of CommunicationsDeep understanding of industrial control systems...
-
Network Architect
2 weeks ago
Mumbai, Maharashtra, India Mahindra & Mahindra Full time ₹ 12,00,000 - ₹ 24,00,000 per yearResponsibilities & Key Deliverables We are seeking a highly skilled Network Technology Specialist with 15+ years of experience in IT & OT network design and implementation, particularly in manufacturing environments. The candidate will lead network security, scalability, and optimization initiatives, including Zero Trust Network Access (ZTNA)...
-
Cybersecurity Lead
2 weeks ago
Navi Mumbai, Maharashtra, India adani capital pvt ltd Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCyber Security Lead Responsibilities Risk Management:Identify, assess, and prioritize cybersecurity risks. Develop risk mitigation strategies and ensure timely resolution. Define and monitor Key Risk Indicators (KRIs) for assessing the effectiveness of the cyber security controls. Policy and Regulatory Compliance:Develop security...