Bosch Group

OT Cybersecurity Engineer

Bosch Group · Bengaluru, Karnataka, India

Software Development · 10,001+ employees

7 h ago
Mid (2-5 yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The OT Cybersecurity Engineer will secure Battery Energy Storage Systems by evaluating threat detection tools and implementing security stacks. They are responsible for system hardening, managing identity and access, and performing vulnerability assessments in alignment with industrial standards.

What they look for

OT Cybersecurity Threat Detection Network Security System Hardening Identity & Access Management Vulnerability Management Linux Python Ansible MQTT Modbus ZMQ IEC 62443 NERC CIP Tenable Security Onion

Requirements

Candidates must hold a bachelor's degree in a relevant field and possess hands-on experience with Linux, vulnerability assessment tools, and industrial networking protocols. Proficiency in scripting languages like Python and familiarity with cybersecurity standards such as IEC 62443 are essential.

Full description

Company Description

Bosch Global Software Technologies Private Limited is a 100% owned subsidiary of Robert Bosch GmbH, one of the world's leading global supplier of technology and services, offering end-to-end Engineering, IT and Business Solutions. With over 27,000+ associates, it’s the largest software development center of Bosch, outside Germany, indicating that it is the Technology Powerhouse of Bosch in India with a global footprint and presence in the US, Europe and the Asia Pacific region.

Job Description

Roles & Responsibilities :

Seeking a highly technical, hands-on OT Cybersecurity Engineer to secure customer’s Battery Energy Storage Systems (BESS).

The candidate will be directly responsible for evaluating security tools, hardening systems, and implementing

the cybersecurity stack required to protect critical infrastructure in alignment with the IEC 62443 standard.

Qualifications

  • OT Threat Detection & Tool Evaluation: Actively evaluate, test, and deploy OTspecific

threat intelligence and network security monitoring tools. You will lead

Proof of Concepts for commercial platforms as well as evaluate open-source

alternatives like Security Onion.

2. Comprehensive System Hardening: Execute hands-on security hardening across

all layers including physical devices, virtual environments, software components

, and network devices to mitigate risks and enforce secure

configurations.

3. Identity & Access Management (IAM): Configure IAM solutions (e.g., Authentik) for

OT networks. Enforce Multi-Factor Authentication (MFA), Role-Based Access

Control (RBAC), and strict authorization policies.

4. Vulnerability Management: Perform OT-safe vulnerability scanning (e.g., Tenable).

Prioritize and remediate vulnerabilities in collaboration with engineering teams.

5. Security Monitoring: Maintain security monitoring platforms to support future

Incident Response and recovery plans being built for OT environments. Build,

evaluate, and integrate future security tools to support the broader incident

handling capabilities.

 

 

Qualifications and Experience:

• Bachelor's degree in Computer Science, Cyber Security, Engineering, or a related field.

• Hands-on experience configuring Linux operating systems, deploying security agents, and executing technical security controls.

• Hands-on experience with vulnerability assessment tools, penetration testing, and security analysis tools specific to ICS environments.

• Foundational knowledge of networking protocols, firewalls, VPNs, IDS/IPS, and other network security concepts, with a strong understanding of network segmentation and the Purdue Model applied to OT environments.

• Deep understanding of how industrial and application messaging protocols function, specifically MQTT, Modbus, and ZMQ.

• Familiarity with standards like NERC CIP and IEC 62443, coupled with the ability to translate a compliance requirement directly into a technical firewall rule, IAM policy, or OS configuration.

• Familiarity with scripting and automation tools, specifically Python and Ansible, to streamline configurations, deploy tools, and parse data.

• Strong analytical and problem-solving skills with an ability to think critically and innovatively in complex cyber security scenarios.

  • Legal Entity: Bosch Global Software Technologies Private Limited