Lead OT SOC Architect
Jacobs - Baton Rouge, LA
Hiring: Lead OT SOC Architect Company: Jacobs Location: Baton Rouge, LA Job Posted Time: 2026-09-16 12:50:11 Employment Type: Contract / Remote Target Skills & Keywords : IAM, Linux, SIEM, SOC, Splunk, Systems Engineering, VPN, Zero Trust About the job Experience: •10+ years in cybersecurity with deep Security Operations expertise, including 5+ years in a lead, architect, or senior technical role directing SOC design and operations Required Skills: •As the Lead OT SOC Architect •Are you ready to lead the technical heart of a next-generation OT SOC? At Jacobs, we are building a more connected and sustainable world. Come join us as we engineer and defend the networks at the core of today's global infrastructure. •Primary responsibilities center on architecting the OT SOC platform and service, leading its detection-engineering and operations design, supervising the SOC team, and serving as the lead technical escalation authority — with additional responsibilities supporting client engagements and business development. •Architect the end-to-end OT SOC platform — SIEM, detection pipeline, data model, enrichment, and multi-tenant service architecture — designing every decision for a scalable, productized managed-service end state •Own the detection-engineering strategy and lifecycle design, build, test, version-control, and continuously improve detection content mapped to MITRE ATT&CK for ICS, treating detections as code with change control and measurable coverage •Lead, mentor, and develop SOC engineers and analysts; set investigation standards, triage thresholds, and escalation criteria that drive consistency, quality, and analyst growth •Establish and own "continuous operational assurance" — defining what good looks like for each client environment, continuously verifying reality matches that model, and surfacing deviations before they become incidents •Design consequence-driven detection layer engineering and control-system context onto OT platform data so alerts reflect physical-process impact, not just network anomalies Qualifications: •Direct OT/ICS security experience OT network monitoring platforms (Dragos, Claroty, Nozomi, Nomic), OT-safe operations, and industrial environments •IAT Level II or equivalent certification (Security+, GICSP); GIAC GRID, GCIP, or CISSP •Expertise in MITRE ATT&CK for ICS specifically, including ICS technique-mapped detection content •Knowledge of OT/ICS protocols — Modbus, DNP3, IEC 61850, SEL, PROFINET — serial and IP-based •Solid functional working knowledge of NIST SP 800-82 and OT-specific regulatory context (NERC CIP, AWIA, CIRCIA) •Applied hands-on capability in critical infrastructure OT control systems and ICS components — PLCs, HMIs, RTUs, controllers — and the consequence analysis that ties control-system knowledge to detection •Cisco (CCNP Security, CCNA), Fortinet NSE, or equivalent network/security certifications •The base salary range for this position is $145,000.00 to $180,000.00. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. •Your application experience is important to us, and we’re keen to adapt to make every interaction even better. If you require further support or reasonable adjustments with regards to the recruitment process (for example, you require the application form in a different format), please contact the team via Careers Support. Compensation: •$145,000 - $180,000 / year Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!