SOC OT/IoT/IoMT Subject Matter Expert

CRAFZ Heredia (CRAFZ) Afz, Costa Rica

Kyndryl

At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day.

View all jobs at Kyndryl

Apply now Apply later

Who We Are

At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.


The Role

Your Role

At Kyndryl, our Security Consultants are at the forefront of cybersecurity innovation, protecting organizations from evolving threats. As a SOC OT/IoT/IoMT SME, you will specialize in securing Operational Technology (OT), Internet of Things (IoT), and Internet of Medical Things (IoMT). You will also leverage security automation and orchestration to enhance efficiency, threat detection, and response.

You will collaborate with IT and OT teams, integrating security tools and processes to mitigate risks, ensure compliance, and enhance resilience across critical infrastructures. Your expertise in advanced security frameworks, automation technologies, and emerging threats will drive cutting-edge security strategies.

Key Responsibilities

  • OT/IoT/IoMT Security – Implement robust security measures, threat detection tools, and response strategies for industrial and medical environments.  Advanced Threat Detection solutions use sophisticated algorithms to detect anomalies and threats, minimizing false positives.

  • Aligning Technology with IT/OT Business Goals: Ensuring that technology initiatives support the overall business objectives. This involves collaborating with various departments to understand their needs and integrating technology solutions that enhance business processes.

  • Security Automation & Orchestration – Develop and integrate automated security workflows using AI, machine learning, and SOAR platforms.

  • Incident Response & SOC Operations – Enhance security operations by detecting, analyzing, and mitigating complex cyber threats. 

  • Vulnerability Management: Implement process to regularly assess and manage vulnerabilities within OT systems to prevent exploitation by attackers

  • Asset Management:  Ensuring real-time visibility and securing ICS assets like Programmable Logic Controllers (PLCs), Remote Terminal Units (RTUs), and Human-Machine Interfaces (HMIs).

  • Risk Management & Compliance – Ensure security processes align with NIST, RMF, CIS Controls, and regulatory requirements.

  • Risk Assessment and Management: Conducting risk assessments to identify vulnerabilities in OT systems and implementing measures to mitigate these risks.

  • Innovation & Strategy – Explore and deploy emerging security technologies to stay ahead of cyber threats.

  • Security Architecture Approach:  Designing key OT secure system architectures in the Purdue Model/PERA framework, including OT systems, IT Systems, network segmentation/micro-segmentation technologies, data aggregation, scalability, access controls, and intrusion detection systems.  Ensure systems support key segments into different levels to enhance security and manage data flow effectively.

  • Target Operating Model – Develop and implement a IT/OT process flow model and plans for Incident Response, Monitoring and Analysis to Continuously monitoring network traffic and system logs to detect and respond to potential threats.

  • OT/IoT/IoMT Security System Management and Optimization – Overseeing the implementation and maintenance of technology systems. This includes managing IT system and infrastructure dependencies are identified, ensuring system security, and optimizing the performance of technology resources. Continuously seeking ways to improve technology systems and processes within the organization.

Who You Are

You are a seasoned cybersecurity professional with deep expertise in OT/IoT/IoMT security, security automation, and threat intelligence. You excel in problem-solving, collaboration, and driving security innovation in fast-paced environments.


Who You Are

Required Skills & Experience

  • 4 years of experience in OT/IoT/IoMT security, automation, and incident response.

  • Expertise in threat detection, SIEM, SOAR, EDR, and cloud security.

  • Expertise in Advanced Threat Detection and Response for Industrial control systems (ICS) and the hardware and software that manage critical infrastructure.   SCADA Systems: Collect data from multiple devices across large areas, used in electric lines, pipelines, and railways.  Distributed Control Systems (DCS): Used in environments with many control loops, such as refining and power generation. Medical Systems: On-site medical devices like MRI scanners and infusion pumps.  

  • Strong understanding of industrial cybersecurity risks and regulatory frameworks.

  • Excellent communication and stakeholder engagement skills.

Preferred Skills & Certifications

  • Advanced cybersecurity certifications (CISSP, CISM, CEH).

  • ICS410: ICS/SCADA Cyber Security Essentials (SANS)

  • Experience with Zero Trust architectures, AI-driven security, and emerging IoT threats.

  • Strong leadership and project management capabilities.


Being You

Diversity is a whole lot more than what we look like or where we come from, it’s how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we’re not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you – and everyone next to you – the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That’s the Kyndryl Way.


What You Can Expect

With state-of-the-art resources and Fortune 100 clients, every day is an opportunity to innovate, build new capabilities, new relationships, new processes, and new value. Kyndryl cares about your well-being and prides itself on offering benefits that give you choice, reflect the diversity of our employees and support you and your family through the moments that matter – wherever you are in your life journey. Our employee learning programs give you access to the best learning in the industry to receive certifications, including Microsoft, Google, Amazon, Skillsoft, and many more. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations.  At Kyndryl, we invest heavily in you, we want you to succeed so that together, we will all succeed.

Get Referred!

If you know someone that works at Kyndryl, when asked ‘How Did You Hear About Us’ during the application process, select ‘Employee Referral’ and enter your contact's Kyndryl email address.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Automation CEH CISM CISSP Cloud Compliance Distributed Control Systems EDR ICS Incident response Industrial Internet of Things Intrusion detection IoT Machine Learning Monitoring NIST Risk assessment Risk management RMF SANS SCADA SIEM SOAR SOC Strategy Threat detection Threat intelligence Vulnerabilities Vulnerability management Zero Trust

Perks/benefits: Career development

Region: North America
Country: Costa Rica

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.