GDS Cyber-CAOE-Senior-AI IT OT Network And Infrastructure Security
EY
EY
Embark on a rewarding career journey at EY, leveraging global scale, inclusive culture, and cutting-edge technology to achieve your full potential. Your unique insights are invaluable in helping EY excel. Join us to build an exceptional personal experience and contribute to a better working world for everyone.
This senior role focuses on AI-driven IT/OT Network & Infrastructure Security. We seek a professional with a strong solution mindset and hands-on security engineering expertise. The ideal candidate will possess deep knowledge of network and infrastructure security, risk and controls, and architecture design, particularly at the intersection of enterprise platforms, cybersecurity controls, and AI tools. Practical experience in network security engineering, detection engineering, and OT cyber risk reduction is essential, with developing expertise in AI-assisted security operations, prompt engineering, AI-driven anomaly detection, and device behavior analytics.
As part of the Cyber Frontier & AI capability, this role is instrumental in enabling scalable, AI-first cyber defense across both enterprise and industrial environments. You will be at the forefront of innovation, shaping how AI transforms cybersecurity.
Key responsibilities include understanding and implementing network and infrastructure security strategies across enterprise, cloud, and OT environments. You will drive the adoption of Zero Trust, IEC 62443-aligned OT security controls, and advanced segmentation architectures. This involves managing deployments and governance of various security solutions such as NGFW, NAC, VPN, ZTNA, SASE, DNS security, CASB, and CSPM.
You will lead incident response and security improvement initiatives to bolster cyber resilience across hybrid infrastructures. Expertise in secure remote access, DMZ architecture, PLC security, and cloud network protection is vital. A strong understanding of AI-assisted IT/OT security architecture and operations is expected, enabling predictive threat monitoring and automated responses within industrial settings.
Responsibilities also encompass leveraging AI for anomaly detection in OT network traffic, process behaviors, and industrial protocols. You will build AI-based rule optimization frameworks for IT/OT security controls to enhance traffic filtering, segmentation policies, and alert accuracy. Additionally, AI will be applied to OT network traffic optimization, intelligent routing, and adaptive policy enforcement.
Implement AI-powered device behavior profiling for PLCs, HMIs, and IoT/IIoT assets to detect unauthorized activities. Utilize AI in PLC code analysis to identify logic anomalies and vulnerabilities. Apply AI/ML for network threat detection, including intrusion detection and zero-day attack identification. Design and optimize prompt engineering strategies for GenAI tools to support incident investigation, log analysis, and threat intelligence enrichment.
Enable AI-driven continuous monitoring and predictive risk analytics to enhance IT/OT resilience. Develop reusable methods, accelerators, and reference architectures to strengthen the firm’s AI Network & Infrastructure Security offerings. Manage client expectations, delivery scope, solution quality, and technical escalations, while coaching teams and facilitating knowledge transfer.
We require 4–8 years of experience in AI-driven Network & Infrastructure security, Security Architecture, OT Security, or Zero Trust Security. Experience with OT security tools like Nozomi, Claroty, Armis, Dragos, or Cisco Cyber Vision, along with OT vulnerability management, is essential.
Expertise in XDR, Zero Trust, and regulatory frameworks such as IEC 62443 and CIS is crucial. Hands-on experience with NGFWs (Palo Alto, Cisco, Fortinet, Azure Firewall) and VMware virtualization security is expected. Proficiency in SSE/SASE platforms (Netskope, Zscaler, Akamai) and secure access technologies (VPN, ZTNA, DNS security) is required.
Demonstrate a strong capability in multi-vendor security integration across IT, OT, and cloud environments. Excellent client-facing communication skills and the ability to act as a trusted technical advisor to senior stakeholders are vital.
Ideally, strong soft skills including verbal and written communication, and technical documentation writing are beneficial. Project management, negotiation, and interpersonal skills are advantageous. Prior experience in Advisory or Technology Consulting, coupled with customer orientation skills, is preferred.
Knowledge of Information Security Standards and compliances (ISO 27001, ISO 27017, NIST 800 53, NIST 800-207, CISA, CIS benchmark) and relevant industry certifications (e.g., CISSP, CISA, CISM, SABSA, PRINCE2, TOGAF) or vendor certifications (e.g., Zscaler, Nozomi, Netskope, Palo Alto Networks, Cisco) would further strengthen your candidacy.
EY Global Delivery Services ( EY GDS)
Cybersecurity