Haystack
← Back to Jobs
Administrative

Security Compliance Analyst III (ICS/OT)

BCforwardUnited States🇺🇸United StatesPosted 13 Aug 2026

Quick Overview

Salary
$43 - $48/hr
Work Type
Hybrid
Level
Mid Senior

Job Description



Job Title: Security Compliance Analyst III (ICS/OT)


Location: Remote


Duration: Contract - 12 months


Pay Range: $43/hr - $48.39/hr (W2)


Job ID: 408317



About BCforward


BCforward is a leading global IT consulting and workforce solutions firm providing services and support to Fortune 500 and government clients. Founded in 1998, BCforward has grown with our customers needs into a full-service business solutions provider. With delivery centers and offices across North America and India, we take pride in building long-term relationships and delivering excellence through innovation, collaboration, and integrity.



Job Description


We are seeking a Security Compliance Analyst III, ICS/OT to join our team supporting the Facilities Ecosystem program within Client's Infrastructure Data Center organization. The ideal candidate will have strong experience in industrial control systems and operational technology security, intake triage, firewall rule review, firmware and vulnerability assessment, and process documentation and a proven ability to rapidly assess requests, apply structured decision frameworks, and drive consistent security operations at scale.


Who Actually Succeeds Here:



  • ICS/OT security analysts and engineers from utilities, power generation, oil and gas, water, manufacturing, or pharma.

  • Building automation and BMS/BAS security specialists. Data center mechanical and electrical controls professionals who moved toward security.

  • Critical infrastructure vulnerability analysts who perform CVE/CVSS triage on embedded and OT devices.

  • Network security engineers with OT exposure, especially those who have owned firewall rule review at an IT/OT boundary.

  • OT vendor and integrator field engineers from Schneider Electric, Siemens, Johnson Controls, Honeywell, Rockwell, ABB, Eaton, or Vertiv who moved into security roles.

  • OT security product company staff from Nozomi, Claroty, Dragos, Tenable OT, Armis, or Forescout with strong protocol fluency.


Responsibilities:



  • Serve as first-line reviewer for Facilities security operational workstreams across ICS/OT, including network integrity, security, and compliance.

  • Review incoming security intake requests, conduct triage, and route to appropriate SMEs using defined decision criteria.

  • Assess existing security processes and controls across ICS/OT environments and document gaps.

  • Escalate complex or out-of-scope items to designated ICS/OT SMEs with complete context and preliminary assessments.

  • Participate in biweekly calls with the NiSC team to address escalations and process improvements.

  • Process and track firewall exception requests for OT/ICS network segments, validating justification against security policies.

  • Manage exception workflows, documentation, approval tracking, and periodic revalidation of standing exceptions.

  • Conduct firmware reviews for ICS/OT devices in Facilities and Robotics, assessing known vulnerabilities and patch status.

  • Perform vulnerability assessments using CVE/CVSS frameworks and document findings with remediation recommendations.

  • Produce regular status reports on queue volumes, SLA adherence, and backlog trends.

  • Identify and implement process improvements to reduce manual effort and improve consistency, including phase-two automation development and capacity building.


Required Skills & Qualifications:



  • Bachelor's degree in Computer Science, Network Engineering, Cybersecurity, or a related field.

  • 5+ years of hands-on security experience.

  • ICS/OT security knowledge, including network segmentation and defense-in-depth strategies, with working knowledge of Modbus (RS485 and TCP/IP), BACnet, Profibus, and gateway architectures.

  • Ability to assess protocol-level security risks and identify misconfigurations.

  • Foundational knowledge of firewall rule management, OT/IT convergence, and access control models.

  • Knowledge of CVE/CVSS, NVD usage, firmware analysis, and patch management practices.

  • Ability to create structured documentation, including decision trees, runbooks, and standard operating procedures.

  • Clear written communication and sound escalation judgment.


Preferred Skills:



  • Master's degree in Computer Science, Network Engineering, Cybersecurity, or a related field.

  • Experience with ICS/OT in critical infrastructure environments such as data centers, power generation, manufacturing, or facilities management.

  • Familiarity with SCADA or building automation systems for power distribution, cooling, and environmental monitoring.

  • Experience delivering projects with enterprise-wide impact and cross-functional stakeholders.

  • Basic scripting ability in Python, PowerShell, or Bash, or familiarity with AI agents for workflow and process automation.


Why BCforward?


At BCforward, we believe in advancing lives and careers. When you join our team, you gain access to:



  • Competitive compensation and benefits.

  • Opportunities for growth with global clients.

  • A supportive, inclusive culture that values innovation and people.

  • Exposure to cutting-edge technologies and projects.



About Our Commitment


BCforward is an equal opportunity employer. We value diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, or veteran status.


Fair Chance Notice


Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Los Angeles Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, qualified applicants will be considered for assignment with arrest and conviction records. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, meet client expectations, standards, and accompanying requirements, and safeguard business operations and company reputation.


Interested? Apply Now!


If this sounds like the right opportunity for you, please apply with your most recent resume.

Similar jobs