OT Risk Manager in Grimsby

OT Risk Manager in Grimsby

Grimsby Full-Time 60000 - 80000 £ / year (est.) No home office possible
Ørsted

At a Glance

  • Tasks: Manage cybersecurity risks for offshore windfarm OT systems and conduct risk assessments.
  • Company: Join a leading renewable energy company focused on sustainability and innovation.
  • Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
  • Other info: Diverse and inclusive team environment with excellent career advancement opportunities.
  • Why this job: Make a real impact in the renewable energy sector while enhancing cybersecurity practices.
  • Qualifications: Experience with IC & SCADA systems and understanding of cybersecurity regulations.

The predicted salary is between 60000 - 80000 £ per year.

Join us in this role where you’ll be responsible for overseeing and managing the cybersecurity risks associated with Operational Technology (OT) systems within offshore windfarm operation. You will work closely with the Risk Team, key stakeholders, operations and management to ensure informed decision‑making and compliance with relevant regulations and standards. You’ll be part of our OT Compliance & Security Team, which is part of OT Digital & Security where you, together with your colleagues, conduct risk assessments, risk workshops and communicate results across the business. You regularly review and evaluate cybersecurity risks associated with OT systems that control wind turbine operations, electrical substations and other critical infrastructure, ensuring alignment with national cybersecurity standards.

Responsibilities

  • Conduct risk assessments and risk workshops.
  • Facilitate risk committee meetings and drive risk reporting to key stakeholders.
  • Establish cybersecurity frameworks, policies and procedures tailored for offshore wind farm environments to address risks related to industrial control systems (ICS) and SCADA systems.
  • Work closely with OT/IT security and operational technology teams to ensure integration between OT and IT security practices, focusing on protection of critical national infrastructure.
  • Ensure compliance with national and international cybersecurity regulations and standards, and manage reporting of OT security status to regulatory bodies and cyber security boards.
  • Guarantee that cybersecurity risk management practices comply with regulations, standards and industry best practices for offshore operations.

Qualifications

  • Understand the architecture of ICs & SCADA/OT.
  • Can implement and take guidance from IEC 62443, ISO 27001 and 27019 series of standards including The Purdue Reference Model (ISA‑99) and concept models for IC network segmentation.
  • Have experience operating and managing IC & SCADA components (PLCs, HMIs, RTUs, etc.).
  • Understand OT/SCADA & IC network security and monitoring.
  • Have experience with best practice OT remote access and vendor management.
  • Appreciate the difference of risk management disciplines OT vs IT: OT: SRP triad (Safety, Reliability, Productivity) IT: CIA triad (Confidentiality, Integrity, Availability).
  • Have experience with relevant legislation (UK NCSC CAF, DE BSI/KRITIS, US NERC‑CIP, EU NIS2 and CER) and understand how it applies to OT environments and how authorities audit across jurisdictions.
  • Have a strong understanding of risk management principles, especially in the context of OT and critical infrastructure, and can apply ISO 27005 risk assessment and treatment methods effectively.
  • Can translate cybersecurity risks into business‑relevant insights, facilitating risk‑informed decision‑making at higher management levels, balancing technical needs with business priorities.
  • Have excellent communication skills for engaging with technical teams and business leaders, conveying complex risk scenarios in simple, actionable terms to non‑technical stakeholders.

Additional Information: Employment in this role may be subject to the successful candidate obtaining the required security clearance. We encourage a diverse and inclusive team. To request reasonable work or position accommodations, please contact accommodation@orsted.com.

OT Risk Manager in Grimsby employer: Ørsted

At Ørsted, we pride ourselves on being an exceptional employer, particularly for the OT Risk Manager role within our dynamic offshore windfarm operations. Our commitment to employee growth is evident through continuous training and development opportunities, fostering a collaborative work culture that values diversity and inclusion. With a focus on innovation and sustainability, you will be part of a team that not only prioritises compliance with national cybersecurity standards but also contributes to the advancement of critical infrastructure in a rapidly evolving industry.
Ørsted

Contact Detail:

Ørsted Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land OT Risk Manager in Grimsby

Tip Number 1

Network like a pro! Reach out to people in the industry, attend relevant events, and connect with professionals on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their approach to cybersecurity in OT environments and be ready to discuss how your skills align with their needs. Show them you’re not just another candidate, but someone who truly gets what they do.

Tip Number 3

Practice makes perfect! Conduct mock interviews with friends or mentors to refine your answers and boost your confidence. Focus on articulating your experience with risk assessments and compliance standards clearly and concisely.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team and contributing to our mission.

We think you need these skills to ace OT Risk Manager in Grimsby

Cybersecurity Risk Management
Risk Assessment
Risk Workshops Facilitation
Cybersecurity Frameworks Development
Compliance with Cybersecurity Regulations
Industrial Control Systems (ICS) Knowledge
SCADA Systems Understanding
IEC 62443 Implementation
ISO 27001 and 27019 Standards Knowledge
OT/IT Security Integration
Critical Infrastructure Protection
Communication Skills
Risk Management Principles
Vendor Management in OT
Legislation Awareness (UK NCSC CAF, DE BSI/KRITIS, US NERC-CIP, EU NIS2)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV speaks directly to the job description. Highlight your experience with OT systems, risk management, and compliance with cybersecurity standards. We want to see how your skills align with what we’re looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about cybersecurity in the OT space and how your background makes you a perfect fit for our team. Keep it engaging and relevant to the role.

Showcase Relevant Experience: When detailing your work history, focus on experiences that relate to the responsibilities listed in the job description. Whether it’s conducting risk assessments or managing ICS components, we want to see your expertise in action!

Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don’t miss any important updates from us!

How to prepare for a job interview at Ørsted

Know Your Cybersecurity Standards

Familiarise yourself with IEC 62443, ISO 27001, and the Purdue Reference Model. Be ready to discuss how these standards apply to OT environments, especially in offshore wind farms. This shows you understand the technical requirements and can align them with business needs.

Demonstrate Risk Management Expertise

Prepare to explain your experience with risk assessments and how you've facilitated risk workshops in the past. Highlight specific examples where your insights led to informed decision-making, showcasing your ability to translate complex risks into actionable strategies for management.

Communicate Clearly with Stakeholders

Practice explaining technical concepts in simple terms. You’ll need to engage with both technical teams and non-technical stakeholders, so being able to convey complex risk scenarios clearly is crucial. Think of examples where you’ve successfully communicated risks to diverse audiences.

Understand the OT vs IT Landscape

Be prepared to discuss the differences between OT and IT risk management, particularly the SRP triad versus the CIA triad. Show that you appreciate the unique challenges of managing cybersecurity in operational technology and how it impacts critical infrastructure.

OT Risk Manager in Grimsby
Ørsted
Location: Grimsby

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>