OT Cybersecurity Analyst
WEC Energy GroupAbout the role
WEC Business Services LLC, a subsidiary of WEC Energy Group, is seeking an OT Cybersecurity Analyst in our Milwaukee, Green Bay, or Chicago locations. This position offers flexibility for a hybrid work arrangement (remote/on-site) with time spent in the office.
This position is part of a job family (IT Cybersecurity Analyst/Senior IT Cybersecurity Analyst) where experience is the determining factor in placement.
Job Summary
The OT Cybersecurity SME is a liaison between the IT Cybersecurity Team and stakeholders within the Power Generation, Electrical and Gas Distribution Asset Management businesses and reports to the IT Cybersecurity Team Lead as an integral part of the Technology Security Application & Engineering team. This SME role assists the PG, EDAM and GDAM business areas to maintain WEC Energy Group’s overall OT cybersecurity architecture, ensure effective OT cybersecurity architecture governance, policy and process, and contribute to the OT cybersecurity roadmap for enterprise level systems. In addition, this role is also responsible for providing leadership in the OT enterprise cybersecurity tools and vendor evaluation process, and conducting periodic assurance reviews to ensure designs are implemented to the agreed OT cybersecurity architecture.
Job Responsibilities
Domain-focused Architecture Oversight, Planning, and Enablement
- Maintain a view of the company’s overall cybersecurity architecture, to ensure appropriate OT domain coverage of security capabilities and identify potential gaps for remediation
- Ensure OT domain architectures are aligned with business, regulatory, technical, operational, and strategy objectives
- Optimize and/or migrate system architectures to meet OT Security program requirements
- Ensure effective OT security architecture governance is applied to the SME domain including standards, processes, and leading practices, based on a common “language” to inform repeatable and secure design
- Ensure business divisions and local business entities use secure methods & standards to develop, implement, and maintain system architectures that support OT cybersecurity policies & standards
- Develop OT domain specific actionable control lists, implementation guidelines, and required levels of protection that align with enterprise level cybersecurity control framework and the criticality of the systems
- Conduct periodic assurance reviews across the OT cybersecurity architecture domain to ensure that designs are built and implemented to the agreed OT cybersecurity architecture standards
- Collaborate with the Governance Risk and Compliance principal to evaluate OT security measures, metrics, architecture exception requests and develop & track mitigation plans for the resolution of risk
- Keep abreast with emerging OT security architecture trends and issues; and understand OT business related cybersecurity risks and support requirements to inform the Enterprise Security and Compliance Director in developing OT strategic plans and OT architecture/process requirements
Domain-focused Security Systems & Tools
- Collaborate with the Technology Security Application & Engineering and Technology Security Operations team leads to ensure OT level security systems & tools are reflected in system architectures
- Leverage OT enterprise-wide required and preferred tools library, and ensure the tools are used in a standardized way
- Advise OT domain specific business divisions and local business entities on OT cybersecurity vendor and tools selection, with emphasis on ensuring that tools address OT specific business entity requirements and maximize reusability
- Develop action (project) plans for OT enterprise systems, aligned to Enterprise Security and Compliance strategy and enterprise security roadmap
- Collaborate with GRC principal to evaluate OT enterprise tools exception, measures and metrics requests
Minimum Qualifications
- Bachelor’s degree in computer science, computer engineering, software engineering, information technology, computer information systems, MIS, or engineering is preferred. A combination of associate degree, military or professional cybersecurity experience and cybersecurity certification will be considered.
- 2+ years OT cybersecurity architecture design and strategy experience
Preferred Qualifications
- Certified Information System Security Professional (CISSP) certification
- Global Industrial Cybersecurity Professional (GICSP) certification
- Certified SCADA Security Architect (CSSA) certification
- Experience in OT cybersecurity architecture design and strategy within the Power Generation, Gas and Electric business (specifically Industrial Control Systems)
- Ability to le
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s