Company logo hidden

Lead Consultant - Incident Response (CPX)

Unlock employer Abu Dhabi, United Arab Emirates Posted: 20 Jun 2026

Financial

  • Estimate: $100k - $140k*
  • Zero income tax location

Accessibility

  • Office Only
  • Visa Provided

Requirements

  • Experience: Senior
  • English: Professional

Position

As a Lead Incident Response – OT Cyber Security, you bring deep expertise in industrial control systems and a strong foundation in enterprise security to lead complex incident response engagements across OT and IT environments. The role involves conducting threat hunting (across IT and OT), forensic investigations (across IT and OT), and industrial protocol analysis to support safe and effective incident containment and recovery, particularly within critical operational environments.

Ready to apply for roles like this?

Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.

Unlock employer & apply directly

Responsibilities

  • Act as the technical lead for IT and OT/ICS incident response engagements and support customers across industrial sectors (energy, utilities, manufacturing, oil & gas, transport).
  • Conduct proactive threat hunting across IT and OT/ICS environments, including SCADA servers, historians, HMIs, and engineering workstations.
  • Analyze industrial network traffic and protocols (e.g., Modbus, DNP3, EtherNet/IP, OPC-UA/DA, PROFINET, IEC 61850) to determine attack scope and root cause.
  • Lead and support digital forensic investigations (IT and OT), including evidence acquisition, artifact analysis, and timeline reconstruction for IT and OT environments.
  • Coordinate with operations, engineering, and safety teams to implement containment and recovery actions without impacting critical physical processes.
  • Produce detailed technical reports and executive briefings, effectively communicating findings to both technical and non-technical stakeholders.

Requirements

  • 8+ years of relevant work experience in cybersecurity or incident response.
  • Bachelor's degree in computer science or engineering is desirable but not mandatory.
  • GIAC Global Industrial Cyber Security Professional (GICSP) certification is the primary OT certification requirement.
  • Strong understanding of OT/ICS architectures and the Purdue Reference Model (Levels 0–4).
  • Excellent technical report writing and communication skills, delivering both detailed analysis and executive-level summaries.

Location
MBZ City, Abu Dhabi, United Arab Emirates

Apply now
Save Get notified for similar jobs.

Apply Direct

Jobs you might like   View all jobs

Ready to apply for this role?

Apply Direct