IT-OT Network Analyst
Job Summary:
The IT-OT Network Analyst supports the implementation, operation, and maintenance of network infrastructure that enables secure, reliable, and segmented industrial control system (ICS) environments. This role focuses on the foundational networking components that underpin SCADA, HMI, and broader operational technology (OT) systems, including switches, routers, firewalls, VLANs, remote access solutions, and network monitoring tools. Working under the guidance of senior network engineers and network consultants, the Analyst assists with configuring and validating network devices, applying standard security and segmentation practices, performing connectivity testing, and ensuring compliance with project, cybersecurity, and regulatory requirements. The Network Analyst contributes to installation and commissioning activities by supporting device staging, documenting network parameters, validating link performance, and troubleshooting basic communication issues across IT-OT networks. The role also supports ongoing operations by monitoring network health, responding to operational tickets, applying approved configuration changes, assisting with incident response, and maintaining accurate diagrams and documentation throughout the network lifecycle. By following established processes and collaborating closely with project managers, consultants, and senior technical staff, the Network Analyst helps ensure that deployed networks remain stable, secure, and aligned with client operational needs and organizational quality standards.
Duties
- Design, implement, and maintain secure OT and IT network architectures, including LAN, WAN, MPLS, and data center environments.
- Manage and support network devices such as Cisco routers, switches, ASA firewalls, Meraki access points, Juniper equipment, and Cisco ISE for identity services.
- Configure and troubleshoot network protocols including TCP/IP, OSPF, EIGRP, BGP, IPsec VPNs, DHCP, DNS, LDAP authentication, and SNMP for effective network management.
- Oversee network security measures such as firewalls, IDS/IPS systems, PKI certificates, SSO integrations, SSL encryption, and cloud security protocols on platforms like AWS and Azure.
- Support high availability environments utilizing load balancing solutions, virtualization platforms such as VMware vSphere and Hyper-V, and cloud-based infrastructure to ensure continuous operations.
- Perform system administration tasks across multiple operating systems including Windows Server and Linux distributions; automate processes with scripting languages like Bash (Unix shell), PowerShell, Python; utilize configuration management tools such as Ansible.
- Manage remote access software solutions including SSH tunnels and VPNs to facilitate secure connectivity for distributed teams.
- Support network installation projects involving telecommunication systems; monitor network performance using PRTG or SolarWinds; support network architecture planning aligned with ITIL standards.
Responsibilities
- Support the configuration, maintenance, and monitoring of OT network infrastructure including switches, routers, firewalls, VLANs, and remote access solutions, while performing day-to-day operational and troubleshooting tasks as assigned.
- Collaborate effectively within a small, fast-paced technical team, assisting with priority tasks and responding to time-sensitive requirements in operational or industrial environments.
- Build and maintain strong working relationships with technical, operational, and business stakeholders by providing clear communication and reliable support.
- Participate in technical discussions by contributing observations, gathering information, and supporting senior engineers in developing network architecture, segmentation, and security strategies.
- Assist internal team members and clients in collecting network-related requirements, documenting needs, and preparing recommendations for configurations or improvements under senior guidance.
- Work collaboratively with cross-functional teams—including networking, engineering, cybersecurity, controls, and project management—to support the deployment and ongoing upkeep of OT network environments.
- Translate client or internal requirements into documented tasks, configuration updates, or support activities that contribute to network reliability, segmentation, and performance.
- Support delivery of network-related technical services, including network monitoring, initial incident triage, basic troubleshooting, device patching, and routine configuration updates.
- Participate in periodic network assessments by gathering data, reviewing device health, identifying observable risks or inconsistencies, and escalating issues to senior staff for evaluation.
- Assist with preparing and delivering internal or client-facing documentation, demonstrations, or training materials related to OT networking tools, processes, or best practices.
- Work within established project plans to complete assigned network configuration tasks, documentation updates, testing activities, and support deliverables.
- Provide first-line and intermediate-level network support to clients as issues arise, escalating complex issues to senior network engineers or consultants as needed.
- Maintain foundational knowledge of OT networking technologies, ICS communication methods, cybersecurity concepts, segmentation models (including Purdue Model), and emerging practices relevant to industrial environments.
- Support SLA commitments by responding to tickets and requests in a timely manner, maintaining proactive communication with internal teams and clients.
- Develop and maintain accurate network documentation, including topology diagrams, device inventories, IP schemas, and configuration records to support clarity and repeatability.
- Demonstrate a customer-focused approach by understanding client needs, maintaining professionalism, and contributing to positive, long-term working relationships.
Requirements
- Associate’s or Bachelor’s degree in Information Technology, Networking, Cybersecurity, Computer Science, Engineering, or a related field; equivalent hands-on experience in lieu of formal education will also be considered.
- 0–5 years of experience in an IT support, network support, systems analyst, or IT/OT support role, preferably within industrial, energy, oil & gas, utilities, or other critical infrastructure environments.
- Foundational understanding of relevant cybersecurity frameworks, such as ISA/IEC 62443, NIST Cybersecurity Framework (CSF), or other enterprise/OT security standards.
- Basic knowledge of networking concepts, including IP addressing, VLANs, routing basics, firewalls, VPN technologies, segmentation strategies, and intrusion detection/prevention (IDS/IPS).
- Familiarity with IT or OT project workflows, including exposure to structured project delivery, task tracking systems, change management, or service management tools.
- Ability to support multiple stakeholders, providing timely, professional, and clear communication to internal team members, vendors, and customers.
- Foundational understanding of system and network infrastructure components, such as Windows Server, Windows 10/11, Active Directory basics, virtualization environments (e.g., VMware, Hyper-V), and backup/restore concepts.
- Strong troubleshooting and diagnostic skills, including experience resolving connectivity issues, workstation/server problems, network faults, patching tasks, or basic security-related concerns.
- Effective written and verbal communication skills, with the ability to document work clearly and explain technical issues in a way that is easy for non-technical stakeholders to understand.
- Ability to prioritize tasks and manage time effectively, with exposure to participating in maintenance windows, project activities, or structured support processes.
- Ability to work independently and collaboratively, demonstrating initiative, accountability, and willingness to take direction from senior network or OT engineers.
- Willingness to travel up to 25% for onsite assessments, network troubleshooting, installation activities, or client support engagements.
Preferred Qualifications
- Hands-on knowledge of Cisco switches and firewalls; Fortinet device experience is a plus.
- Experience supporting OT or industrial networking environments, including exposure to SCADA, HMI, historian, or control system platforms (e.g., Ignition, Wonderware, GeoSCADA), with a focus on connectivity, network paths, and interface troubleshooting.
- Familiarity with scripting or automation tools such as PowerShell, Python, Bash, or SQL to support basic network administration, log analysis, or system monitoring tasks.
- Background or hands-on exposure to industrial sectors, such as energy, oil & gas, utilities, water/wastewater, or manufacturing—especially environments where IT and OT networks intersect.
- Basic understanding of industrial communication protocols, such as OPC UA/DA, Modbus TCP/IP, MQTT, or similar protocols commonly found in ICS connectivity and device communication.
- Exposure to cloud or hybrid architectures, including Azure, AWS, or cloud-based monitoring/management tools, or participation in system migration or modernization projects.
- Experience with secure remote access technologies, including VPN solutions, jump hosts, MFA tools, or remote connectivity methods used in industrial or segmented network environments.
- Working knowledge of virtualization and infrastructure technologies, such as VMware or Hyper-V, including snapshots, VM deployment basics, and concepts related to network segmentation, DMZs, or secure zone architecture within the Purdue Model.
Benefits
- 401(k)
- 401(k) matching
- Dental insurance
- Flexible schedule
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Parental leave
- Professional development assistance
- Vision insurance
Work Location: In person