Rodeo
Get started

SGN

OT Vulnerability Analyst

Portsmouth
£53.8k – £64.6k/yr
Posted about 21 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

OT Vulnerability Analyst

Walton Park
£53.8k - £64.6k per annum (dependent on skills and qualifications)
Full-time | Hybrid

Joint-contribution pension from 6% (12% total) – Enhanced maternity & family leave – Life assurance – HolidayPlus – Virtual GP & Employee Assistance Programme plus retail and leisure discounts & many more.

REQ5914


We are looking for an experienced OT Vulnerability Analyst to ensure that OT vulnerabilities are identified by cyber tools, assessments and audits are assessed, prioritized, and risk managed appropriately and in line with policies. You will also be responsible for providing relevant technical/nontechnical security and providing reports to the vulnerability manager.


We deliver safety, warmth, and comfort to homes and businesses. Every role, whether in the office or on the front line, plays a key part in this mission. Here’s how you will contribute…

  • Provide cyber security assurance activities by ensuring implemented solutions are a replica of agreed and approved architecture definition documents
  • Where required, propose solutions and coordinate delivery of mitigating actions to ensure risk levels are aligned with risk appetite.
  • Work alongside and coordinate our third-party vendors including ‘managed security services provider’ (MSSP), penetration testers, attack path mapping and SOC operators including following up remediation work and reports
  • Work with the technical security and assurance team to help deliver new security tooling.
  • Be a Security touchpoint for Project Business Analysts and Project Management and provide project with security consultations, supporting OT Security projects within the Cyber programme
  • Security Architecture and Design- Review both high/low level architecture definition documents for compliance against security policies, standards and regulatory requirements pertinent to OT environments
  • Attend relevant Architecture Review Board and Technical Design Authority meetings providing sign-off to designs created to deliver technical solutions into the OT environment
  • Produce in-flight project functional and non-functional security requirements and embed into existing processes.
  • Post-implementation / pre-go live auditing of initial requirements for Security OT projects, checking agreed design proposals matched against delivered solutions.
  • Operate collaboratively with the IT/OT Security Leads and the wider Corporate IT team to deliver the required solutions.
  • Configure vulnerabilities management tools to ensure security vulnerabilities are identified across the SGN IT and OT estate.
  • Triage, assess and prioritize identified security vulnerabilities, ensure mitigating controls are identified and implemented where necessary,
  • Track remediation, risks, and exceptions and provide the Security Assurance function with vulnerability metrics and reports which include a view of outstanding vulnerabilities, plans for remediation, applied exceptions and security risks.
  • Support continued service improvements initiatives.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.


What you will need

  • Must have 2 years’ cyber security experience within an OT environment with strong OT / ICS knowledge about products, architectures and workflows.
  • Must have proven expertise in three of the following security domain areas, Vulnerability Assessment and Management, Security Risk and Compliance, Security Architecture, Endpoint Protection, Network Security, and Security Engineering
  • Good understanding and practical experience of Cyber Security Frameworks and standards such as NCSC security principles, NIST Framework, ISO 27001, ISO27005, IEC62443 etc.
  • Good understanding of Cyber Assurance Framework and experience with working with Regulators and providing compliance updates for OT environment
  • Knowledge of the Purdue Model and experience of application of network segmentation to OT systems to bolster the cybersecurity
  • Role will require Security Clearance

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Not sure you meet every requirement?

Research shows some people – particularly women and those from underrepresented backgrounds – may hesitate to apply unless they meet every criteria. At SGN, we value diverse backgrounds, experiences and perspectives.

If this role interests you but you’re not sure you tick every box, we’d still love to hear from you. You might be just who we’re looking for – now or in the future.


Why SGN?

SGN leads pioneering research and development for a net-zero energy system. Our innovative technologies are transforming the gas industry while keeping people safe and warm. We are an award-winning employer, including CCA Gold Awards for Great Places to Work and Inclusivity and Accessibility, and a proud Gold member of the Armed Forces Covenant.


About us | Benefits | Diversity and inclusion

If you require any accommodations or support during the application process, reach out to us. We're here to help ensure an inclusive and accessible experience for everyone.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

OT Vulnerability Management
Cyber Security Assurance
Risk Management
Security Architecture
ICS Security
Network Segmentation
Vulnerability Assessment
Security Compliance
Endpoint Protection
Network Security
Security Engineering
NIST Framework
ISO 27001
IEC 62443
Purdue Model
Security Auditing

Location

Portsmouth, England, United Kingdom

Sign up to applySee more jobs like this