Industrial Cybersecurity Expert
Cluj-Napoca - Romania
Job Summary
Founded in 2015 Nexttech has built a solid foundation in delivering comprehensive IT solutions tailored to meet diverse client needs. With expertise spanning five key industry sectorsBanking Energy Telecom Automotive and E-commerce & Logisticswe provide nearshore and onshore services designed to drive efficiency and support strategic growth.
Our team supports every phase of the Software Development Life Cycle (SDLC) from developing detailed roadmaps and resolving complex software challenges to ensuring quick time-to-market and optimized ROI.
Managed Services: End-to-end support for seamless IT operations.
Custom Software Development: Tailored solutions to address specific business challenges.
Team Augmentation: Enhance your in-house capabilities with specialized expertise.
Nearshoring Services: Collaborative solutions that offer the benefits of proximity and cultural alignment.
Dedicated Development Teams: Aligned teams committed to your projects long-term success.
Quality Assurance & Testing: Ensuring high-quality performance and reliability.
Consulting and Advisory Services: Expert insights to help navigate complex projects and decisions.
At Nexttech we take pride in our commitment to client success fostering trusted partnerships and delivering solutions that align with each clients unique goals and vision.
We are looking for anIndustrial Cybersecurity Expert to define analyze and manage cybersecurity requirements across industrial IT and OT systems products and projects.
In this role you will translate requirements from regulations industry standards and customer specifications into clear traceable and actionable cybersecurity requirements. You will help shape a unified requirements engineering approach support the implementation of cybersecurity processes and work closely with development engineering and project teams to ensure consistent adoption.
You will also support internal and external projects in meeting their cybersecurity and compliance obligations provide training across the organization and contribute to the resilience of critical infrastructure.
This role is ideal for someone with strong experience in cybersecurity requirements engineering OT or product security and enterprise process implementation who enjoys taking ownership of complex and emerging topics.
Main tech & standards: #IndustrialCybersecurity #OTSecurity #ProductSecurity #RequirementsEngineering #IEC62443 #CRA #NERCCIP #ISO27001 #Polarion #DOORS #MagicDraw
Specify review analyze and manage cybersecurity requirements for industrial IT and OT systems products and projects
Translate customer regulatory and industry requirements into clear and actionable technical requirements
Ensure end-to-end traceability of cybersecurity requirements throughout the project and product lifecycle
Review requirements for completeness consistency feasibility and compliance
Support engineering and development teams in understanding and implementing cybersecurity requirements
Maintain structured requirements documentation using appropriate requirements engineering tools
Contribute to the definition of a unified and holistic cybersecurity requirements engineering concept
Support the alignment of requirements engineering principles methods and workflows across teams
Implement the agreed requirements engineering approach within projects and organizational processes
Define practical templates guidelines and best practices for cybersecurity requirements management
Promote consistent requirement quality documentation and traceability across the organization
Continuously improve the requirements engineering methodology based on project experience and regulatory developments
Support the definition rollout and continuous improvement of cybersecurity processes and activities
Drive the practical adoption of cybersecurity processes across development engineering and project teams
Translate cybersecurity policies and governance requirements into operational procedures
Support teams in integrating cybersecurity activities into their existing development and project workflows
Identify process gaps and recommend practical sustainable improvements
Help ensure that cybersecurity processes are consistently applied throughout the organization
Develop and deliver training on cybersecurity requirements engineering
Train relevant departments on cybersecurity processes responsibilities and compliance expectations
Support developers engineers and project stakeholders in applying cybersecurity requirements in practice
Create guidance materials templates and supporting documentation
Promote cybersecurity awareness and knowledge sharing across multidisciplinary teams
Act as a point of contact for questions related to cybersecurity requirements and processes
Analyze applicable cybersecurity regulations standards and customer requirements
Translate regulatory and industry requirements into practical engineering and process activities
Support compliance with standards and regulations such as IEC 62443 the Cyber Resilience Act NERC CIP the EU Data Act the BDEW Whitepaper and ISO 27001
Ensure cybersecurity requirements and their implementation remain traceable and auditable
Support internal and external projects during compliance reviews and audits
Monitor regulatory developments and assess their impact on cybersecurity requirements and processes
Support internal and external projects in fulfilling their cybersecurity requirements
Collaborate closely with development engineering project management and cybersecurity teams
Align cybersecurity concepts and requirements with all affected stakeholders
Facilitate discussions and decisions related to cybersecurity requirements and process implementation
Step into newly emerging cybersecurity topics and help drive quick and effective resolutions
Work within an international team of cybersecurity specialists and contribute to global knowledge exchange
Bachelors or Masters degree in IT Security Computer Science Electrical Engineering with a focus on IT Security or a comparable qualification
Relevant professional experience in OT security industrial cybersecurity or product security
Proven experience in cybersecurity requirements engineering
Experience specifying reviewing analyzing and tracing technical or cybersecurity requirements
Hands-on experience with requirements engineering tools such as Polarion MagicDraw or IBM Engineering Requirements Management DOORS
Experience defining implementing and rolling out cybersecurity processes within an enterprise organization
Strong understanding of requirements traceability lifecycle management and compliance documentation
Familiarity with relevant regulations and standards such as IEC 62443 the Cyber Resilience Act NERC CIP the BDEW Whitepaper the EU Data Act and ISO 27001
Ability to translate complex regulatory and technical requirements into clear practical actions
Experience collaborating with development engineering and multidisciplinary project teams
Ability to develop and deliver training for technical and non-technical stakeholders
Familiarity with Agile methodologies such as Scrum and Kanban
Experience with iterative planning backlog management and working within Agile delivery environments
Strong analytical and structured way of working
Ability to take ownership of complex topics and drive them continuously and sustainably
Strong communication and stakeholder management skills
Proficiency in both German and English
High level of initiative adaptability and willingness to take on emerging cybersecurity challenges
Experience working within the energy utilities or critical infrastructure sectors
Experience with secure product development lifecycle processes
Familiarity with systems engineering and model-based systems engineering concepts
Experience supporting cybersecurity audits or regulatory assessments
Knowledge of OT and industrial control system architectures
Experience working in international and distributed teams
Relevant certifications in industrial cybersecurity product security or information security
Experience working with Jira Confluence or similar collaboration and backlog management tools
At Nexttech we dont rely on polished platitudes; instead we let our team members voices speak to the essence of who we are:
An organization that always listens to feedback from employees continuously improving based on input and suggestions.
A culture that encourages work-life balance and independence at work.
A place where genuine communication and respect thrive between all levels of the company.
An organization thats close to people where kindness and support are constants.
A culture that makes new members feel welcomed involved in day-to-day decisions and valued for their unique skill set from day one.
A team that promotes psychological safety and the confidence to speak your mind without fear.
We promise an environment where respect openness and recognition are at the core of your experience. Here youll find a collaborative and responsible team that values fun autonomy and flexibility. Youll face challenges that allow you to grow supported every step of the way by peers and leadership alike.
If you possess strong industrial cybersecurity and requirements engineering expertise a structured mindset a collaborative spirit and a proactive attitude along with resilience flexibility and a desire to support your teammates youll fit right in at Nexttech.