Senior OT ICS Penetration Tester and Red Team Specialist
Mahape, Navi Mumbai, Maharasht, IN
Atos is the Atos Group brand dedicated to AI-powered, secure, end-to-end digital services. Atos designs, develops, and operates critical digital environments that drive performance, resilience and sovereignty, helping public and private organizations worldwide retain control over their data and infrastructures, while meeting regulatory requirements.
With more than 54,000 employees serving over 4,500 clients across 54 countries, Atos helps modernize core IT systems, accelerate cloud and data transformation, strengthen cybersecurity, and deliver secure digital workplace environments to support its clients, its employees and society. Atos also provides consulting and advisory services through its Atos Amplify brand.
A trusted partner in operating complex and mission-critical environments, Atos supports organizations across highly regulated and sovereign contexts.
About Atos Group
Atos Group is a global leader in digital transformation with c. 56,000 employees and annual revenue of c. €7.2 billion (at the go-forward perimeter), operating in 54 countries under two brands - Atos for services and Eviden for products and systems. European number one in cybersecurity and a leader in cloud, Atos Group is committed to a secure and decarbonized future and provides tailored AI-powered, end-to-end solutions for all industries. Atos Group is listed on Euronext Paris.
Function: Cybersecurity – OT/ICS Offensive Security
Location: Bangalore, Pune or Mumbai | Hybrid, with travel to customer and industrial sites
Experience: 6–10 years GCM: 5
Role Overview We are seeking an experienced OT/ICS Penetration Tester and Red Team Specialist to conduct controlled security assessments, penetration testing, attack-path analysis and adversary-simulation exercises across industrial and critical-infrastructure environments. The role will focus on identifying credible attack paths across OT networks, ICS/SCADA systems, engineering workstations, HMIs, historians, remote-access infrastructure, industrial DMZs and IT/OT boundaries. All testing must be formally authorised, risk-assessed and performed using production-safe techniques. Testing of sensitive industrial systems will primarily be conducted through passive assessment, configuration review, laboratory simulation, cyber ranges, digital twins or approved maintenance windows. Key Responsibilities OT/ICS Penetration Testing • Plan and execute security assessments across OT and ICS environments spanning Purdue Levels 0–3. • Assess OT network architecture, segmentation, firewalls, industrial DMZs, jump servers, remote-access solutions and vendor-access paths. • Evaluate SCADA systems, HMIs, historians, engineering workstations, operator stations and supporting infrastructure. • Review PLC communication paths and industrial protocols using passive, simulated, laboratory-based or explicitly approved testing techniques. • Identify vulnerabilities, insecure configurations, weak authentication, excessive access, unsupported systems and insecure services. • Assess IT-to-OT and OT-to-IT attack paths, including identity, network and remote-access exposure. • Test supporting applications and infrastructure connected to OT, including web applications, fat clients, wireless networks, portable engineering devices and externally exposed systems. • Perform assessments of Windows, Linux, Active Directory and network infrastructure supporting OT operations. Red Teaming and Adversary Simulation • Design controlled adversary-simulation exercises based on realistic industrial threat scenarios. • Simulate compromised user, contractor, remote-access abuse, credential theft and insider-threat scenarios. • Assess privilege escalation, lateral movement and identity-based attack paths affecting OT environments. • Map identified attack techniques to MITRE ATT&CK for ICS and MITRE ATT&CK Enterprise. • Support purple-team exercises to validate whether existing security controls can detect simulated attack activity. • Evaluate the effectiveness of segmentation, identity controls, monitoring and incident-response procedures. Safety and Assessment Governance • Develop assessment plans, rules of engagement, risk assessments, testing boundaries and method-of-procedure documents. • Define stop conditions, rollback procedures, escalation paths and emergency contacts before commencing testing. • Coordinate testing with plant operations, OT engineering, safety teams, SOC teams and customer stakeholders. • Ensure testing does not disrupt process availability, safety systems, deterministic communications or production equipment. • Immediately stop or modify testing when unexpected operational behaviour or safety concerns are observed. • Maintain secure handling of credentials, configurations, packet captures and assessment evidence. Reporting and Remediation • Prepare clear technical and executive reports containing: o Assessment scope and methodology o Identified vulnerabilities and attack paths o Supporting technical evidence o Affected systems and assets o Operational and business impact o Risk ratings and prioritisation o Practical remediation recommendations • Present findings to plant teams, engineering teams, security leadership and customer stakeholders. • Facilitate remediation workshops and support the development of corrective-
Here at Atos, diversity and inclusion are embedded in our DNA. Read more about our commitment to a fair work environment for all.
Atos is a recognized leader in its industry across Environment, Social and Governance (ESG) criteria. Find out more on our CSR commitment.
Choose your future. Choose Atos.