Skip to main content

From OT Security Engineer to Architect: What Changes Beyond the Title?

An architect vacancy can look familiar to a senior OT security engineer. It may mention the networks, security controls and plant relationships you already work with. The useful question is how far the decisions extend, who relies on them and what you would be expected to own after the design is approved.

Employers use these titles differently. NIST's NICE Framework separates work roles from job titles because a single job can combine several areas of work. When considering a move, ask for examples of the decisions the employer expects its architect to make.

A design needs to survive the next project

An engineer may work through the requirements for a connection at one site. An architect may also need to decide how similar connections should be handled across future projects, which assumptions the design depends on and where a different approach is justified. Both can require deep technical judgment. The scope and duration of the decision change.

Consider a fictional manufacturer adding remote supplier support at several plants. An architecture assignment might cover the access pattern, approval responsibilities, logging expectations, recovery dependencies and conditions that require a separate review. The site teams still need to implement it. The architect needs enough knowledge of their circumstances to produce something they can use.

In a hiring conversation, explain the alternatives you considered and why you chose one. Include who challenged it, what changed during review and what happened in implementation. A diagram becomes more convincing when you can describe the decisions behind it.

Exceptions become part of your work

A common design will encounter equipment, contracts and operating needs that do not fit neatly. The role may require you to assess the difference, document the remaining concern and recommend how to proceed. Ask who can approve an exception, who accepts the business risk and who follows up when its review date arrives.

You should be able to describe an exception without losing track of the original requirement. Perhaps a site needs an interim arrangement until a planned equipment change. Explain its boundaries, the people responsible and the evidence needed before it can be retired. That makes the design useful beyond the day it is presented.

You will need people who can act on the design

Find out how architecture decisions reach project teams and plant leadership. Who includes security requirements in procurement? Who reserves implementation time? Who owns the supporting infrastructure? A role can carry broad responsibility while depending on decisions held elsewhere. Understand those relationships before accepting the position.

Ask to hear about a recent disagreement between a project team and security. How was it resolved? What authority did the architect have? The answer can tell you more about the working arrangement than a reporting line. It also helps you judge whether the employer expects technical advice, design approval, program leadership or a combination.

Bring evidence that reaches beyond installation

Prepare a few examples that show how your work guided other people. You might have developed a repeatable pattern, written requirements used in procurement, reviewed designs across sites or resolved a recurring implementation problem. Use the examples you actually have and describe your own contribution accurately.

Show what you learned after implementation. Did the operating team need instructions the design omitted? Did monitoring reveal an assumption that was wrong? Did another site expose a limitation? Explaining how you improved the approach shows that you remain accountable to the people who have to operate it.

If you want that experience, ask for a defined design assignment with review from someone who already holds the responsibility. Own the requirements through review and handover, then stay involved long enough to see the result. That work will help you decide whether architecture is the kind of responsibility you want next.

Tell us which decisions you own today and the responsibilities you want to take on next. We can use that context when discussing a possible match.

Discuss your next OT role