Implement defense-in-depth segmentation aligned to the Purdue model and ISA/IEC 62443 zone-and-conduit design, VLANs and rulesets, micro segmentation, and virtual patching for legacy assets partnering with Network Engineering on switching, routing, firewalls, wireless, IIoT, edge, and WAN. Deploy, configure, and tune OT security platforms across manufacturing sites endpoint protection, inline IPS, asset discovery, secure remote access, media scanning kiosks, and PLC backup including rulesets, allowlists, exclusions, and detection tuning on production assets.