OT Cybersecurity Engineer
- Utilize the tools to take inventory of the environment's hardware and software assets and assessing those assets for security vulnerabilities, obsolescence, and other risks.
- Work with the different departments to remediate and validate remediation of the vulnerabilities or identified issues
- Partner with other groups to review network architectures and determine if security best practices are being utilized.
- Work with vendors to ensure detailed diagrams, procedures, and plans are created and maintained for each deployment.
- Maintain and create documentation as needed
- Perform assessments against best practices and industry benchmarks
- Participate in the audit process
- Review enterprise controls to ensure the ICS/OT environment remains compliant and work with the Security team to track/remediate deficiencies.
- Partner with the Global Security Operations Center (GSOC) to ensure OT monitoring is conducted optimally.
- Represent the Cybersecurity team in meetings with the client's vendors and stakeholders.
- Maintain awareness of industry trends, threats, and tools used to support enterprise security.
- Perform other ad hoc duties to support the client's security goals. Job Requirements
- Ability to come into the office at least once a week.
- Bachelor's degree in Cybersecurity, Computer Science, Engineering, or related focused technical training or 4 additional years of engineering experience that may have been acquired in the military or public sectors.
- 3 years of experience performing security assessments in an OT environment.
- Strong understanding of cybersecurity frameworks for ICS/OT environments
- Good understanding of OT network communication protocols and industrial networking topologies.
- Familiarity with NIST (National Institute of Standards and Technology) Special Publication 800-61 Revision 2, Computer Security Incident Handling Guide.
- Familiarity with NIST (National Institute of Standards and Technology) Special Publication 800-82
- Extensive knowledge of internet protocols, firewalls, proxies, and intrusion detection/prevention systems.
- Familiarity/Knowledge of the Perdue Enterprise Reference Architecture (PERA)
- Certifications for SANS (SysAdmin, Audit, Network and Security) GIAC (Global Information Assurance Certification) Global Industrial Cyber Security Professional (GICSP), GIAC Response and Industrial Defense (GRID), Critical Infrastructure Protection are preferable.
- Certified SCADA Security Architect (CSSA) preferable
- Understanding of MITRE ATT&CKS for ICS or NERC CIP (North American Electric Reliability Corporation Critical Infrastructure Plan) frameworks
- Understanding of general cybersecurity frameworks (ISO IEC 27001/27002, ISO 15408, NIST Cybersecurity Framework (CSF), NIST SP800-53), and Guide to Industrial Control Systems (ICS) Security (NIST SP800-82)
- A solid understanding of industrial control systems (e.g., Distributed Control System (DCS), Programmable Logic Controller (PLCs), Supervisory Control and Data Acquisition (SCADA), etc.)
- Demonstrable understanding of project/program management techniques and methods
- Strong Microsoft Excel skills required
- Excellent written and verbal communication skills with transparent and timely communication
- Expected travel is less than 20% but may be higher during construction projects. May grow and evolve over time
- Provide 24/7 support. Ability to work a non-traditional schedule, including evenings, weekends, and holidays.
- Fluent in English (oral and written)
- Security Certifications such as ISC2 Certified Information Systems Security Professional (CISSP), CompTIA Security+, CompTIA Network + or ISACA Certified Information Security Manager (CISM)
- ISA/IEC 62443 Cybersecurity Certificates preferable
- EC Council Certified Ethical Hacker (CEH), or Formal IT Security/Network Certification such as SANS GIAC Certified Intrusion Analyst (GCIA), SANS GIAC Network Forensic Analyst (GNFA),
- Data Center experience is strongly preferred, but not required
- Experience with one or more of the following:
- Building Management Systems (BMS)
- Mobile
- Architectures including Windows or Linux server software and technologies
- HA and redundancy configurations
- Cloud and virtualization software and services
- Hyper scaling
Recommended Jobs
Full Stack Software Engineer
The Swift Group is a privately held, mission-driven and employee-focused services and solutions company headquartered in Reston, VA. Our capabilities include Software Development, Engineering & IT, …
Assistant Site Manager
Oldcastle® APG, a CRH Company, is North America’s leading provider of innovative outdoor living solutions that enable customers to Live Well Outside. The manufacturer’s portfolio of premier building …
Intern - Graphic Design
Overview: Explore your potential with Thompson Hospitality’s College Internship Program . Thompson Hospitality is excited to announce our 2026 Summer Internship Program, offering students an …
Summer Camp - Kitchen Staff
Do you enjoy cooking and want to make a difference in the lives of children and adults with disabilities? Join us this summer at Camp Easterseals Virginia (ESVA), as a Camp Kitchen Staff member, wh…
SIGINT SPO Technical Lead
Title: SIGINT SPO Technical Lead The selected candidate will have the aptitude to assess agile and SE processes, may lead projects for systems teamwork, have frequent client interactions, and…
Climbing Arborist
Climbing Arborist Location: Williamsburg, VA Salary: 24.50 - 28.00 The Climbing Arborist assist in the daily maintenance of Colonial Williamsburg trees and performs landsca…