Operational Technology (OT) Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Operational Technology (OT) Security Engineer (Cybersecurity): Supporting information assurance for OT systems and integrating OT processes with IT systems with an accent on risk mitigation and cybersecurity compliance. Focus on developing cybersecurity artifacts, managing POA&M entries, and implementing OT-specific incident response plans.
Location: Government site and/or off-site. Must have active DoD Secret clearance (IT-II / Tier 3 eligible).
Company
A trusted government contractor supporting Department of Defense customers.
What you will do
- Manage POA&M entries, tracking findings, remediation, and milestones.
- Develop cybersecurity artifacts including STIGs, TCGs, IAVMs, and RMF documentation.
- Generate audit-ready reports on vulnerabilities, compliance, and risk.
- Build automated workflows for remediation, compliance, and reporting.
- Implement OT-specific incident response plans and risk-based mitigation strategies.
- Maintain current knowledge of emerging OT threats and best practices.
Requirements
- 7+ years of cybersecurity policy experience.
- Active DoD Secret clearance (IT-II / Tier 3 eligible).
- Experience with OT protocols (Modbus, EtherNet/IP, IEC 61850, ICCP, DNP3, BACnet).
- Knowledge of OT systems (SCADA, ICS, DCS, PLCs, HMIs, RTUs).
- Familiarity with NIST CSF, ISA/IEC 62443, and NERC CIP frameworks.
- Experience with vulnerability assessment tools such as ACAS, Nessus, Qualys, and Forescout.
Nice to have
- ICS300 or equivalent OT/ICS training.
- DoD 8570 IAT Level II (current) or DoD 8140E.
- Forescout certification.
Culture & Benefits
- Medical, dental, and vision insurance.
- 401(k) plan with employer match.
- Paid holidays and PTO (sick/vacation).
- Commuter benefits and Employee Assistance Program (EAP).
- Educational reimbursement and Pet Insurance.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →