1 день назад
Senior Cybersecurity Engineer (m/f/d)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cybersecurity Engineer (OT/BESS): Protecting utility-scale battery energy storage systems and operational technology environments through cybersecurity assessments, vulnerability remediation, monitoring, and secure network architecture with an accent on IEC 62443, NIS2, Linux security, and industrial protocols. Focus on designing segmented OT networks, coordinating threat modeling and incident response, and integrating cybersecurity controls across the full project lifecycle.
Location: Germany, Erlangen
Company
delivers utility-scale battery energy storage systems and optimization software for renewable energy and power grids.
What you will do
- Assess energy storage systems against IEC 62443, NIS2, the EU Cyber Resilience Act, ISO 27001, customer requirements, and applicable regulations.
- Support cybersecurity across system design, deployment, commissioning, operation, and maintenance.
- Coordinate vulnerability assessments, remediation, patch management, system hardening, and security baseline validation for OT and Linux-based systems.
- Develop and maintain monitoring capabilities including SIEM, endpoint monitoring, vulnerability scanning, logging, alerting, and security dashboards.
- Conduct threat modeling, risk assessments, penetration testing support, security architecture reviews, and incident response activities.
- Improve OT network security through segmentation, firewalls, VPNs, secure remote access, identity and access management, and Zero Trust principles.
Requirements
- Bachelor’s or Master’s degree in cybersecurity, computer science, computer engineering, electrical engineering, or a related discipline, or equivalent professional experience.
- 5+ years of cybersecurity experience, preferably in ICS, OT, energy, utilities, or critical infrastructure.
- Strong knowledge of IEC 62443, especially standards 2-1, 3-2, 3-3, and 4-2, plus familiarity with NIS2 and the EU Cyber Resilience Act.
- Hands-on experience with vulnerability management, patch management, hardening, risk assessments, threat modeling, security monitoring, and Linux administration.
- Strong networking knowledge covering TCP/IP, routing, switching, VLANs, firewalls, VPNs, DNS, NTP, segmentation, and secure remote access; understanding of Modbus TCP, DNP3, IEC 61850, MQTT, and OPC UA.
- Experience with security tools, scripting or automation using Python, Bash, Ansible, or similar technologies, and collaboration with customers and engineering teams.
Nice to have
- Experience with BESS, renewable energy, utilities, power generation, or other critical infrastructure.
- Experience with IEC 62443 Security Levels, Zones and Conduits, and OT monitoring platforms such as Wazuh, Dragos, or Splunk.
- Experience with Nessus, Qualys, OpenVAS, Nmap, Docker, VMware, AWS, infrastructure automation, SBOM, CVE management, or secure software development.
- Cybersecurity or networking certifications such as CISSP, GICSP, GIAC, CISM, Security+, CCNA, or CCNP.
Culture & Benefits
- Collaborative work with customers, suppliers, certification laboratories, and international engineering teams across Europe.
- Culture focused on openness, active listening, diverse perspectives, customer value, innovation, and ownership.
- Opportunity to contribute to sustainable energy storage and grid resilience solutions.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →