Senior OT/ICS Cybersecurity Engineer

@ Neshent Technologies
Neshent Technologiesneshenttechnologies.com

Senior OT/ICS Cybersecurity Engineer

Washington, Washington, D.C.
Posted today

About the job

Our company specializes in cybersecurity solutions for critical infrastructure. This role focuses on securing OT, ICS, and SCADA systems through design, deployment, and threat management in an Agile environment.

Requirements

  • 7+ years cybersecurity experience
  • Hands-on OT/industrial protocols
  • Knowledge of OT network architecture
  • Experience with security platforms
  • Agile/Scrum/Kanban experience

Qualifications

  • Strong analytical skills
  • Problem-solving abilities
  • Effective communication skills
  • Team collaboration focus
  • Relevant cybersecurity certifications optional

Full job description

We are seeking a Senior OT Cybersecurity Engineer to design, implement, and maintain cybersecurity solutions across complex Operational Technology (OT), Industrial Control Systems (ICS), and SCADA environments. The role focuses on strengthening network visibility, asset discovery, segmentation, threat monitoring, vulnerability management, and security controls for critical infrastructure environments.

The engineer will work within an Agile/SAFe delivery environment and collaborate with cybersecurity, network, infrastructure, and operations teams to develop secure architectures and protect critical OT environments from emerging cyber threats.

Roles and Responsibilities
  • Design, deploy, and manage cybersecurity controls across OT, ICS, SCADA, and industrial network environments.

  • Implement network segmentation and boundary security between enterprise IT and OT networks using the Purdue Model.

  • Configure and manage OT security platforms for asset discovery, threat monitoring, vulnerability management, and risk assessment, including Claroty, Nozomi Networks, Dragos, and Tenable.ot.

  • Assess OT network architectures, firewalls, communication paths, and security controls to identify and mitigate cybersecurity risks.

  • Support secure remote access, centralized patching, vulnerability remediation, and incident response processes for critical OT devices.

  • Conduct technical cybersecurity risk assessments and support compliance with NIST SP 800-82, IEC 62443, and applicable TSA security requirements.

  • Collaborate within SAFe, Scrum, or Kanban teams, participating in sprint planning, backlog refinement, daily standups, and other Agile ceremonies.

  • Translate cybersecurity requirements into actionable user stories, technical tasks, and security deliverables.

  • Work closely with cross-functional teams to develop and maintain OT security architectures, standards, and procedures.

  • Monitor emerging OT cybersecurity threats and recommend improvements to security controls and operational processes.

Required Qualifications
  • 7+ years of cybersecurity experience, with significant experience in OT, ICS, SCADA, or critical infrastructure environments.

  • Hands-on experience with OT/industrial protocols such as Modbus, DNP3, EtherNet/IP, and PROFINET.

  • Strong knowledge of OT network architecture, firewalls, network segmentation, and industrial cybersecurity controls.

  • Experience implementing the Purdue Enterprise Reference Architecture/Model for OT network segmentation.

  • Hands-on experience with one or more OT security platforms such as Claroty, Nozomi Networks, Dragos, or Tenable.ot.

  • Strong understanding of OT asset discovery, vulnerability management, threat detection, and incident response.

  • Experience working in SAFe Agile, Scrum, or Kanban environments.

  • Knowledge of NIST SP 800-82 and IEC 62443 cybersecurity frameworks and standards.

  • Strong analytical, problem-solving, communication, and collaboration skills.

Preferred Qualifications
  • Certifications such as GICSP, GRID, CISSP, or CISM.

  • Experience securing critical infrastructure, transportation, utilities, energy, manufacturing, or other industrial environments.

  • Experience developing OT cybersecurity policies, standards, procedures, and incident response playbooks.

  • Ability to communicate complex cybersecurity requirements to both technical and non-technical stakeholders.

Show full description