Operational Technology Security Engineer - Remote
Location
United States
Posted
42 days ago
Salary
0
Seniority
Mid Level
Job Description
Operational Technology Security Engineer - Remote
ESM
Enterprise Solutions and Management (ESM) is a rapidly growing government contractor that provides strategic IT services that meet mission needs for Defense and Federal customers. We are hiring an Operational Technology Security Engineer for an exciting remote opportunity. Job Description and Responsibilities Provides support on specialized information assurance challenges within operational technology (OT) environments by executing a range of routine project tasks. Integrates OT processes and methodologies with information systems to address complex system-wide and cybersecurity-related issues. Evaluates and analyzes information security requirements while applying structured, analytical approaches to improve workflow, organizational efficiency, and planning. Contributes security engineering expertise across the full system lifecycle, including planning, design, development, testing, demonstration, and integration of OT systems. While this is a remote position, the client stipulates that all candidates must live within 50 miles of one of the following: Battle Creek, MI Columbus, OH Dayton, OH Ft. Belvoir, VA New Cumberland, PA Ogden, UT Philadelphia, PA Richmond, VA Required Knowledge, Skills and Abilities (KSA) - Expertise in OT communication protocols (e.g., Modbus/TCP, EtherNet/IP, IEC 61850, DNP3, BACnet) and industrial networking - Strong understanding of OT environments, including SCADA, ICS, DCS, PLCs, HMIs, RTUs, and field devices - Knowledge of secure OT network architecture, including segmentation, firewalls, IDS/IPS, and monitoring solutions - Experience with secure remote access and maintenance practices for OT systems - Proficiency in OT cybersecurity frameworks and compliance standards (e.g., NIST CSF, ISA/IEC 62443, NERC CIP, DoD requirements) - Experience with vulnerability management, including assessments, scanning tools (e.g., ACAS, Nessus, Qualys), and POA&M tracking - Ability to perform OT risk assessments and implement risk-based mitigation strategies aligned with operational constraints - Experience with system hardening, patch management, configuration baselines, and change management processes - Capability to develop incident response plans, conduct forensic analysis, and deploy/tune OT security monitoring solutions - Strong analytical, reporting, and communication skills, including developing cybersecurity documentation, dashboards, and executive briefings Desired KSA - Be a positive, self-motivated, and proactive person with the ability to adapt to change and tolerate stressful situations - Candidate must communicate effectively with team members, team lead, management, and government customer - Must have the ability and desire to research and develop creative solutions to unique problems with minimal supervision Minimum Training, Education, and Certifications - Seven (7) years experience - IAT II or higher certification - ICS300, relevant operation technology or ICS certification - Forescout DLA Computing Environment Minimum Clearance - Secret Physical Requirements - Required to stand, walk and sit; communicate verbally both in person and by telephone; use hands to finger, handle or feel objects or controls; reach with hands and arms. Specific vision abilities required by this job include close vision, distance vision, depth perception, color vision and the ability to adjust focus. - Physical demands associated with this position include extensive walking (including stairs) throughout offices and between buildings. May require use of public transportation, personal or Government vehicle to drive to local and/or remote office locations Additional Requirements - Other duties as assigned ESM provides equal employment opportunity to all individuals regardless of race, color, creed, religion, gender, age, sexual orientation, national origin or ancestry, disability, genetic information, veteran status, gender identification or any other characteristic protected by state, federal or local law.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Develop open-ended questions and answers based on hypothetical cyber incident scenarios to evaluate test subjects, focusing on coherence, justification, and technical soundness.
• Articulate Cobalt’s product vision and roadmap to technical and executive stakeholders. • Translate complex technical capabilities into high-level business value and ROI for customers and prospects. • Serve as the executive sponsor on high-value enterprise deals, building peer-to-peer relationships with prospect CISOs to overcome technical and strategic objections. • Advise enterprise customers on integrating Cobalt’s findings into their security program and DevSecOps workflows. • Partner with Sales Enablement to train our go to market team on the 'CISO Mindset' and how to sell Cobalt’s unique value proposition. Create appropriate content and training materials. • Act as a trusted advisor to enterprise customers, helping them evolve from periodic compliance driven testing to continuous, attacker informed security through the Cobalt Offensive Security Platform. • Act as a spokesperson for Cobalt at conferences (RSAC, Black Hat, OWASP) and in top-tier media outlets. • Work with marketing to author whitepapers, blogs, and research reports that utilize Cobalt’s unique dataset and expertise • Host executive roundtables to foster a community of forward-thinking security leaders. • Act as a 'Voice of the Customer' back to our Product and Engineering teams, ensuring our roadmap aligns with the evolving customer needs • Bring back feedback from the field on new product/feature ideas to product management.
Cybersecurity Assessment and Authorization SME
TekSynapTekSynap, formerly known as Synaptek, is a privately held, ISO-certified IT company offering solutions and services to meet the business technology needs of local, state, and feder
Responsibilities & Qualifications RESPONSIBILITIES - Serve as a Cybersecurity Subject Matter Expert (SME) for Assessment and Authorization (A&A) activities supporting Department of Defense (DoD) information systems. - Support the implementation and execution of the Risk Management Framework (RMF) for the authorization of information systems. - Conduct security control assessments and evaluate compliance with NIST SP 800-53 security controls and DoD cybersecurity requirements. - Provide technical guidance and subject matter expertise for systems undergoing the authorization process. - Analyze vulnerabilities and determine applicable severity values for identified security control deficiencies. - Assess the potential impact of vulnerabilities on a system’s current or future authorization status. - Support authorization package development and review to ensure completeness, accuracy, and compliance with DoD cybersecurity policies. - Evaluate cybersecurity posture across complex IT infrastructures consisting of multiple enclaves, AIS applications, and outsourced IT processes. - Provide cybersecurity expertise related to emerging technologies including Cloud environments, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) infrastructures. - Brief senior management and stakeholders on RMF progress, risk posture, and authorization status of information systems. - Collaborate with system owners, cybersecurity teams, and government representatives to ensure successful completion of A&A activities. - Ensure cybersecurity documentation, procedures, and processes align with DoD policies and enterprise security standards. REQUIRED QUALIFICATIONS - Top Secret - IT-I Critical security clearance, Tier 5 investigation. - Active CSSP Analyst Certification - Five (5) years of relevant experience supporting Risk Management Framework (RMF) and NIST Assessment and Authorization (A&A) processes. - Experience supporting DoD cybersecurity programs and authorization processes. - Experience assessing security controls and conducting authorization reviews for large, complex enterprise environments. - Strong understanding of DoD cybersecurity policies, procedures, and authorization requirements. - Knowledge of cybersecurity considerations for Cloud technologies, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) environments. Overview We are seeking a Cybersecurity Assessment and Authorization SME to join our team! TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at www.TekSynap.com. Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Additional Job Information WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. - Locations: Remote - Type of environment: Remote - Noise level: Medium - Work schedule: Schedule is day shift Monday – Friday. May be requested to work evenings and weekends to meet program and contract needs. - Amount of Travel: Less than 10% List of Approved States: AL, AK, AZ, AR, CT, DE, FL, GA, ID, IN, IO, KS, KY, LA, ME, MI, MS, MO, MT, NE, NV, NH, NM, NC, ND, OH, OK, OR, PA, RI, SC, SD, TN, TX, UT, VA, WV, WI, WY. PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to grip, handle, or feel; reach with hands and arms; and talk or hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE - U.S. Citizen - Top Secret - IT-I Critical security clearance, Tier 5 investigation. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, sexual orientation, gender identity, protected veteran status, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as “protected status”). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment. TekSynap is committed to ensuring that our online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact hr@teksynap.com for assistance.remote #telework #linkedin #LI-Remote (turn font to white)
• Lead the rebuild of security policies and align with best practices • Implement security controls across business units • Manage risk registers and compliance documentation • Oversee PCI DSS certification process and maintain ongoing compliance


