Senior Cybersecurity Engineer - OT/SCADA
ON.energy - Houston, TX
Hiring: Senior Cybersecurity Engineer - OT/SCADA Company: ON.energy Location: Houston, TX Job Posted Time: 2026-09-16 18:17:29 Employment Type: Remote Target Skills & Keywords : Firmware, Linux, PKI, PLC, RHEL, SCADA, SIEM, Systems Engineering, TLS, Triton, VPN About the job Experience: •Battery energy storage, solar, wind, or DER. Especially site controller, EMS, and PCS/BMS integration. •NERC CIP program experience, or preparing OT evidence for utility and regulatory audits. •MITRE ATT&CK for ICS, and familiarity with known ICS threat activity (Industroyer, TRITON, PIPEDREAM, FrostyGoop). •Writing cybersecurity requirements into EPC, OEM, or integrator contracts and auditing delivery against them. •Medical, dental, and vision insurance Required Skills: •You own and operate: OT network monitoring and industrial IDS, centralized logging and detection content, the OT asset inventory, PKI, and the remote/vendor access platform. •You define and verify; others implement: hardening baselines, controller and gateway requirements, site network designs, backup and recovery standards, and the security requirements in procurement specs and site acceptance — with your sign-off on the evidence before a site is accepted. •Design IEC 62443-aligned zone and conduit architectures (Purdue Model) across site control, plant SCADA, and enterprise boundaries. •Specify and validate default-deny rulesets on industrial firewalls, DMZs, and unidirectional gateways between OT, DMZ, and business networks. •Interface directly with our OT network architect on the reference site network design, and drive it into EPC and integrator scopes of work. •Define the security of SCADA links to utility control centers, ISOs, and third-party dispatch platforms. •Own the passive monitoring and industrial IDS platform: design, configuration, and detection tuning for control-system behavior rather than generic IT signatures. •Own the OT asset inventory and centralized log collection from SCADA hosts, HMIs, controllers, and industrial network gear. Qualifications: •5–8 years in technical cybersecurity or control systems engineering, most of it in OT/ICS environments. •Proven experience securing SCADA and ICS in energy, utility, or heavy industrial settings with regards to live plants, not just labs. This role is centralized, but you need that field background for your requirements to survive contact with a real site. •A track record of getting security implemented through other teams, on technical credibility rather than direct control of the equipment. •Solid functional working knowledge of IEC 62443, the Purdue Model, and NIST SP 800-82r3, and the judgment to say what a control will cost in operational risk and propose the alternative. •Industrial networking: you can read a plant network drawing, reason about segmentation, and trace a dropped packet between an HMI and a PLC from a capture. •Centralized identity and directory services (Entra ID, AD/LDAPS, SSO), with the judgment to apply them in OT without creating an availability dependency on the corporate network. •Practical Linux and Windows administration, plus enough scripting to manage the security stack at fleet scale rather than site by site. •OT security platforms: Hands-on with a passive monitoring and asset discovery platform (Nozomi, Claroty, Dragos, Tenable OT, Forescout, Cisco Cyber Vision) or open-source equivalents (Zeek, Suricata, Wireshark, Wazuh), plus SIEM/log aggregation, PKI/CA tooling, and a remote access or PAM platform. •Protocols & networking: Modbus TCP/RTU, IEC 61850, OPC UA, with awareness of IEEE 2030.5 and SunSpec for DER; managed industrial switches and firewalls (Cisco, Fortinet, Palo Alto, Moxa, Tofino), VPN architectures, and data-diode gateways. •Also useful: identity provider and single sign-on (SSO) platform, such as Authentik, Zabbix or equivalent for OT infrastructure health, and a preference for tailoring open-source tooling over "black box" commercial platforms. Compensation: •Flexible work environment (work from home / hybrid options) •Competitive salary + annual performance-based bonus eligibility Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!