OT Cybersecurity Engineer

Zantech

$100K — $120K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10 years of relevant IT experience; 5 years in Operational Technology (OT) can combine with IT experience
  • Strong understanding of DLA, DoD, and Federal Information Assurance policies
  • Proficient in assessing compliance and conducting Security Test and Evaluation
  • Experience in developing cybersecurity standards and guides
  • Knowledgeable in conducting Risk Assessments for both unclassified and classified systems
  • Capability to manage COMSEC material according to DoD/DLA policies
  • Relevant certifications in cybersecurity, including DoD 8570/8140 IAT Level III and IASAE Level III.

Responsibilities

  • Analyze DLA Information Systems and infrastructure for compliance with cybersecurity policy
  • Review policies against system designs to identify non-compliance
  • Conduct Security Test and Evaluation and IA assessments
  • Assess impacts of proposed DoD policies on cybersecurity architecture
  • Develop standards and guides for IA/cybersecurity solutions
  • Perform Risk Assessments and document safeguarding measures
  • Handle COMSEC materials and maintain required security clearances

Benefits

  • Remote work opportunity available within a specified distance
  • Flexible engagement with multiple DLA locations as project needs arise
  • Involvement in a critical cybersecurity posture improvement project
  • Opportunity to work with both unclassified and classified systems
  • Potential for professional development through certifications and trainings
  • Work environment that mandates routine communication with technical teams for status updates.
Full Job Description
Zantech is looking for a talented OT Cybersecurity Engineer to contribute to the success of our upcoming Cyber Security Vulnerability Management project for a Remote role based out of one of the 7 DLA primary locations.

Personnel must periodically support meetings at HQ DLA (Fort Belvoir, VA) or other Washington, DC metropolitan area locations. Personnel must reside within 100 miles one-way and within a 2-hour commute of a dually-approved SIPRNet-accredited workspace within one of 7 DLA primary locations: DLA HQ in Fort Belvoir, Virginia; DLA Aviation in Richmond, Virginia; DLA Disposition Services in Battle Creek, Michigan; DLA Distribution in New Cumberland, Pennsylvania; DLA Land and Maritime in Columbus, Ohio;Huntsville, Alabama; and DLA Troop Support in Philadelphia, Pennsylvania.

The OT Cybersecurity Engineer will play a crucial role in providing:
  • Cybersecurity Web/App Vulnerability Management branch (Information System Security Engineer (ISSE) support)
  • Information Assurance Engineering Support (JETS IDIQ Task Area 6 - Cybersecurity Engineering Support)

The OT Cybersecurity Engineer performs a variety of routine project tasks applied to specialized cybersecurity problems. Tasks involve integration of electronic processes or methodologies to resolve total system problems, or technology problems as they relate to cybersecurity requirements. Analyzes information security requirements and applies analytical and systematic approaches to resolve problems of workflow, organization, and planning. Provides security engineering support for the planning, design, development, testing, demonstration, and integration of information systems.

Impact: This role directly supports the two objectives of the task order, improving the cybersecurity posture of all DLA activities and enforcing compliance with OMB, DoD, DLA, NIST, and other applicable cybersecurity policy across DLA IT, Cloud, and OT technologies, spanning both unclassified (NIPRNet) and classified (SIPRNet) systems.

Responsibilities include, but will not be limited to:
  • Provide analysis of existing and emerging DLA Information Systems, OT, and IT Infrastructure to assess compliance with DLA, DoD, and Federal IA policy, order, task, or regulation
  • Review existing and draft/proposed policy and changes against system design documentation and identify areas of non-compliance on NIPRNet and SIPRNet
  • Assist with or conduct Security Test and Evaluation and IA/cybersecurity assessment reviews
  • Review proposed and draft DoD policies and assess impact on DLA Cloud, OT, IT, and IA/cybersecurity architecture
  • Develop and document standards and guides for IA/cybersecurity solutions, including compliance, system security design, and assessments for Cloud, OT, and IT
  • Conduct and document Risk Assessments identifying risks, probability of occurrence, resulting impact, and mitigating safeguards for unclassified and classified systems, providing decision recommendations
  • Handle COMSEC material in accordance with DoD/DLA policy where required, including annual COMSEC training
  • Provide weekly status updates on all open assignments, tickets, and projects
  • Maintain regular, dually-approved access to an authorized SIPRNet location to compile and compose risk assessment and Operational Risk Assessment (ORA) data, ensuring proper marking, storage, and transmission of classified-level data compilations
  • Support Deliverables: Implementation Documentation; IA/Cybersecurity Assessment Reports; Risk Assessments, ISSE Designs and Reports; Risk Assessment/ISSE Decision Recommendations; Standard Operating Procedures; Weekly Status Updates; and related Task Order/Operational Risk Assessment working documents

Required Experience or Knowledge of the following technologies/functions:
  • Ten (10) years of relevant IT experience, plus five (5) years of relevant Operational Technology (OT) experience. Per Amendment 0001, the OT experience may run concurrently with the IT experience rather than being additive.
  • Skills Required:
    • Analyzing existing and emerging DLA information systems, OT, and IT infrastructure for compliance with DLA, DoD, and Federal Information Assurance policy
    • Reviewing existing and draft/proposed policy against system design documentation to identify areas of non-compliance, on both NIPRNet and SIPRNet
    • Assisting with or conducting Security Test and Evaluation and IA/cybersecurity assessment reviews
    • Assessing the impact of proposed DoD policy changes on DLA Cloud, OT, IT, and IA/cybersecurity architecture
    • Developing and documenting standards and guides for IA/cybersecurity solutions across Cloud, OT, and IT
    • Conducting and documenting Risk Assessments, sourcing real-time vulnerability and intelligence information through open-source and classified resources, for unclassified and classified systems
    • Familiarity with modern security solutions such as blockchain or related cryptographic research is relevant given current and anticipated technology under this task
    • Ability to handle COMSEC material in accordance with DoD/DLA procedures, including completion of annual COMSEC training, if required

Required Education/Certifications:
  • Education Required: Not specified
  • Education Preferred: Not specified
  • Certifications Required:
    • DoD 8570/8140 Baseline Certification: IAT Level III and IASAE Level III (IASAE III certification may be obtained within 6 months)
      • WS Certified Security - Specialty (AWS CS Specialty)
      • Microsoft Certified: Azure Security Engineer Associate (MC: Azure SEA), Exam AZ-500
      • Microsoft Certified: Azure Solutions Architect Expert (MC: Azure SAE), Exam AZ-305
      • GIAC Defensible Security Architecture (GDSA)
      • GIAC Security Operations Manager (GSOM)
      • CCNA - Cisco Certified Network Associate (Exam 200-301)
      • CCNP (current, unified track)
      • Red Hat Certified Engineer (RHCE)
      • Assured Compliance Assessment Solution (ACAS)
      • ISC2 CCSP - Certified Cloud Security Professional
    • Computing Environment (CE) certification: Microsoft Certified Solutions Associate or Expert, Cisco Certified Network Administrator, Microsoft Azure Security Technologies, Amazon Certified Security, or a CE designated by the COR
  • Certifications Preferred:
    • Certifications or documented experience in modern security solutions (e.g., blockchain or related cryptographic research)

Required Security Clearance:
  • US Citizenship and the ability to obtain and maintain an active Secret or higher clearance, per contract requirements.

Similar Jobs

More Jobs at Zantech

  • Project Manager
    $110K — $130K *
    Arlington, VA 22204 (Arlington County)
    Technical Services
    In-Person
  • Data Scientist
    $120K — $145K *
    Arlington, VA 22204 (Arlington County)
    Enterprise Technology
    In-Person
  • OT R&D Cybersecurity Engineer
    $108K — $130K *
    Columbus, OH 43230 (Franklin County)
    Information Technology
    In-Person
  • OT Cybersecurity Engineer
    $108K — $130K *
    Huntsville, AL 35810 (Madison County)
    Technical Services
    In-Person
  • OT Cybersecurity Engineer
    $100K — $120K *
    Battle Creek, MI 49015 (Calhoun County)
    Aerospace & Defense
    In-Person

More Aerospace & Defense Jobs

Find similar OT Cybersecurity Engineer jobs: