OT Cybersecurity Engineer

Zantech

$108K — $130K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10 years of IT experience, including 5 years in Operational Technology (OT).
  • Proficient in analyzing compliance with DLA, DoD, and Federal IA policies.
  • Solid understanding of cybersecurity assessment and policy review.
  • Experience with Security Test and Evaluation for cybersecurity risk management.
  • Knowledge of developing cybersecurity standards and guides for diverse technology environments.
  • Familiarity with handling COMSEC material according to DoD/DLA guidelines.
  • Certifications: DoD 8570/8140 Level III for IAT and IASAE, relevant computing environment certifications.

Responsibilities

  • Analyze existing DLA information systems and infrastructure for compliance.
  • Review and assess compliance of policy against system design documentation.
  • Conduct Security Test and Evaluation and cybersecurity assessment reviews.
  • Evaluate the impact of proposed DoD policies on cybersecurity architecture.
  • Develop and document cybersecurity standards and guides.
  • Perform and document Risk Assessments for classified and unclassified systems.
  • Maintain access to SIPRNet locations for risk assessment documentation.

Benefits

  • Remote work flexibility with periodic required meetings in the DC area.
  • Opportunities for professional development through required cybersecurity training.
  • Engagement in mission-critical projects enhancing national security.
  • Collaboration with a diverse team of cybersecurity professionals.
  • Access to advanced tools and technologies in the cybersecurity field.
Full Job Description
Zantech is looking for a talented OT Cybersecurity Engineer to contribute to the success of our upcoming Cyber Security Vulnerability Management project for a Remote role based out of one of the 7 DLA primary locations.

Personnel must periodically support meetings at HQ DLA (Fort Belvoir, VA) or other Washington, DC metropolitan area locations. Personnel must reside within 100 miles one-way and within a 2-hour commute of a dually-approved SIPRNet-accredited workspace within one of 7 DLA primary locations: DLA HQ in Fort Belvoir, Virginia; DLA Aviation in Richmond, Virginia; DLA Disposition Services in Battle Creek, Michigan; DLA Distribution in New Cumberland, Pennsylvania; DLA Land and Maritime in Columbus, Ohio; Huntsville, Alabama; and DLA Troop Support in Philadelphia, Pennsylvania.

The OT Cybersecurity Engineer will play a crucial role in providing:
  • Cybersecurity Web/App Vulnerability Management branch (Information System Security Engineer (ISSE) support)
  • Information Assurance Engineering Support (JETS IDIQ Task Area 6 - Cybersecurity Engineering Support)

The OT Cybersecurity Engineer performs a variety of routine project tasks applied to specialized cybersecurity problems. Tasks involve integration of electronic processes or methodologies to resolve total system problems, or technology problems as they relate to cybersecurity requirements. Analyzes information security requirements and applies analytical and systematic approaches to resolve problems of workflow, organization, and planning. Provides security engineering support for the planning, design, development, testing, demonstration, and integration of information systems.

Impact: This role directly supports the two objectives of the task order, improving the cybersecurity posture of all DLA activities and enforcing compliance with OMB, DoD, DLA, NIST, and other applicable cybersecurity policy across DLA IT, Cloud, and OT technologies, spanning both unclassified (NIPRNet) and classified (SIPRNet) systems.

Responsibilities include, but will not be limited to:
  • Provide analysis of existing and emerging DLA Information Systems, OT, and IT Infrastructure to assess compliance with DLA, DoD, and Federal IA policy, order, task, or regulation
  • Review existing and draft/proposed policy and changes against system design documentation and identify areas of non-compliance on NIPRNet and SIPRNet
  • Assist with or conduct Security Test and Evaluation and IA/cybersecurity assessment reviews
  • Review proposed and draft DoD policies and assess impact on DLA Cloud, OT, IT, and IA/cybersecurity architecture
  • Develop and document standards and guides for IA/cybersecurity solutions, including compliance, system security design, and assessments for Cloud, OT, and IT
  • Conduct and document Risk Assessments identifying risks, probability of occurrence, resulting impact, and mitigating safeguards for unclassified and classified systems, providing decision recommendations
  • Handle COMSEC material in accordance with DoD/DLA policy where required, including annual COMSEC training
  • Provide weekly status updates on all open assignments, tickets, and projects
  • Maintain regular, dually-approved access to an authorized SIPRNet location to compile and compose risk assessment and Operational Risk Assessment (ORA) data, ensuring proper marking, storage, and transmission of classified-level data compilations
  • Support Deliverables: Implementation Documentation; IA/Cybersecurity Assessment Reports; Risk Assessments, ISSE Designs and Reports; Risk Assessment/ISSE Decision Recommendations; Standard Operating Procedures; Weekly Status Updates; and related Task Order/Operational Risk Assessment working documents

Required Experience or Knowledge of the following technologies/functions:
  • Ten (10) years of relevant IT experience, plus five (5) years of relevant Operational Technology (OT) experience. Per Amendment 0001, the OT experience may run concurrently with the IT experience rather than being additive.
  • Skills Required:
    • Analyzing existing and emerging DLA information systems, OT, and IT infrastructure for compliance with DLA, DoD, and Federal Information Assurance policy
    • Reviewing existing and draft/proposed policy against system design documentation to identify areas of non-compliance, on both NIPRNet and SIPRNet
    • Assisting with or conducting Security Test and Evaluation and IA/cybersecurity assessment reviews
    • Assessing the impact of proposed DoD policy changes on DLA Cloud, OT, IT, and IA/cybersecurity architecture
    • Developing and documenting standards and guides for IA/cybersecurity solutions across Cloud, OT, and IT
    • Conducting and documenting Risk Assessments, sourcing real-time vulnerability and intelligence information through open-source and classified resources, for unclassified and classified systems
    • Familiarity with modern security solutions such as blockchain or related cryptographic research is relevant given current and anticipated technology under this task
    • Ability to handle COMSEC material in accordance with DoD/DLA procedures, including completion of annual COMSEC training, if required

Required Education/Certifications:
  • Education Required: Not specified
  • Education Preferred: Not specified
  • Certifications Required:
    • DoD 8570/8140 Baseline Certification: IAT Level III and IASAE Level III (IASAE III certification may be obtained within 6 months)
      • WS Certified Security - Specialty (AWS CS Specialty)
      • Microsoft Certified: Azure Security Engineer Associate (MC: Azure SEA), Exam AZ-500
      • Microsoft Certified: Azure Solutions Architect Expert (MC: Azure SAE), Exam AZ-305
      • GIAC Defensible Security Architecture (GDSA)
      • GIAC Security Operations Manager (GSOM)
      • CCNA - Cisco Certified Network Associate (Exam 200-301)
      • CCNP (current, unified track)
      • Red Hat Certified Engineer (RHCE)
      • Assured Compliance Assessment Solution (ACAS)
      • ISC2 CCSP - Certified Cloud Security Professional
    • Computing Environment (CE) certification: Microsoft Certified Solutions Associate or Expert, Cisco Certified Network Administrator, Microsoft Azure Security Technologies, Amazon Certified Security, or a CE designated by the COR
  • Certifications Preferred:
    • Certifications or documented experience in modern security solutions (e.g., blockchain or related cryptographic research)

Required Security Clearance:
  • US Citizenship and the ability to obtain and maintain an active Secret or higher clearance, per contract requirements.

Similar Jobs

More Jobs at Zantech

More Aerospace & Defense Jobs

Find similar OT Cybersecurity Engineer jobs: