Engineer - OT Cyber Security

gevernova

New York (NY)

On-site

USD 140,000 - 180,000

Full time

8 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Gevernova is seeking an OT Cyber Security Engineer to design secure architectures for control systems, ensuring compliance with IEC 62443 and other standards across the product lifecycle. You will collaborate with Product Technical Leads, PMs, testing, and program teams to deliver secure, resilient solutions and mentor junior engineers.

The role requires deep expertise in industrial cybersecurity, vulnerability management, and networking, with hands-on experience in virtualization, servers, and

Qualifications

  • Bachelor's or Master's degree in Computer Science, Electronics, Communication, or a relevant engineering discipline.
  • 10+ years of experience in control systems and networking.
  • Certifications such as CCNA, CCIE, NNCE, or CISSP are an added advantage.

Responsibilities

  • Lead the design of secure network and communication architectures for control systems from concept through design and commissioning support, in line with IEC 62443 principles.
  • Provide cybersecurity guidance and risk-based advice throughout the product development lifecycle.
  • Support compliance with relevant industrial cybersecurity standards and frameworks, including CRA, NIS2, NERC CIP & IEC 62443.
  • Act as the key point of contact for networking and cybersecurity matters.
  • Plan and execute authorised penetration tests across systems, networks, applications, and infrastructure.
  • Identify, validate, and document security vulnerabilities and misconfigurations.
  • Assess the potential impact of identified weaknesses on confidentiality, integrity, and availability.
  • Develop clear technical findings, risk ratings, and remediation recommendations.
  • Collaborate with engineering teams to support vulnerability remediation.
  • Develop and define hardening guidelines for networking components.
  • Lead and mentor junior and graduate engineers, promoting knowledge sharing and professional development.

Education

Bachelor's or Master's degree in Computer Science, Electronics, Communication, or a relevant engineering discipline
10+ years of experience in control systems and networking
Vulnerability management
IEC 62443 knowledge (Parts 4-1, 4-2, 3-3, 2-4)
Strong presentation to stakeholders

Tools

VMware
Hyper‑V
Wireshark
Nozomi
Dragos
Windows Server
HTTPS, SNMP, SSH, SFTP, IPsec

Job description

Job Description Summary

We are seeking an OT Cyber Security Engineer to join the Automation & Controls New Product Introduction (NPI) organisation, playing a key role in the secure design and delivery of next-generation Automation & Controls products. This is an exciting opportunity to shape cyber-secure network architectures for control systems and ensure compliance with key cybersecurity standards and regulations - including CRA, NIS2, NERC CIP, and IEC 62443 - throughout the product development lifecycle.

You will work within a global organisation, collaborating closely with Product Technical Leads, Product Managers, testing teams, and Program Managers to deliver secure, resilient, and scalable solutions for new products and control systems. This role offers the opportunity to make a meaningful impact in a highly technical and innovative environment, contributing directly to product integrity, cybersecurity excellence, and global project success.

Job Description

Responsibilities

  • Lead the design of secure network and communication architectures for control systems from concept through design and commissioning support, in line with IEC 62443 principles.
  • Provide cybersecurity guidance and risk-based advice throughout the product development lifecycle.
  • Support compliance with relevant industrial cybersecurity standards and frameworks, including CRA, NIS2, NERC CIP & IEC 62443.
  • Act as the key point of contact for networking and cybersecurity matters.
  • Plan and execute authorised penetration tests across systems, networks, applications, and infrastructure.
  • Identify, validate, and document security vulnerabilities and misconfigurations.
  • Assess the potential impact of identified weaknesses on confidentiality, integrity, and availability.
  • Develop clear technical findings, risk ratings, and remediation recommendations.
  • Collaborate with engineering teams to support vulnerability remediation.
  • Develop and define hardening guidelines for networking components.
  • Lead and mentor junior and graduate engineers, promoting knowledge sharing and professional development.

Role Requirements

The ideal candidate will be able to:

  • Analyse and evaluate a range of cybersecurity and networking solutions, applying sound technical judgement.
  • Clearly present and justify solutions, analyses, and recommendations to stakeholders, customers, and technical audiences.
  • Design and build functional infrastructure from the ground up, including networking, virtualisation, and server operating system configuration.
  • Demonstrate strong working knowledge of IEC 62443, particularly Parts 4-1, 4-2, 3-3, and 2-4.
  • Apply proven experience in vulnerability management, including identification, assessment, and remediation.
  • Work effectively with virtualisation platforms such as VMware and Hyper‑V.
  • Understand industrial communication protocols (e.g., IEC 61850, OPC UA, Modbus TCP/IP) and use tools such as Wireshark for troubleshooting and diagnostics.
  • Possess solid knowledge of server operating systems (e.g., Windows Server) and secure communication protocols, including HTTPS, SNMP, SSH, SFTP, and IPsec.
  • Demonstrate hands‑on experience with intrusion detection systems such as Nozomi and Dragos.
  • Understand and implement backup and recovery solutions, endpoint protection, and anti‑malware controls.

Qualifications & Experience

  • Bachelor's or Master's degree in Computer Science, Electronics, Communication, or a relevant engineering discipline, with 10+ years of experience.
  • Strong understanding and very good working knowledge of control systems and networking technologies.
  • Certifications such as CCNA, CCIE, NNCE, or CISSP are an added advantage.
Additional Information

Relocation Assistance Provided: No

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. OT Network Engineer
Sr. OT Network Engineer

Evans & Chambers • Georgia

On-site
USD 90,000 - 120,000
OT Cybersecurity Engineer
OT Cybersecurity Engineer

Applied Control Engineering, Inc. • Baltimore (MD)

On-site
USD 90,000 - 120,000
Comprehensive benefits package
Opportunities for professional development
Prin Cybersecurity Specialist - Exempt
Prin Cybersecurity Specialist - Exempt

TALENT Software Services • Town of Texas (WI)

On-site
USD 95,000 - 120,000
OT Cyber Security Engineer: Secure Control Systems
OT Cyber Security Engineer: Secure Control Systems

gevernova • New York (NY)

On-site
USD 140,000 - 180,000
Senior Cybersecurity Engineer (OT/Operational Technology)
Senior Cybersecurity Engineer (OT/Operational Technology)

Strategic Staffing Solutions • Tampa (FL)

On-site
USD 85,000 - 140,000
Security Engineer – Operational Technology
Security Engineer – Operational Technology

TriCom Technical Services • Kansas City (KS)

On-site
USD 90,000 - 120,000
Medical/Dental Benefits
Paid time off
Paid Holidays
+1
Sr. OT Network Engineer
Sr. OT Network Engineer

Evans & Chambers Technology • Indian Head (MD)

On-site
USD 80,000 - 100,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Vivos Holdings, LLC • Smyrna (TN)

On-site
USD 130,000 - 180,000
OT/ICS Cybersecurity Engineer - USA - Remote
OT/ICS Cybersecurity Engineer - USA - Remote

BlockTXM Inc • United States

Remote
USD 120,000 - 180,000
Operational Technology Security Engineer
Operational Technology Security Engineer

Goldbelt, Inc. • New Cumberland

On-site
USD 90,000 - 120,000
Medical, dental, and vision insurance
401(k) plan with company matching
Paid time off
+1