W2 Cybersecurity OT security Engineer - 40% Travel

W2 Cybersecurity OT security Engineer - 40% Travel

Posted 3 days ago by APN Software Services, Inc

Negotiable
Undetermined
Remote
Remote

Summary: The role of W2 Cybersecurity OT Security Engineer involves supporting the delivery and implementation of Industrial Cybersecurity Services, with a focus on security assessments, network security controls, and system integrity services. The position requires significant travel to customer sites and entails a 40-hour work week with specific office hours. Candidates must possess a strong background in cybersecurity, particularly in operational technology (OT) environments. The role emphasizes customer-facing responsibilities and the production of high-quality deliverables.

Key Responsibilities:

  • Execute industrial/OT security assessments including asset inventory validation and actionable remediation plans.
  • Design and implement network security controls for industrial networks.
  • Support remote operations enablement by defining secure remote access patterns and operational runbooks.
  • Deliver system integrity services including endpoint protection rollout and vulnerability scanning coordination.
  • Produce customer-ready deliverables and contribute to standard playbooks/templates.

Key Skills:

  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or equivalent experience.
  • 5+ years of cybersecurity experience with 3+ years in OT/industrial environments.
  • Proven experience with ICS/OT architectures and security controls.
  • Familiarity with OT security frameworks/standards.
  • Hands-on firewall and segmentation experience.
  • DMZ design/implementation experience for industrial environments.
  • Endpoint protection deployment support and troubleshooting.
  • Vulnerability assessment lifecycle experience.
  • Strong customer-facing consulting skills.
  • Ability to work independently and manage priorities.

Salary (Rate): £61.50 hourly

City: undetermined

Country: undetermined

Working Arrangements: remote

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Please contact Abdul on "" OR email me at ""

Schedule: 40 hr work week. Mon Fri, office hours- Must be on from 8:00 to 4:00 EST time zone is ideal. (align to project/customer). Occasional off-hours support may be needed for patching/cutovers

Travel: 40% Travel needed, travel to customer sites as required. Driving license required as travel to sites is expected.

Job Description:

Contractor will support delivery and implementation across Industrial Cybersecurity Services Portfolios including:

  • Plant Security Services: Security Assessments, Industrial Security Consulting, Remote Industrial Operations Services (RIOpS)
  • Network Security Services: Industrial Next Generation Firewall, Industrial DMZ Infrastructure, Remote Platform SaaS (cRSP)
  • System Integrity Services: Endpoint Protection, Vulnerability Services (incl. Vilocify + PoC), Patch Management, Backup & Restore

Responsibilities (TBD, needs refinement):

  • Execute industrial/OT security assessments (site/remote) including asset inventory validation, risk findings, and actionable remediation plans aligned to customer environments (plant/line/cell, ICS/SCADA).
  • Design and implement network security controls: segmentation approach, Industrial DMZ patterns, firewall policy/ruleset development, and OT/IT integration hardening for industrial networks.
  • Support remote operations enablement (RIOpS / cRSP): define secure remote access patterns, operational runbooks, monitoring/incident handling procedures, and customer handover artifacts.
  • Deliver system integrity services: endpoint protection rollout support, vulnerability scanning coordination (Vilocify services + PoC support), patching strategy and execution planning, and backup/restore validation.
  • Produce customer-ready deliverables (assessment reports, architectures, implementation plans, as-builts, and SOPs) and contribute to standard Siemens playbooks/templates for repeatability.

Qualifications

  • Bachelor s degree in Cybersecurity, Computer Science, Engineering, or equivalent practical experience.
  • 5+ years cybersecurity experience with 3+ years in OT/industrial environments (manufacturing, utilities, energy, etc.).
  • Proven experience with ICS/OT architectures and security controls (segmentation, remote access, jump hosts, logging/monitoring).
  • Familiarity with common OT security frameworks/standards (e.g., IEC 62443 / NIST concepts) and translating them into practical controls.
  • Hands-on firewall and segmentation experience (policy design, NAT, VPN, routing, rule lifecycle, troubleshooting).
  • DMZ design/implementation experience for industrial environments.
  • Endpoint protection deployment support and troubleshooting.
  • Vulnerability assessment lifecycle (scan planning, validation, triage, remediation guidance, reporting); ability to support Vilocify-based engagements and PoCs.
  • Strong customer-facing consulting skills: requirements capture, clear documentation, executive-level readouts, and tight project coordination.
  • Ability to work independently, manage priorities, and collaborate across sales/delivery/engineering.

Nice to have (not required)

  • Relevant certifications (e.g., CISSP / GICSP / Security+ / vendor firewall certs).

Other comments (if any)

  • Contractor must be able to support multiple offerings across the Industrial Cybersecurity Services portfolio (assessment design implementation operationalization) with strong documentation quality and customer-facing delivery.

Please contact Abdul on "" OR email me at ""