Principal OT Cybersecurity – ICS Security Architect
Posted 1hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Principal OT cybersecurity architect leading federal critical-infrastructure modernization for Peraton. Evaluating ICS and enterprise security solutions, vendors, and requirements.
Responsibilities:
- Lead end-to-end solutions analysis for one or more modernization-program workstreams
- Elicit and validate requirements
- Produce System Requirements Specifications (SRS) with traceability to NERC CIP, FISMA, and CISA Zero Trust Architecture
- Conduct market research to identify candidate commercial products across identity and access controls, network monitoring and threat visibility, and inventory, configuration, and vulnerability management
- Draft Requests for Information (RFIs), manage vendor response windows, and lead technical engagement with bidders
- Assess vendor responses and product capabilities against requirements
- Author comparison reports and down-select recommendations
- Design lab test environments and author test plans
- Oversee hands-on product demonstrations and evaluations at customer and Peraton Labs facilities
- Author Alternative Solutions Analysis (ASA) documents
- Brief steering committees and executive decision-makers
- Facilitate multi-stakeholder workshops across OT and enterprise IT cybersecurity domains
- Work with customer engineering, operations, cybersecurity, and test-and-evaluation stakeholders, Peraton Labs engineers, and technical writers
Requirements:
- U.S. Citizenship
- Ability to obtain and maintain a Public Trust determination and PIV credential
- Bachelor's degree in Computer Science, Computer or Electrical Engineering, Cybersecurity, or a related technical discipline, and 12+ years of progressive systems architecture or cyber engineering experience; in lieu of a degree, 16 years of relevant experience will be considered
- Demonstrated systems-architecture experience across both operational technology (OT / ICS) and enterprise information technology (IT) security environments
- Direct experience in the electric-utility or power-grid domain
- Hands-on experience applying NERC CIP standards (CIP-002 through CIP-014) in a utility environment
- Proven record leading the full RFI and vendor-evaluation lifecycle
- Strong technical writing and executive-briefing skills
- Ability to travel domestically up to 25%, including routine trips to the Pacific Northwest
- Working familiarity with FISMA controls and CISA Zero Trust Architecture mappings
- Depth in one or more component domains: identity and access management; network detection and monitoring; packet capture and data diodes; cyber-asset and configuration management; or vulnerability and patch management for embedded devices
- Experience authoring alternatives analyses under a formal systems-lifecycle methodology
- Industry certifications such as GICSP, CISSP, GRID, CISA, or NERC-CIP-focused credentials
- Experience presenting to federal or utility executive steering committees
- Comfort operating under federal market-research guardrails
- Experience with privileged access management (PAM) solutions
- Experience with log and traffic monitoring systems supporting power protection, SCADA, and telecommunications environments
- Experience with configuration management systems for power protection, SCADA, and telecommunications environments
- Background check, PIV credential, and customer-required training must be completed prior to unescorted facility access
Benefits:
- Fully remote day-to-day
- Overtime eligibility may apply
- Shift differential may apply
- Discretionary bonus may apply
- Standard business hours
- Professional exposure to federal customers, utility stakeholders, vendor engagements, and executive steering committees



















