Principal OT Cybersecurity – ICS Security Architect

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Principal OT cybersecurity architect leading federal critical-infrastructure modernization for Peraton. Evaluating ICS and enterprise security solutions, vendors, and requirements.

Responsibilities:

  • Lead end-to-end solutions analysis for one or more modernization-program workstreams
  • Elicit and validate requirements
  • Produce System Requirements Specifications (SRS) with traceability to NERC CIP, FISMA, and CISA Zero Trust Architecture
  • Conduct market research to identify candidate commercial products across identity and access controls, network monitoring and threat visibility, and inventory, configuration, and vulnerability management
  • Draft Requests for Information (RFIs), manage vendor response windows, and lead technical engagement with bidders
  • Assess vendor responses and product capabilities against requirements
  • Author comparison reports and down-select recommendations
  • Design lab test environments and author test plans
  • Oversee hands-on product demonstrations and evaluations at customer and Peraton Labs facilities
  • Author Alternative Solutions Analysis (ASA) documents
  • Brief steering committees and executive decision-makers
  • Facilitate multi-stakeholder workshops across OT and enterprise IT cybersecurity domains
  • Work with customer engineering, operations, cybersecurity, and test-and-evaluation stakeholders, Peraton Labs engineers, and technical writers

Requirements:

  • U.S. Citizenship
  • Ability to obtain and maintain a Public Trust determination and PIV credential
  • Bachelor's degree in Computer Science, Computer or Electrical Engineering, Cybersecurity, or a related technical discipline, and 12+ years of progressive systems architecture or cyber engineering experience; in lieu of a degree, 16 years of relevant experience will be considered
  • Demonstrated systems-architecture experience across both operational technology (OT / ICS) and enterprise information technology (IT) security environments
  • Direct experience in the electric-utility or power-grid domain
  • Hands-on experience applying NERC CIP standards (CIP-002 through CIP-014) in a utility environment
  • Proven record leading the full RFI and vendor-evaluation lifecycle
  • Strong technical writing and executive-briefing skills
  • Ability to travel domestically up to 25%, including routine trips to the Pacific Northwest
  • Working familiarity with FISMA controls and CISA Zero Trust Architecture mappings
  • Depth in one or more component domains: identity and access management; network detection and monitoring; packet capture and data diodes; cyber-asset and configuration management; or vulnerability and patch management for embedded devices
  • Experience authoring alternatives analyses under a formal systems-lifecycle methodology
  • Industry certifications such as GICSP, CISSP, GRID, CISA, or NERC-CIP-focused credentials
  • Experience presenting to federal or utility executive steering committees
  • Comfort operating under federal market-research guardrails
  • Experience with privileged access management (PAM) solutions
  • Experience with log and traffic monitoring systems supporting power protection, SCADA, and telecommunications environments
  • Experience with configuration management systems for power protection, SCADA, and telecommunications environments
  • Background check, PIV credential, and customer-required training must be completed prior to unescorted facility access

Benefits:

  • Fully remote day-to-day
  • Overtime eligibility may apply
  • Shift differential may apply
  • Discretionary bonus may apply
  • Standard business hours
  • Professional exposure to federal customers, utility stakeholders, vendor engagements, and executive steering committees