Network Engineer, Sr.

Centrus GlobalOak Ridge, TN
Onsite

About The Position

We’re looking for a talented Network Engineer / Network Architect to help modernize and secure Operational Technology (OT) and Industrial Control System (ICS) environments that support some of the nation’s most critical energy-sector operations. This is a chance to work at the crossroads of advanced engineering, cybersecurity, and national mission support—directly contributing to safe, efficient operations across nuclear, high‑voltage, and facility‑scale systems.

Requirements

  • 5–10+ years in network engineering/architecture, including 3+ years supporting OT/ICS in critical infrastructure.
  • Experience with SCADA, historians, PLC/DCS systems.
  • Experience with industrial protocols such as Modbus, DNP3, EtherNet/IP, OPC‑UA, Profinet.
  • Experience with NIST 800‑82, NIST 800‑53/171, and related frameworks.
  • Experience with industrial network gear (Cisco IE/Stratix, Hirschmann, Moxa).
  • Experience with OT firewall/DMZ architecture (Palo Alto, Fortinet, ASA).
  • Experience in energy, utilities, nuclear, national labs, or similarly high‑security sectors.
  • Strong collaboration with Controls, Facilities, Cybersecurity, and mission support partners.
  • Must be eligible for Q or L clearance.

Nice To Haves

  • Certifications such as CCNP/CCIE, GICSP, ISA/IEC 62443, CISSP, PCNSE.
  • Experience with OT cybersecurity platforms (Nozomi, Claroty, Dragos).
  • Background supporting DOE or other highly regulated environments.
  • Familiarity with cyber audits, readiness reviews, and facility safety/security protocols.

Responsibilities

  • Architect secure, segmented OT/ICS networks using the Purdue Model (Levels 0–3).
  • Develop high‑availability, deterministic designs supporting SCADA, PLCs, DCS, historians, and real‑time automation.
  • Implement secure vendor/remote access pathways aligned to cybersecurity frameworks.
  • Build zoning, conduits, DMZs, and trusted data‑flow architectures for mission operations.
  • Design and support industrial protocol environments (Modbus, DNP3, EtherNet/IP, OPC‑UA, Profinet, IEC 61850, BACnet).
  • Configure and maintain industrial‑grade switches, routers, firewalls, and ruggedized hardware.
  • Support facility systems such as building automation, utilities, power systems, and nuclear/experimental equipment.
  • Maintain diagrams, inventories, IP schemas, and documentation aligned with cybersecurity and configuration controls.
  • Apply NIST 800‑82, NIST 800‑53/171, and ISA/IEC 62443 security controls.
  • Support DOE readiness activities, audits, and assessment documentation.
  • Collaborate with Cybersecurity teams on firewall policies, monitoring, logging, and threat detection.
  • Support vulnerability management while maintaining operational uptime in sensitive environments.
  • Build automation workflows (Ansible/Python) where safe and appropriate.
  • Integrate network health and security telemetry using approved OT monitoring platforms (Nozomi, Claroty, Splunk, SolarWinds, ELK/Grafana).
  • Develop crisp documentation, change‑control packages, and incident response materials.

Benefits

  • Pre-employment background check
  • Pre-employment drug test
  • Q security clearance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service