Senior OT Cybersecurity Engineer

ZipStaffWashington, DC
Onsite

About The Position

ZipStaff is seeking a Senior Operational Technology (OT) Cybersecurity Engineer to support a critical-infrastructure modernization initiative for a major national transportation organization in Washington, DC. You will work in a SAFe / Agile delivery framework to improve network visibility, asset discovery, and security controls across OT, ICS, and SCADA environments. Work must align with TSA rail security directives and NIST standards and help protect transit and wayside infrastructure.

Requirements

  • 7+ years of cybersecurity experience with a primary focus on OT, ICS, SCADA, or critical infrastructure (transit, utilities, or energy).
  • Hands-on experience with OT network protocols (Modbus, DNP3, Ethernet/IP, PROFINET) and industrial network security configurations.
  • Proven background in Agile delivery frameworks (SAFe, Scrum, or Kanban).
  • Strong understanding of network architecture, firewalls, and industrial network segmentation.
  • Excellent communication skills.
  • Ability to work on-site in Washington, DC.
  • Must be legally authorized to work in the United States without sponsorship now or in the future.

Nice To Haves

  • Hands-on experience with Claroty, Nozomi, Dragos, or Tenable.ot.
  • Relevant certifications (GICSP, GRID, CISSP, CISM).
  • Prior transit, rail, utilities, or energy OT security experience.

Responsibilities

  • Architect, deploy, and manage security controls for OT, SCADA, and ICS environments.
  • Execute network segmentation and enforce boundary controls between enterprise IT and field-level OT networks using the Purdue Model.
  • Implement and configure OT security tools for asset discovery, continuous threat monitoring, and vulnerability management (e.g., Claroty, Nozomi Networks, Dragos, Tenable.ot).
  • Collaborate in a SAFe / Agile team — sprint planning, backlog grooming, and daily standups.
  • Conduct technical risk assessments and align work to TSA Security Directives, NIST SP 800-82, and IEC 62443.
  • Help establish secure remote access, centralized patching workflows, and incident-response playbooks for critical-infrastructure devices.
  • Translate technical security requirements into actionable sprint user stories.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service