OT/ICS Cybersecurity Engineer (Operational Technology)

Jacobs4 months ago
San Francisco, CA, United States
Hybrid
Full-time
Junior Level (1-3 years)

Job Description

Position Overview

At Jacobs, we're challenging today to reinvent tomorrow by solving the world's most critical problems for thriving cities, resilient environments, mission-critical outcomes, operational advancement, scientific discovery, and cutting-edge manufacturing. As the OT/ICS Cybersecurity Engineer – Mid, you will work at the forefront of industrial cybersecurity to protect high criticality operational technology systems from design through deployment. In this role, you will support cybersecurity design, perform assessments, and develop solutions that align with standards such as NIST and NERC CIP. Collaborating with sales, operations, and SCADA controls teams, you’ll help integrate and secure systems for large infrastructure programs while mitigating cyber risks. At Jacobs, we are building a more connected and sustainable world – come join us as we engineer and secure networks that power today’s global infrastructure.

Key Responsibilities

  • Support cybersecurity design of OT networks through compliance with appropriate security standards
  • Provide cybersecurity assessments of OT/ICS across Jacobs markets with analysis of current state, mitigation strategies, and solution implementation
  • Support OT integration of switching, servers, firewalls, virtual machines, and other technologies with proper security standards
  • Perform forensics analysis of OT devices to support cyber incident investigations
  • Develop consultative OT security solutions including attack emulation, penetration testing, threat hunting, and deception operations
  • Travel to project sites to support ICS networks and manage converged platforms, virtualization, and security platforms across various OT/IoT technologies

Required Qualifications

  • 5+ years of experience in OT/ICS security with experience leading engagements
  • Experience with OT network monitoring and data collection tools
  • Technical background with hands-on experience in conducting security reviews and assessments of OT risk landscapes
  • Knowledge of DNP, Modbus, SEL, and IEC-61850 protocols (both serial and IP-based)
  • Experience working with firewalls and wireless communication technologies
  • Experience with virtualization platforms, Active Directory Domain Services, and DNS
  • Familiarity with IEC-62443 and other industrial cybersecurity standards
  • Knowledge of the Purdue Enterprise Reference Architecture and Zero Trust Architecture

Preferred Qualifications

  • IAT Level II Certification (Security+, GICSP)
  • Cisco CCNA, Fortinet NSE-4, JNCIA or equivalent network certification
  • Expertise in MITRE ATT&CK® and ATT&CK for ICS Frameworks
  • Hands-on experience programming ICS vendor Human Machine Interface (HMI) equipment and Programmable Logic Controllers (PLCs)
  • Experience with Industrial Internet of Things and edge computing
  • Working knowledge of NIST SP 800 series guidelines
  • Experience implementing secure remote access solutions

Benefits & Perks

  • Salary: $90,000.00 to $130,000.00
  • Access to medical, dental, vision, and basic life insurance
  • 401(k) plan, paid time off, and the opportunity to purchase company stock at a discount
  • Deferred compensation plan or Executive Deferral Plan options
  • Additional rewards including merit increases, performance discretionary bonus, and stock
  • Hybrid working policy enabling a split workweek between Jacobs offices/projects and remote locations

Required Skills

Firewall configuration
Virtualization platforms
Zero Trust Architecture
Cybersecurity assessments
OT/ICS cybersecurity
Threat hunting
Purdue Enterprise Reference Architecture
IEC-61850
Active Directory Domain Services
OT network monitoring
IEC-62443 standards
Penetration testing
Compliance with NIST and NERC CIP
SCADA integration
SEL protocol
DNS management
Cybersecurity design
Forensics analysis
DNP protocol
Modbus protocol