OT/ICS Cybersecurity Engineer (Operational Technology) (San Francisco)
Jacobs9 months ago
San Francisco, California, United States
Hybrid
Full-time
Junior Level (1-3 years)
Job Description
Position Overview
This role is for an OT/ICS Cybersecurity Engineer (Operational Technology) at Jacobs. You will work at the cutting edge of industrial cybersecurity, securing high criticality OT systems from design through deployment. Your work will involve leading cybersecurity engagements, providing assessments, and designing offerings in compliance with standards like NIST, NERC CIP, and IEC-62443. In this role, you will collaborate with both sales and operations teams and support SCADA and OT integration across large infrastructure projects.
Compensation: Base pay range of $90,000.00/yr - $130,000.00/yr based on skills and experience.
Key Responsibilities
- Support cybersecurity design of OT networks ensuring compliance with relevant security standards.
- Provide cybersecurity assessments of OT/ICS environments, including analysis, risk identification, and mitigation measures.
- Support the integration of switching, servers, firewalls, virtual machines, and other technologies with appropriate security standards.
- Perform forensics analysis of OT devices to support cyber incident investigations.
- Develop consultative OT security solutions such as attack emulation, penetration testing, threat hunting, and deception operations.
- Travel to project sites to support ICS networks, manage converged platforms, and maintain various OT/IoT technologies.
Required Qualifications
- 5+ years of experience in OT/ICS security with demonstrated leadership in cybersecurity engagements.
- Experience with OT network monitoring, data collection, and conducting security reviews and assessments.
- Knowledge of industrial communication protocols such as DNP, Modbus, SEL, and IEC-61850 (serial & IP based).
- Experience working with firewalls, wireless communication technology, and virtualization platforms including Active Directory Domain Services and DNS.
- Familiarity with IEC-62443, the Purdue Enterprise Reference Architecture, and Zero Trust Architecture.
Preferred Qualifications
- IAT Level II Certification (Security+, GICSP) or equivalent.
- Cisco CCNA, Fortinet NSE-4, JNCIA, or equivalent network certification.
- Expertise in MITRE ATT&CK and ATT&CK for ICS frameworks.
- Hands-on experience with programming ICS vendor HMI equipment and Programmable Logic Controllers (PLCs).
- Experience with Industrial Internet of Things, edge computing, and implementing secure remote access solutions.
- Working knowledge of NIST SP 800 series guidelines.
Benefits & Perks
- Access to comprehensive medical, dental, and vision insurance.
- Basic life insurance coverage.
- 401(k) plan with company matching.
- Paid time off and opportunities to purchase company stock at a discount.
- Eligibility for deferred compensation programs and performance bonuses.
Required Skills
Incident response
Cybersecurity risk assessments
SCADA integration
OT network monitoring
Zero Trust Architecture
OT/ICS cybersecurity
Industrial control systems (ICS)
Firewalls and virtualization
Forensics analysis
Compliance with NIST, IEC-62443, and NERC CIP standards