AECOM

We are the world’s trusted infrastructure consulting firm.

Technology & Security Consultant

Security EngineerSecurity EngineerFull TimeRemoteTeam 10,001+Since 1990H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

9 days ago

Salary

$135K - $155K / year

No structured requirement data.

Job Description

Company Description

Work with Us. Change the World.

At AECOM, we're delivering a better world. Whether improving your commute, keeping the lights on, providing access to clean water, or transforming skylines, our work helps people and communities thrive. We are the world's trusted infrastructure consulting firm, partnering with clients to solve the world’s most complex challenges and build legacies for future generations.

There has never been a better time to be at AECOM. With accelerating infrastructure investment worldwide, our services are in great demand. We invite you to bring your bold ideas and big dreams and become part of a global team of over 50,000 planners, designers, engineers, scientists, digital innovators, program and construction managers and other professionals delivering projects that create a positive and tangible impact around the world.

We're one global team driven by our common purpose to deliver a better world. Join us.

Job Description

AECOM’s Technology Solutions Group (TSG) is seeking a Technology & Security Consultant IV to join our TSG Team. This position is also open to a remote working situation.    

The Technology and Security Consultant will have or develop a solid understanding of client business practices and goals to:

  • Develop and formulate solutions to client problems on assigned projects.
  • Under general direction, responsible for the creation of work plans and task definitions.
  • Has broad technical knowledge but possesses an area of specialization or focus.
  • Gather and correlate engineering data using established and well-defined procedures.
  • Work on detailed and/or routine design and/or consulting assignments.
  • Propose solutions to solve new and/or complex problems encountered.
  • Provide guidance and direction to internal mid-level consultants and production staff.
  • Perform work in accordance with the agreed-upon budget and schedule with minimal supervision.
  • Perform cybersecurity assessments of OT/ICS environments, including SCADA systems, PLCs, RTUs, HMIs, field devices, and supporting network infrastructure.
  • Identify vulnerabilities, analyze risk posture, and develop actionable remediation plans aligned with industry standards and federal requirements.
  • Support implementation and documentation of controls in accordance with the Risk Management Framework (RMF) and applicable cybersecurity frameworks (e.g., NIST-based standards).
  • Develop and maintain required cybersecurity documentation, including System Security Plans (SSPs), security assessment reports, Plans of Action & Milestones (POA&Ms), and related compliance artifacts.
  • Collaborate with engineering, network, and project management teams to ensure cybersecurity requirements are integrated into system design and deployment.
  • Support Authority to Operate (ATO) efforts and ongoing compliance monitoring activities.
  • Conduct technical reviews, analyze system configurations, and recommend improvements to enhance system resilience and regulatory compliance.
  • Provide clear, concise, and technically sound written deliverables for Federal clients.
  • Support project planning, scheduling, and execution activities as needed.

AECOM’s Buildings + Places practice includes architecture, interiors, building engineering, workplace strategy, business transformation, asset advisory, economics and development planning, master planning, urban planning, and landscape architecture.  With a range of expertise from strategy and design through project realization, we create better outcomes to grow economies, protect natural systems, conserve natural resources, make societies more equitable, and connect and engage people through innovative, sustainable design solutions.  Our teams have worked on signature projects such as the London 2012 Olympic Park and Legacy Framework, to the new plan for the LA2028 Olympics, to industrial facilities for GE and Rolls-Royce, to headquarters and workplaces for NASA, Unilever, Sony Music, DirecTV, Box, Inc., and many Fortune 500 companies. 

Qualifications

Minimum Requirements

  • BA/BS in IT or related field + 6 years of related experience or demonstrated equivalency of experience and/or education or AA/AS (US) + 8 years of related experience or HS/GED + 10 years of related experience and/or education. 
  • 5+ years of relevant industry experience in OT/ICS cybersecurity.
  • Experience securing SCADA, PLC, and industrial network environments.
  • Experience with cybersecurity frameworks and Risk Management Framework (RMF).
  • Due to the nature of this work, US Citizenship is required.

Preferred Requirements

  • Knowledge of cybersecurity and privacy laws, regulations, and compliance standards.
  • Experience conducting security risk assessments and developing remediation plans.
  • Previous experience supporting Federal projects.
  • Experience developing and maintaining Authority to Operate (ATO) packages.
  • Hands-on experience with vulnerability management, network segmentation, and system hardening in OT environments.
  • Relevant certifications such as Security+, CISSP, CISM, or equivalent industry certifications are a plus.
  • Experience supporting DoD, DHS, or other Federal agencies.
  • Possess an active security clearance.
  • Strong technical writing, analytical, and governance skills.
  • Fluent in English (read, write, and speak).

Additional Information

  • This position does not offer relocation assistance.
  • Sponsorship for US Employment Authorization is not available now or in the future for this position.

About AECOM 

AECOM is proud to offer comprehensive benefits to meet the diverse needs of our employees. Depending on your employment status, AECOM benefits may include medical, dental, vision, life, AD&D, disability benefits, paid time off, leaves of absences, voluntary benefits, perks, flexible work options, well-being resources, employee assistance program, business travel insurance, service recognition awards, retirement savings plan, and employee stock purchase plan. 

AECOM is the global infrastructure leader, committed to delivering a better world. As a trusted professional services firm powered by deep technical abilities, we solve our clients’ complex challenges in water, environment, energy, transportation and buildings. Our teams partner with public- and private-sector clients to create innovative, sustainable and resilient solutions throughout the project lifecycle – from advisory, planning, design and engineering to program and construction management. AECOM is a Fortune 500 firm that had revenue of $16.1 billion in fiscal year 2025. Learn more at aecom.com. 

What makes AECOM a great place to work 

You will be part of a global team that champions your growth and career ambitions. Work on groundbreaking projects - both in your local community and on a global scale - that are transforming our industry and shaping the future. With cutting-edge technology and a network of experts, you’ll have the resources to make a real impact. Our award-winning training and development programs are designed to expand your technical expertise and leadership skills, helping you build the career you’ve always envisioned. Here, you’ll find a welcoming workplace built on respect, collaboration and community—where you have the freedom to grow in a world of opportunity. 

As an Equal Opportunity Employer, we believe in your potential and are here to help you achieve it. All your information will be kept confidential according to EEO guidelines. 

  • State/Province: Virginia
  • Business Group: DCS
  • Offered compensation will be based on location and individual qualifications. The expected range is: $135,000.00 - $155,000.00
  • Legal Entity: AECOM Technical Services Inc
  • Business Line: B&P - Buildings & Places
  • Work Location Model: Remote
  • Operating Group: Americas
  • Primary Location: US - Arlington, VA - 3101 Wilson Blv
  • Compensation: USD 135000 - USD 155000 - yearly
  • Related Categories

    Related Job Pages

    More Security Engineer Jobs

    Cybersecurity Engineer – III

    Banner Health

    Making health care easier, so life can be better.

    Security Engineer9 days ago
    Full TimeRemoteTeam 10,001+Since 1999H1B Sponsor

    Cybersecurity Engineer III protecting data and systems for Banner Health

    CloudCyber Security
    Alabama + 29 moreAll locations: Alabama, Alaska, Arizona, Florida, Idaho, Iowa, Kansas, Kentucky, Louisiana, New Hampshire, New Mexico, New York, North Carolina, North Dakota, Ohio, Oklahoma, Oregon, Maryland, Michigan, Minnesota, Mississippi, Missouri, Pennsylvania, South Carolina, Tennessee, Texas, Utah, Virginia, Washington, Wisconsin
    $50 - $83 / hour
    Security Engineer10 days ago
    Full TimeRemoteTeam 201-500Since 2020H1B No Sponsor

    Senior Security Consultant - Penetration Testing at Stratascale's Adversarial Operations team

    Cloud
    United States
    $165K - $205K / year
    Security Engineer10 days ago
    Full TimeRemote

    This role involves strengthening our internal infrastructure and helping automate key security workflows. Monitor and analyze security alerts across multiple security platforms (SIEM, EDR, SOAR) Lead Incident Response - serve as primary responder to security alerts, perform initi...

    United States + 180 moreAll locations: United States, Canada, Brazil, Colombia, Argentina, Chile, Venezuela, Bolivarian Republic Of, Bolivia, Plurinational State Of, Ecuador, French Guiana, Guyana, Paraguay, Peru, Suriname, Uruguay, Mexico, Costa Rica, El Salvador, Guatemala, Honduras, Nicaragua, Panama, Dominican Republic, Puerto Rico, Bahamas, Guadeloupe, Haiti, Jamaica, Martinique, Montserrat, United Kingdom, Germany, France, Estonia, Portugal, Hungary, Poland, Ukraine, Romania, Bulgaria, Czech Republic, Slovakia, Belarus, Moldova, Republic Of, Sweden, Greece, Belgium, Italy, Ireland, Switzerland, Netherlands, Finland, Malta, Denmark, Lithuania, Croatia, Spain, Austria, Bosnia And Herzegovina, Iceland, Luxembourg, Macedonia, The Former Yugoslav Republic Of, Montenegro, Norway, Serbia, Slovenia, Albania, Cyprus, Latvia, Monaco, South Africa, Egypt, Algeria, Angola, Benin, Botswana, Burkina Faso, Burundi, Cameroon, Cape Verde, Central African Republic, Chad, Congo, Côte D'ivoire, Congo, The Democratic Republic Of The, Equatorial Guinea, Eritrea, Ethiopia, Gabon, Gambia, Ghana, Guinea, Guinea-bissau, Kenya, Lesotho, Liberia, Libyan Arab Jamahiriya, Madagascar, Malawi, Mali, Mauritania, Mauritius, Mayotte, Morocco, Mozambique, Namibia, Niger, Nigeria, Réunion, Rwanda, Senegal, Seychelles, Sierra Leone, Somalia, Sudan, Swaziland, Tanzania, United Republic Of, Togo, Tunisia, Uganda, Zambia, Zimbabwe, Georgia, Turkey, Israel, United Arab Emirates, Armenia, Azerbaijan, Bahrain, Iraq, Jordan, Kuwait, Lebanon, Oman, Qatar, Saudi Arabia, Palestinian Territory, Occupied, Yemen, India, Japan, Philippines, Pakistan, Thailand, Singapore, Viet Nam, Taiwan, Province Of China, Indonesia, Cambodia, Lao People's Democratic Republic, Malaysia, Myanmar, Korea, Republic Of, China, Afghanistan, Bangladesh, Bhutan, Kazakhstan, Kyrgyzstan, Maldives, Mongolia, Nepal, Sri Lanka, Tajikistan, Turkmenistan, Uzbekistan, Australia, Papua New Guinea, Kiribati, Palau, French Polynesia, Tuvalu, New Zealand
    Security Engineer10 days ago
    Full TimeRemoteTeam 10,001+Since 1978H1B No Sponsor

    This role focuses on developing and deploying certificate automation solutions within the Cybersecurity PKI team, supporting enterprise applications and devices. The individual will lead initiatives for automating services related to issuing and managing certificates and gathering associated data.

    PKIPythonJavaBashPowerShellKubernetesTerraformGCPGitHubGitHub ActionsCloud FunctionsCloud RunCertificate AutomationSSL/TLS
    United States
    $140K - $220K / year