Amyx is proud to be an Equal Opportunity Employer. All qualified candidates will be considered without regard to race, color, religion, national origin, age, disability, sexual orientation, gender identity, status as a protected veteran, or any other characteristic protected by law. Amyx is a VEVRAA federal contractor and we request priority referral of veterans. Physical Demands Employee needs to be able to sit at a workstation for extended periods; use hand(s) to handle or feel objects, tools, or controls; reach with hands and arms; talk and hear. Most positions require ability to work on desktop or laptop computer for extended periods of time reading, reviewing/analyzing information, and providing recommendations, summaries and/or reports in written format. Must be able to effectively communicate with others verbally and in writing. Employee may be required to occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Regular and predictable attendance is essential.
Senior Cybersecurity OT SME
Location
United States
Posted
59 days ago
Salary
Not specified
Job Description
Role Description
We are seeking a Cyber Security SME with deep expertise in Operational Technology (OT) security for water and wastewater utilities. This role will lead cybersecurity strategy, architecture, and risk management for industrial control systems (ICS), SCADA networks, and process automation systems critical to water infrastructure. The SME will ensure compliance with federal standards, improve resilience against cyber threats, and support EPA and utility partners in safeguarding public health and environmental resources.
Responsibilities
-
OT Cybersecurity Strategy
- Develop and implement security architectures for water utility OT environments (SCADA, PLCs, RTUs, HMIs).
- Design segmentation strategies (Purdue Model, DMZ, secure remote access).
- Integrate OT telemetry into enterprise SOC/SIEM for threat detection.
-
Risk Assessment & Compliance
- Conduct OT risk assessments for water/wastewater systems.
- Align with NIST SP 800-82, ISA/IEC 62443, and EPA cybersecurity guidance.
- Prepare and maintain System Security Plans (SSPs), POA&Ms, and RMF documentation.
-
Incident Response & Resilience
- Develop OT-specific incident response playbooks and tabletop exercises.
- Support forensic analysis and recovery planning for cyber-physical systems.
-
Stakeholder Engagement
- Collaborate with water utility operators, engineers, and EPA program leads.
- Deliver executive briefings and technical reports on OT cyber posture.
- Must have the ability to communicate accurate information.
Qualifications
- 10+ years in cybersecurity.
- 8+ years in OT/ICS security for water utilities or critical infrastructure.
-
Hands-on experience with:
- SCADA platforms (e.g., Wonderware, Ignition, OSIsoft PI).
- OT protocols (Modbus, DNP3, OPC-UA).
- Passive monitoring tools (Nozomi, Claroty, Dragos).
- Strong knowledge of NIST SP 800-82, ISA/IEC 62443, and RMF.
- U.S. Citizenship; Public Trust eligibility.
Requirements
- Bachelor’s in Cybersecurity, Engineering, or related field (desired).
- Certifications: GICSP, CISSP, GRID, ISA/IEC 62443 (desired).
- Experience with EPA programs, water/wastewater operations, or municipal utilities (desired).
Benefits
- Medical, Dental, and Vision Plans (PPO & HSA options available).
- Flexible Spending Accounts (Health Care & Dependent Care FSA).
- Health Savings Account (HSA).
- 401(k) with matching contributions.
- Roth.
- Qualified Transportation Expense with matching contributions.
- Short Term Disability.
- Long Term Disability.
- Life and Accidental Death & Dismemberment.
- Basic & Voluntary Life Insurance.
- Wellness Program.
- PTO.
- 11 Holidays.
- Professional Development Reimbursement.
Job Requirements
- 10+ years in cybersecurity.
- 8+ years in OT/ICS security for water utilities or critical infrastructure.
- Hands-on experience with: SCADA platforms (e.g., Wonderware, Ignition, OSIsoft PI).
- OT protocols (Modbus, DNP3, OPC-UA).
- Passive monitoring tools (Nozomi, Claroty, Dragos).
- Strong knowledge of NIST SP 800-82, ISA/IEC 62443, and RMF.
- U.S. Citizenship; Public Trust eligibility.
- Bachelor’s in Cybersecurity, Engineering, or related field (desired).
- Certifications: GICSP, CISSP, GRID, ISA/IEC 62443 (desired).
- Experience with EPA programs, water/wastewater operations, or municipal utilities (desired).
Benefits
- Medical, Dental, and Vision Plans (PPO & HSA options available).
- Flexible Spending Accounts (Health Care & Dependent Care FSA).
- Health Savings Account (HSA).
- 401(k) with matching contributions.
- Roth.
- Qualified Transportation Expense with matching contributions.
- Short Term Disability.
- Long Term Disability.
- Life and Accidental Death & Dismemberment.
- Basic & Voluntary Life Insurance.
- Wellness Program.
- PTO.
- 11 Holidays.
- Professional Development Reimbursement.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Major Account Executive driving sales growth in enterprise security.
Practice Manager overseeing Firewall consulting practice at Optiv
Hands-on security engineering leader building and leading application security team
Senior Security Engineer II focused on IAM at Aledade enhancing security posture