Senior/Staff/Principal SWE – OT Security Engineering

🕒 Maio 11

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of AppGate

AppGate

501 - 1000 funcionários

🔒 Cibersegurança

🏢 Corporativo

Cybersecurity • Enterprise

AppGate é uma empresa global de cibersegurança que oferece soluções de Acesso à Rede Zero Trust (ZTNA) de alto desempenho para empresas e agências governamentais. Sua plataforma aplica políticas de acesso adaptativas baseadas em identidade usando pontuação de risco em tempo real, descoberta de aplicativos impulsionada por IA e uma arquitetura de roteamento direto, projetada para evitar gargalos na nuvem e escalar em ambientes exigentes. A AppGate também fornece serviços profissionais e ofertas de consultoria cibernética — incluindo simulação de adversários, testes de penetração e avaliações de risco de acesso por terceiros — para ajudar as organizações a implementar e operacionalizar controles de Zero Trust.

Descrição

• **Secure Remote Access Platform: **Identity-bound, MFA-protected access anchored at the OT DMZ / Purdue Level 3, with session brokering, just-in-time privilege, and policy enforcement designed for industrial environments. • **Protocol-Aware Policy Authoring: **A Protocol Registry that maps OT protocol names (Modbus TCP, DNP3, IEC 61850, OPC-UA, EtherNet/IP) to port and transport defaults, making policy authoring OT-aware without changing the underlying enforcement model. • **Evidence and Audit Baseline: **Structured access logs capturing user identity, target, session start/end, and outcome - forwardable to Splunk, Kinesis, Datadog etc. supporting NERC CIP, IEC 62443, NIST SP 800-82, and CMMC audit requirements. • **Session Governance: **Enforced session recording, keystroke logging, step-up authentication, and dual-authorization approval workflows for regulated and defense environments. • **Asset Context Ingestion (Phase 2+): **API-based integration with OT visibility platforms (Dragos, Nozomi, Claroty) normalized into policy-ready attributes, without blocking access in the critical path. • **Design and implement **backend services across AppGate's distributed architecture — Controller, Gateway, and Connector components — with a focus on OT-safe deployment patterns. • **Build and maintain **REST and gRPC APIs supporting policy evaluation, access control, protocol registry management, and OT-specific system integrations. • **Apply Zero Trust principles **to remote access for industrial assets, accounting for the safety, uptime, and determinism constraints of OT environments. • **Integrate **with industrial protocols and OT asset types — PLCs, RTUs, HMIs, historians — running Modbus, DNP3, OPC-UA, Profinet, and EtherNet/IP. • **Own features end-to-end, **from architecture through production deployment in real customer environments. • **(Staff / Principal) **Define technical direction, lead architecture reviews, and support hiring as the OT engineering function scales.

🎯 Requisitos

• **Experience: **Hands-on background building or operating secure remote access systems — VPN, ZTNA, jump servers, privileged access, session brokers, or equivalent. • **OT Domain Knowledge: **Direct experience in or with OT / ICS environments — manufacturing, energy, utilities, oil and gas, water, transportation, or defense. • **Technical Fundamentals: ** • Strong systems programming in Go, Rust, or a comparable language • Solid networking (TCP/IP, TLS, firewalls) and identity (SAML, OIDC, PKI) fundamentals • Familiarity with the Purdue Model and IT/OT DMZ design patterns • Working knowledge of OT protocols: Modbus, DNP3, OPC-UA, EtherNet/IP • **Mindset: **High ownership, end-to-end accountability, comfortable in a small team where you solve problems before they become fires.

Candidatar-se

Vagas Similares

🕒 Maio 11

Zscaler

5001 - 10000

🔒 Cibersegurança

☁️ SaaS

🏢 Corporativo

Specialty Sales Account Executive at Zscaler leveraging AI for data security in healthcare. Impacting sales and product roadmap for Data Protection portfolio with Channel partners.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $122.500 - $175.000 / ano

💰 Secondary Market em 2017-11

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 11

Corelight

201 - 500

🔒 Cibersegurança

🏢 Corporativo

☁️ SaaS

Network Security Trainer developing cybersecurity training curriculum and leading in-person and virtual training sessions. Bringing SOC experience into curriculum development for operational training.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $180.000 - $214.000 / ano

💰 $75.000.000 Series D em 2021-09

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 11

Collibra

1001 - 5000

🏢 Corporativo

☁️ SaaS

Senior Product Security Engineer responsible for securing application products at Collibra. Identifying vulnerabilities and providing remediation consulting for global development teams.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $168.000 - $210.000 / ano

💰 Venture Round em 2022-01

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 11

Federal & Government Sales Account Executive leading U.S. sales strategy for cybersecurity solutions at Searchlight Cyber. Developing relationships and executing strategies across federal agencies and government accounts.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $150.000 / ano

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 11

AAA

5001 - 10000

🚗 Transporte

👥 B2C

IT Security Engineer specializing in DLP and CASB engineering at CSAA Insurance Group. Involves design, optimization, and management of data protection solutions.

🗣️🇺🇸🇬🇧 Inglês obrigatório