Senior/Staff/Principal SWE – OT Security Engineering

🕒 vor 1 Monat

🗣️🇺🇸🇬🇧 Englisch erforderlich

Firewalls

GRPC

Rust

Splunk

TCP/IP

Go

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of AppGate

AppGate

501 - 1000 Mitarbeiter

🔒 Cybersecurity

🏢 Unternehmen

Cybersecurity • Enterprise

AppGate ist ein globales Cybersicherheitsunternehmen, das leistungsstarke Zero Trust Network Access (ZTNA)-Lösungen für Unternehmen und Regierungsbehörden anbietet. Die Plattform setzt auf identitätsbasierte, adaptive Zugangskontrollen, die mit Echtzeit-Risikobewertung, KI-gestützter Anwendungserkennung und einer direkt weitergeleiteten Architektur arbeiten, um Cloud-Engpässe zu vermeiden und in anspruchsvollen Umgebungen zu skalieren. AppGate bietet zudem professionelle Dienstleistungen und Beratung im Bereich Cybersecurity an — einschließlich Simulation von Angreifern, Penetrationstests und Risikoanalysen für Drittanbieterzugriffe — um Organisationen bei der Implementierung und Operationalisierung von Zero Trust-Kontrollen zu unterstützen.

Beschreibung

• **Secure Remote Access Platform: **Identity-bound, MFA-protected access anchored at the OT DMZ / Purdue Level 3, with session brokering, just-in-time privilege, and policy enforcement designed for industrial environments. • **Protocol-Aware Policy Authoring: **A Protocol Registry that maps OT protocol names (Modbus TCP, DNP3, IEC 61850, OPC-UA, EtherNet/IP) to port and transport defaults, making policy authoring OT-aware without changing the underlying enforcement model. • **Evidence and Audit Baseline: **Structured access logs capturing user identity, target, session start/end, and outcome - forwardable to Splunk, Kinesis, Datadog etc. supporting NERC CIP, IEC 62443, NIST SP 800-82, and CMMC audit requirements. • **Session Governance: **Enforced session recording, keystroke logging, step-up authentication, and dual-authorization approval workflows for regulated and defense environments. • **Asset Context Ingestion (Phase 2+): **API-based integration with OT visibility platforms (Dragos, Nozomi, Claroty) normalized into policy-ready attributes, without blocking access in the critical path. • **Design and implement **backend services across AppGate's distributed architecture — Controller, Gateway, and Connector components — with a focus on OT-safe deployment patterns. • **Build and maintain **REST and gRPC APIs supporting policy evaluation, access control, protocol registry management, and OT-specific system integrations. • **Apply Zero Trust principles **to remote access for industrial assets, accounting for the safety, uptime, and determinism constraints of OT environments. • **Integrate **with industrial protocols and OT asset types — PLCs, RTUs, HMIs, historians — running Modbus, DNP3, OPC-UA, Profinet, and EtherNet/IP. • **Own features end-to-end, **from architecture through production deployment in real customer environments. • **(Staff / Principal) **Define technical direction, lead architecture reviews, and support hiring as the OT engineering function scales.

🎯 Anforderungen

• **Experience: **Hands-on background building or operating secure remote access systems — VPN, ZTNA, jump servers, privileged access, session brokers, or equivalent. • **OT Domain Knowledge: **Direct experience in or with OT / ICS environments — manufacturing, energy, utilities, oil and gas, water, transportation, or defense. • **Technical Fundamentals: ** • Strong systems programming in Go, Rust, or a comparable language • Solid networking (TCP/IP, TLS, firewalls) and identity (SAML, OIDC, PKI) fundamentals • Familiarity with the Purdue Model and IT/OT DMZ design patterns • Working knowledge of OT protocols: Modbus, DNP3, OPC-UA, EtherNet/IP • **Mindset: **High ownership, end-to-end accountability, comfortable in a small team where you solve problems before they become fires.

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 1 Monat

Zscaler

5001 - 10000

🔒 Cybersecurity

☁️ SaaS

🏢 Unternehmen

Specialty Sales Account Executive at Zscaler leveraging AI for data security in healthcare. Impacting sales and product roadmap for Data Protection portfolio with Channel partners.

🇺🇸 Vereinigte Staaten – Remote

💵 $122.500 - $175.000 / Jahr

💰 Secondary Market im 2017-11

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

Corelight

201 - 500

🔒 Cybersecurity

🏢 Unternehmen

☁️ SaaS

Network Security Trainer developing cybersecurity training curriculum and leading in-person and virtual training sessions. Bringing SOC experience into curriculum development for operational training.

🇺🇸 Vereinigte Staaten – Remote

💵 $180.000 - $214.000 / Jahr

💰 €75.000.000 Series D im 2021-09

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

Federal & Government Sales Account Executive leading U.S. sales strategy for cybersecurity solutions at Searchlight Cyber. Developing relationships and executing strategies across federal agencies and government accounts.

🇺🇸 Vereinigte Staaten – Remote

💵 $150.000 / Jahr

⏰ Vollzeit

🟠 Senior

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

AAA

5001 - 10000

🚗 Transport

👥 B2C

IT Security Engineer specializing in DLP and CASB engineering at CSAA Insurance Group. Involves design, optimization, and management of data protection solutions.

🇺🇸 Vereinigte Staaten – Remote

💵 $122.850 - $164.000 / Jahr

⏰ Vollzeit

🟠 Senior

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

Sierra Space

1001 - 5000

🚀 Luft- und Raumfahrt

🔬 Wissenschaft

Senior Director leading National Security Space growth strategy for Sierra Space. Overseeing customer interactions and driving business development activities in a critical market.

🇺🇸 Vereinigte Staaten – Remote

💵 $229.600 - $315.700 / Jahr

💰 Series B im 2023-09

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich