FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Engineer III, OT/ICS Cybersecurity & Controls
Nextracker Inc.. Design, configure, and maintain OT network architecture for BESS sites, including Layer 2/3 switches, VLAN segmentation, subnetting, and routing .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in designing and maintaining OT network architecture, including proficiency in SCADA/HMI platforms and cybersecurity compliance frameworks. Capable of administering Azure networking and security services while providing technical authority on OT/ICS cybersecurity.
Highest-signal resume keywords
OT Network Architecture DesignSCADA/HMI AdministrationCybersecurity Compliance (NERC CIP, IEC 62443)Azure Networking and Security ServicesSIEM Deployment and Monitoring
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Layer 2/3 Switch ConfigurationVLAN SegmentationSubnettingRoutingFirewall Configuration and TroubleshootingPython ScriptingModbus ProtocolOPC-UA ProtocolVulnerability ScanningIncident Response Planning
Soft Skills
MentoringTechnical AuthorityProblem SolvingCollaborationCommunication
Tools & Technologies
Ignition SCADA/HMISplunkMicrosoft SentinelAzure Entra IDMicrosoft Azure
Certifications & Qualifications
CISSPGICSPCCNA SecurityCompTIA Security+Microsoft Certified: Azure Security Engineer Associate
Industry Keywords
OT/ICS SecurityBESSCybersecurity Risk AssessmentNIST 800-82Network Security
Tech Stack
Tools & technologiesAzureCloudCyber SecurityFirewallsLinuxPythonSplunk
About the role
Key responsibilities & impact- Design, configure, and maintain OT network architecture for BESS sites, including Layer 2/3 switches, VLAN segmentation, subnetting, and routing
- Configure, harden, and troubleshoot firewalls, ACLs, NAT, and site-to-site/remote-access VPNs
- Administer the Ignition SCADA/HMI platform, including Gateway configuration, tags, alarming, security roles, and Python/Jython scripting
- Deploy, tune, and monitor SIEM platforms such as Splunk and Microsoft Sentinel
- Design and maintain Azure cloud network and security architecture for CMS/SCADA applications
- Administer Azure Entra ID identity and access management for OT/ICS systems
- Conduct cybersecurity risk assessments, vulnerability scans, and gap analyses for ICS/OT assets
- Drive remediation according to IEC 62443, NERC CIP, and NIST 800-82/800-53 frameworks
- Support compliance audits through inventories, network diagrams, security-control documentation, and evidence gathering
- Develop and exercise OT incident-response and disaster-recovery playbooks
- Partner with Controls Engineering on secure PLCNext, Modbus TCP/RTU, and OPC-UA integrations
- Provide onsite and remote troubleshooting support during BESS commissioning
- Assist Operations with post-commissioning network and cybersecurity issues
- Serve as technical authority on OT/ICS cybersecurity architecture and advise leadership on risk and strategy
- Establish team standards, reference architectures, and best practices
- Mentor junior engineers and review designs/configurations
- Travel to BESS sites and perform occasional hands-on configuration, installation, or troubleshooting
Requirements
What you’ll need- Bachelor's degree in cybersecurity, computer engineering, electrical engineering, computer science, or a related field
- Minimum of five (5) years of related experience in OT/ICS or IT network security
- Hands-on experience supporting NERC CIP compliance requirements
- Hands-on experience configuring and troubleshooting managed network switches and firewalls in a production or industrial environment
- Experience administering or supporting a SCADA/HMI platform; Ignition preferred
- Experience with SIEM deployment, tuning, or monitoring
- Familiarity with IEC 62443 industrial cybersecurity standards
- Working knowledge of industrial network architecture, managed switches, routers, and firewalls
- Mastery of VLANs, subnetting, routing, NAT, ACLs, and secure remote access/VPN
- Working knowledge of SIEM platforms, log aggregation, and security event correlation/alerting
- Working knowledge of SCADA/HMI architecture, particularly Ignition
- Working knowledge of Microsoft Azure networking and security services, including VNets, NSGs, Azure Firewall, Entra ID, and Defender for Cloud
- Proficiency with Layer 2/3 managed switches and firewalls
- Proficiency administering Ignition SCADA/HMI, including scripting and security configuration
- Proficiency with SIEM tooling such as Splunk or Microsoft Sentinel
- Proficiency with Azure networking/security services and Azure AD/Entra ID administration
- Proficiency supporting IEC 62443 and NERC CIP compliance activities
- Proficiency with Modbus and/or OPC-UA industrial protocols
- Foundational experience with Python or PowerShell scripting
- Foundational experience with vulnerability scanning and assessment tooling
- Proficiency in MS Office, Windows RDP, and remote administration tools
- Ability to travel up to 20% of the time, including occasional international travel
- Ability to work flexible hours and independently in the field during commissioning support
- Relevant certifications such as CISSP, GICSP, CCNA/CCNP Security, CompTIA Security+, Microsoft Certified: Azure Security Engineer Associate, or Certified SCADA Security Architect are a plus
- Experience with Azure, broader NIST 800-82 compliance, BESS/PV projects, Linux, and industrial protocols is preferred or an asset
Benefits
Comp & perks- Equal opportunity employer committed to diversity and inclusion
- Employer-provided PPE for operational site visits
- Remote or hybrid work arrangement
- Travel opportunities, including occasional international travel
- Reasonable accommodations for disabilities