Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Nextracker Inc.

Engineer III, OT/ICS Cybersecurity & Controls

Nextracker Inc.

. Design, configure, and maintain OT network architecture for BESS sites, including Layer 2/3 switches, VLAN segmentation, subnetting, and routing .

Posted 10/5/2026full-timeFlorida • United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in designing and maintaining OT network architecture, including proficiency in SCADA/HMI platforms and cybersecurity compliance frameworks. Capable of administering Azure networking and security services while providing technical authority on OT/ICS cybersecurity.

Highest-signal resume keywords
OT Network Architecture DesignSCADA/HMI AdministrationCybersecurity Compliance (NERC CIP, IEC 62443)Azure Networking and Security ServicesSIEM Deployment and Monitoring

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Layer 2/3 Switch ConfigurationVLAN SegmentationSubnettingRoutingFirewall Configuration and TroubleshootingPython ScriptingModbus ProtocolOPC-UA ProtocolVulnerability ScanningIncident Response Planning
Soft Skills
MentoringTechnical AuthorityProblem SolvingCollaborationCommunication
Tools & Technologies
Ignition SCADA/HMISplunkMicrosoft SentinelAzure Entra IDMicrosoft Azure
Certifications & Qualifications
CISSPGICSPCCNA SecurityCompTIA Security+Microsoft Certified: Azure Security Engineer Associate
Industry Keywords
OT/ICS SecurityBESSCybersecurity Risk AssessmentNIST 800-82Network Security

Tech Stack

Tools & technologies
AzureCloudCyber SecurityFirewallsLinuxPythonSplunk

About the role

Key responsibilities & impact
  • Design, configure, and maintain OT network architecture for BESS sites, including Layer 2/3 switches, VLAN segmentation, subnetting, and routing
  • Configure, harden, and troubleshoot firewalls, ACLs, NAT, and site-to-site/remote-access VPNs
  • Administer the Ignition SCADA/HMI platform, including Gateway configuration, tags, alarming, security roles, and Python/Jython scripting
  • Deploy, tune, and monitor SIEM platforms such as Splunk and Microsoft Sentinel
  • Design and maintain Azure cloud network and security architecture for CMS/SCADA applications
  • Administer Azure Entra ID identity and access management for OT/ICS systems
  • Conduct cybersecurity risk assessments, vulnerability scans, and gap analyses for ICS/OT assets
  • Drive remediation according to IEC 62443, NERC CIP, and NIST 800-82/800-53 frameworks
  • Support compliance audits through inventories, network diagrams, security-control documentation, and evidence gathering
  • Develop and exercise OT incident-response and disaster-recovery playbooks
  • Partner with Controls Engineering on secure PLCNext, Modbus TCP/RTU, and OPC-UA integrations
  • Provide onsite and remote troubleshooting support during BESS commissioning
  • Assist Operations with post-commissioning network and cybersecurity issues
  • Serve as technical authority on OT/ICS cybersecurity architecture and advise leadership on risk and strategy
  • Establish team standards, reference architectures, and best practices
  • Mentor junior engineers and review designs/configurations
  • Travel to BESS sites and perform occasional hands-on configuration, installation, or troubleshooting

Requirements

What you’ll need
  • Bachelor's degree in cybersecurity, computer engineering, electrical engineering, computer science, or a related field
  • Minimum of five (5) years of related experience in OT/ICS or IT network security
  • Hands-on experience supporting NERC CIP compliance requirements
  • Hands-on experience configuring and troubleshooting managed network switches and firewalls in a production or industrial environment
  • Experience administering or supporting a SCADA/HMI platform; Ignition preferred
  • Experience with SIEM deployment, tuning, or monitoring
  • Familiarity with IEC 62443 industrial cybersecurity standards
  • Working knowledge of industrial network architecture, managed switches, routers, and firewalls
  • Mastery of VLANs, subnetting, routing, NAT, ACLs, and secure remote access/VPN
  • Working knowledge of SIEM platforms, log aggregation, and security event correlation/alerting
  • Working knowledge of SCADA/HMI architecture, particularly Ignition
  • Working knowledge of Microsoft Azure networking and security services, including VNets, NSGs, Azure Firewall, Entra ID, and Defender for Cloud
  • Proficiency with Layer 2/3 managed switches and firewalls
  • Proficiency administering Ignition SCADA/HMI, including scripting and security configuration
  • Proficiency with SIEM tooling such as Splunk or Microsoft Sentinel
  • Proficiency with Azure networking/security services and Azure AD/Entra ID administration
  • Proficiency supporting IEC 62443 and NERC CIP compliance activities
  • Proficiency with Modbus and/or OPC-UA industrial protocols
  • Foundational experience with Python or PowerShell scripting
  • Foundational experience with vulnerability scanning and assessment tooling
  • Proficiency in MS Office, Windows RDP, and remote administration tools
  • Ability to travel up to 20% of the time, including occasional international travel
  • Ability to work flexible hours and independently in the field during commissioning support
  • Relevant certifications such as CISSP, GICSP, CCNA/CCNP Security, CompTIA Security+, Microsoft Certified: Azure Security Engineer Associate, or Certified SCADA Security Architect are a plus
  • Experience with Azure, broader NIST 800-82 compliance, BESS/PV projects, Linux, and industrial protocols is preferred or an asset

Benefits

Comp & perks
  • Equal opportunity employer committed to diversity and inclusion
  • Employer-provided PPE for operational site visits
  • Remote or hybrid work arrangement
  • Travel opportunities, including occasional international travel
  • Reasonable accommodations for disabilities