You are the technical SME responsible for Zero Trust security deployment across physical security, OT, SCADA, and IoT environments at over 100 facilities. You are part of a team that designs site-specific security architectures, govern a purpose-built OT Zero Trust platform, manage partner integrations, and ensure every network-connected physical security device achieves compliance without disruptive equipment replacement.
This is a key role with verification of CISSP and other certifications.
WHAT YOU'LL OWN:
- Zero Trust architecture design across 10–12 distinct facility site types at scale.
- Configuration, governance, and ongoing management of an OT-focused Zero Trust platform (FreeWave Zentry).
- Management of Fortinet security integration across all deployed environments.
- OT/SCADA/IoT network segmentation — physical security traffic isolated from enterprise and IT networks.
- Remote technical authority to Field Engineer leads during active deployments across all regions.
- Vulnerability management for physical security and OT/IoT environments: scanning, patching, exception documentation.
- Coordination with prime contractor cybersecurity team operating under the federal ATO governance framework.
- Legacy equipment exception management: documenting devices that cannot be immediately patched or replaced.
REQUIRED EXPERIENCE:
- Ideal experience 5+ years OT/IoT security: operational technology environments, not IT security alone.
- Zero Trust architecture design for OT/SCADA/ICS environments.
- Network segmentation isolating OT traffic from enterprise and IT networks.
- Federal FISMA and NIST 800-53 compliance experience.
- Documented OT security deployments in manufacturing, critical infrastructure, or federal environments.
PREFERRED EXPERIENCE:
- Zero Trust experience.
- Fortinet Federal product suite.
- ATO process support — SSP development, POA&M management, security assessment documentation.
- Physical security system integration — IP cameras, access control, badge systems, emergency notification.
- Prior federal agency cybersecurity experience.
CERTIFICATIONS:
- Required: CISSP — Certified Information Systems Security Professional.
- Fortinet NSE4 — Network Security Professional (minimum).
- [Preferred] Fortinet NSE7 — Enterprise Firewall or SD-WAN.
- [Preferred] GICSP — Global Industrial Cyber Security Professional.
- [Preferred] CISM — Certified Information Security Manager.
- Some knowledge of: FreeWave Zentry Platform Certification.