Senior/Staff/Principal SWE - OT Security Engineering
Appgate
About AppGate AppGate secures and protects an organization's most valuable assets with its high performance Zero Trust Network Access (ZTNA) solution. AppGate is the only direct-routed ZTNA solution built for peak performance, superior protection and seamless interoperability. AppGate safeguards Fortune 500 enterprises worldwide. Learn more at appgate.com.
About the Role We're looking for an OT Security Engineer (Senior / Staff / Principal) who will design, build, and evolve the secure remote access capabilities at the heart of AppGate's OT platform. You'll work directly with the CTO and OT Technical Product Manager to take secure remote access for OT from concept to production deployment in real industrial environments - electric utilities navigating NERC CIP requirements, manufacturers managing third-party vendor access, and defense programs requiring CMMC-compliant remote access controls. We are open to candidates at the Senior level (hands-on engineer with deep OT remote-access experience) and Staff / Principal level (hands on technical leader who can own architecture and mentor as the team scales to 5-7 engineers). Key Responsibilities Your engineering work will directly enable next-generation OT capabilities, including:
• Secure Remote Access Platform: Identity-bound, MFA-protected access, with session brokering, just-in-time privilege, and policy enforcement designed for industrial environments.
• Protocol-Aware Policy Authoring: A Protocol Registry that maps OT protocol names to port and transport defaults, making policy authoring OT-aware without changing the underlying enforcement model.
• Evidence and Audit Baseline: Structured access logs capturing user identity, target, session start/end, and outcome - forwardable to Splunk, Kinesis, Datadog etc.
• Session Governance: Enforced session recording, keystroke logging, step-up authentication, and dual-authorization approval workflows for regulated and defense environments.
• Asset Context Ingestion : API-based integration with OT visibility platforms (Dragos, Nozomi, Claroty) normalized into policy-ready attributes, without blocking access in the critical path.
• Design and implement backend services across AppGate's distributed architecture - Controller, Gateway, and Connector components - with a focus on OT-safe deployment patterns.
• Build and maintain REST and gRPC APIs supporting policy evaluation, access control, protocol registry management, and OT-specific system integrations.
• Apply Zero Trust principles to remote access for industrial assets, accounting for the safety, uptime, and determinism constraints of OT environments.
• Own features end-to-end, from architecture through production deployment in real customer environments.
• (Staff / Principal) Define technical direction, lead architecture reviews, and support hiring as the OT engineering function scales. Required Qualifications
• Experience: Hands-on background building or operating secure remote access systems - VPN, ZTNA, jump servers, privileged access, session brokers, or equivalent.
• OT Domain Knowledge: Direct experience in or with OT / ICS environments - manufacturing, energy, utilities, oil and gas, water, transportation, or defense.
• Technical Fundamentals:
• Strong Java backend experience and systems programming in Go, Rust or a comparable language
• Solid networking (TCP/IP, TLS, firewalls) and identity (SAML, OIDC, PKI) fundamentals
• Familiarity with the Purdue Model and IT/OT DMZ design patterns
• Mindset: High ownership, end-to-end accountability, comfortable in a small team where you solve problems before they become fires. Preferred Qualifications
About the Role We're looking for an OT Security Engineer (Senior / Staff / Principal) who will design, build, and evolve the secure remote access capabilities at the heart of AppGate's OT platform. You'll work directly with the CTO and OT Technical Product Manager to take secure remote access for OT from concept to production deployment in real industrial environments - electric utilities navigating NERC CIP requirements, manufacturers managing third-party vendor access, and defense programs requiring CMMC-compliant remote access controls. We are open to candidates at the Senior level (hands-on engineer with deep OT remote-access experience) and Staff / Principal level (hands on technical leader who can own architecture and mentor as the team scales to 5-7 engineers). Key Responsibilities Your engineering work will directly enable next-generation OT capabilities, including:
• Secure Remote Access Platform: Identity-bound, MFA-protected access, with session brokering, just-in-time privilege, and policy enforcement designed for industrial environments.
• Protocol-Aware Policy Authoring: A Protocol Registry that maps OT protocol names to port and transport defaults, making policy authoring OT-aware without changing the underlying enforcement model.
• Evidence and Audit Baseline: Structured access logs capturing user identity, target, session start/end, and outcome - forwardable to Splunk, Kinesis, Datadog etc.
• Session Governance: Enforced session recording, keystroke logging, step-up authentication, and dual-authorization approval workflows for regulated and defense environments.
• Asset Context Ingestion : API-based integration with OT visibility platforms (Dragos, Nozomi, Claroty) normalized into policy-ready attributes, without blocking access in the critical path.
• Design and implement backend services across AppGate's distributed architecture - Controller, Gateway, and Connector components - with a focus on OT-safe deployment patterns.
• Build and maintain REST and gRPC APIs supporting policy evaluation, access control, protocol registry management, and OT-specific system integrations.
• Apply Zero Trust principles to remote access for industrial assets, accounting for the safety, uptime, and determinism constraints of OT environments.
• Own features end-to-end, from architecture through production deployment in real customer environments.
• (Staff / Principal) Define technical direction, lead architecture reviews, and support hiring as the OT engineering function scales. Required Qualifications
• Experience: Hands-on background building or operating secure remote access systems - VPN, ZTNA, jump servers, privileged access, session brokers, or equivalent.
• OT Domain Knowledge: Direct experience in or with OT / ICS environments - manufacturing, energy, utilities, oil and gas, water, transportation, or defense.
• Technical Fundamentals:
• Strong Java backend experience and systems programming in Go, Rust or a comparable language
• Solid networking (TCP/IP, TLS, firewalls) and identity (SAML, OIDC, PKI) fundamentals
• Familiarity with the Purdue Model and IT/OT DMZ design patterns
• Mindset: High ownership, end-to-end accountability, comfortable in a small team where you solve problems before they become fires. Preferred Qualifications
- Experience with OT/SRA/PAM platforms: Claroty, Dragos, Nozomi, Xona, Cyolo, Dispel, SSH PrivX OT, CyberArk, or BeyondTrust
- Background in safety-critical, regulated, or compliance-driven environments
- (Staff / Principal) Track record owning platform architecture and mentoring engineering teams
- Comfortable and fluent working in Linux environments
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior/Staff/Principal SWE - OT Security Engineering in United States vacancy
$155k
Dragos is seeking a Resident Engineer to partner with a customer in Houston, TX. In this hybrid role, you will be responsible for deploying... ...technical partner. Candidates must possess over 5 years of ICS/OT cybersecurity experience and have strong knowledge of networking...Senior$155k
Dragos, Inc. is seeking a Resident Engineer in Houston, TX to deploy and optimize the Dragos... ...have over 5 years of experience in ICSS/OT cybersecurity and strong networking knowledge... ...their critical infrastructure is secure. The position offers a hybrid work schedule...Senior- ...GuidePoint Security is looking for a Senior Operational Technology Security Pre-Sales Engineer to support security assessments in a remote capacity. The ideal candidate has over 3 years of experience in OT security and a strong grasp of industrial control systems. You...SeniorRemote work
$129k - $220k
...Anduril Industries is seeking a Security Engineer to enhance OT security and implement defensive controls. This role involves assessing risks, developing security roadmaps, and ensuring secure design in production environments. The ideal candidate will have experience...Senior- ...Our client, a leader in critical infrastructure and security solutions, is seeking a dedicated and experienced Senior SOC Consultant Analyst to join their dynamic team.... ...will be instrumental in supporting both IT and OT security operations, ensuring the safety and integrity...SeniorWeekly payContract workTemporary workRemote workFlexible hours
- ...Senior Manager OT Security Engineer Reynolds American is evolving into a global multi-category business. Our purpose is to create A Better Tomorrow... ...teams, including OT engineers, IT teams, and operational staff, to integrate security measures into OT systems. Communicate...SeniorContract workRemote work
- ...About AppGate AppGate secures and protects an organization's most valuable assets with its high performance Zero Trust Network... ...About the Role We’re looking for an Observability Engineer (Senior/Staff/Principal level) who has shipped distributed tracing systems,...SeniorRemote workWorldwide
$175k - $225k
A leading technology firm in Virginia is seeking an OT Security Architect responsible for defining and enforcing secure operational technology architecture for data center mechanical systems. The ideal candidate will have over 12 years of experience in OT security, with...Senior- Senior OT Product Security Architect - Cyber Resilience Act (m/w/d) Tasks Provide conceptual consulting and implementation guidance for the... ...interfaces, and industrial protocol security Experience in plant engineering, laboratory equipment, industrial systems, or bioprocess...SeniorRemote work
$98.99k - $124.94k
AEP in New Albany, OH is seeking a Real Time Operations Security Specialist Sr to design and implement security solutions for operational technology systems. This role involves leading security projects, providing technical expertise, and collaborating with various teams...Senior$124k - $280k
...identify vulnerabilities, develop secure systems, and provide proactive... ...part of the Cyber Defense and Engineering team, you will lead large-... ...security transformation. As a Senior Manager, you will serve as a trusted... ...10 years of experience in OT/ICS environments What Sets...Senior- ...What to Expect Tesla is seeking an OT Security Engineer to support and secure manufacturing operations at Giga Nevada, with a primary focus on high volume production systems and the Tesla Semi program. This role is central to protecting some of Tesla's most production...Hourly payFull timeTemporary workRemote workFlexible hours
$77k - $202k
...Cybersecurity Senior Associate At PwC, our people... ...vulnerabilities, develop secure systems, and provide... ...and maintain secure IT-OT infrastructure reliability... ..., mentor junior staff, and build meaningful client... ...Computer Science, Electrical Engineering, Industrial Engineering...Senior- ...A leading global workforce solutions company is seeking a Senior SOC Consultant Analyst to support IT and OT security operations. The successful candidate will review, triage, and investigate alerts, coordinate incident response activities, and develop operational runbooks...SeniorRemote work
- ...As a Sr. Security Engineer, you will collaborate with public and private partners to create cutting... ...fusion center. Your strong knowledge of OT, utilities, or industrial control... ...cybersecurity experience is required. Previous senior-level experience with cyber threat...SeniorWork experience placementWork at office3 days per week
$110k - $165k
...world’s most advanced cyber security adversaries? The Information... ...with DFIR/SOC and Detection Engineering to convert TTPs into durable... ...evidence handling) and brief senior leadership. Mentor junior... ...Azure); network/endpoint; IoT/OT; or directory services. ~ Proven...SeniorFull timeWork at officeRemote workWorldwide$129k - $220k
...the military in months, not years. ABOUT THE TEAM Anduril's Security Engineering team is looking for a security engineer to focus on building... ...products. This is a role with a direct focus on securing Anduril's OT (Operational Technology) and ICs (Industrial Control Systems)...SeniorFull timeWork experience placement- A cybersecurity solutions provider is seeking a Senior Qualys Vulnerability Management Engineer to join their OT Cybersecurity team. This role requires deep expertise... ...that enhance vulnerability management maturity and OT security posture. #J-18808-Ljbffr Interplace, Inc.Senior
- ...Senior Network & Security Engineer Through the continuing ingenuity, dedication and superior service of our employees through the years, Potters has... ...teams and external partners. Assess, segment, and monitor OT/ICS networks across manufacturing sites to reduce risk...SeniorRemote work
- ...ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing, improving, and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g., insider and external threats, intentional and accidental...Work at officeRemote work
$129k - $220k
...Senior Security Engineer Remote Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities... .... This is a role with a direct focus on securing Anduril's OT (Operational Technology) and ICS (Industrial Control Systems...SeniorFull timeWork experience placementImmediate startRemote work- ...Nerdleveltech is hiring a Security Architect to lead the development of an embedded cybersecurity platform. You will work on groundbreaking technologies including cryptographic key management and secure boot for high-assurance environments. Ideal candidates have strong...Senior
$110.54k - $138.17k
...that drives us forward every day. Job Overview The Senior IT Security Engineer is responsible for identifying, evaluating, and implementing... ..., and Internet of Things (IOT)/Operational Technology (OT) devices. Required to lead projects and project teams within...SeniorFlexible hours- ...Senior Network Security Engineering Consultant RedSeal, a pioneer in proactive exposure management and winner of the SC Award for Best CTEM Solution... ...across IT (on-prem, cloud, and remote workers), OT, and IoT. By dynamically modeling the entire environment,...SeniorRemote work
- ...Services Portfolios including: Plant Security Services: Security Assessments, Industrial... ...needs refinement): Execute industrial/OT security assessments (site/remote) including... ...in Cybersecurity, Computer Science, Engineering, or equivalent practical experience. ~5...SeniorFor contractorsRemote work
$117k - $209.33k
...Job Requisition ID # 26WD96573 Senior Trust/Security Engineer Position Overview Autodesk is a global leader in design and make software for... ...connector patterns that enable customers and partners to integrate OT/IT/CMMS systems, extend functionality, and operationalize...SeniorFor contractorsWork experience placement$135k - $225k
...The Role in Your Life at MKS: As a Sr. Principal Security Engineer at MKS Inc., you will be a partner with all Engineering Teams, Operations... ...and enforcing network segmentation strategies across IT and OT environments to reduce risk and support operational resiliency...SeniorPermanent employmentWork experience placementWork at officeRemote workRelocation package- ...Senior Security Engineer/Architect Onsite from day 1 Location: Brooklyn, NY The job opening is for an experienced, hands on senior security... ...include leading security projects involving LAN, WAN, IoT, OT, Office 365, Datacenter, Wireless, Cloud, endpoints etc....SeniorContract workWork at office
$82k - $95k
Barilla Group is seeking an OT Cyber Security Sr. Analyst to join the Cyber Security team in Northbrook, IL. This role involves managing OT cybersecurity solutions, ensuring compliance with corporate guidelines across several plants in the USA and Canada. The ideal candidate...Senior- ...Network Security Engineer Ot-It Segmentation Location: Remote Contract: 2 years Operational Technology (broad knowledge needed, every ship could be different) Platform for security tightening factor- someone who has done this before. Palo Alto Firewall experience...Contract workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior/Staff/Principal SWE - OT Security Engineering. Be the first to apply!
Related searches
- assistant principal United States
- high school assistant principal United States
- chief marine engineer United States
- principal devops engineer United States
- principal reliability engineer United States
- chief design engineer United States
- principal infrastructure engineer United States
- civil engineer project manager United States
- principal controls engineer United States
- chief building engineer United States


