Senior/Staff/Principal SWE - OT Security Engineering
GrabJobs
About AppGate AppGate secures and protects an organization's most valuable assets with its high performance Zero Trust Network Access (ZTNA) solution. AppGate is the only direct-routed ZTNA solution built for peak performance, superior protection and seamless interoperability. AppGate safeguards Fortune 500 enterprises worldwide. Learn more at appgate.com. About the Role We're looking for an OT Security Engineer (Senior / Staff / Principal) who will design, build, and evolve the secure remote access capabilities at the heart of AppGate's OT platform. You'll work directly with the CTO and OT Technical Product Manager to take secure remote access for OT from concept to production deployment in real industrial environments - electric utilities navigating NERC CIP requirements, manufacturers managing third-party vendor access, and defense programs requiring CMMC-compliant remote access controls. We are open to candidates at the Senior level (hands-on engineer with deep OT remote-access experience) and Staff / Principal level (hands on technical leader who can own architecture and mentor as the team scales to 5–7 engineers). Key Responsibilities Your engineering work will directly enable next-generation OT capabilities, including: • Secure Remote Access Platform: Identity-bound, MFA-protected access anchored at the OT DMZ / Purdue Level 3, with session brokering, just-in-time privilege, and policy enforcement designed for industrial environments. • Protocol-Aware Policy Authoring: A Protocol Registry that maps OT protocol names (Modbus TCP, DNP3, IEC 61850, OPC-UA, EtherNet/IP) to port and transport defaults, making policy authoring OT-aware without changing the underlying enforcement model. • Evidence and Audit Baseline: Structured access logs capturing user identity, target, session start/end, and outcome - forwardable to Splunk, Kinesis, Datadog etc. supporting NERC CIP, IEC 62443, NIST SP 800-82, and CMMC audit requirements. • Session Governance: Enforced session recording, keystroke logging, step-up authentication, and dual-authorization approval workflows for regulated and defense environments. • Asset Context Ingestion (Phase 2+): API-based integration with OT visibility platforms (Dragos, Nozomi, Claroty) normalized into policy-ready attributes, without blocking access in the critical path. • Design and implement backend services across AppGate's distributed architecture — Controller, Gateway, and Connector components — with a focus on OT-safe deployment patterns. • Build and maintain REST and gRPC APIs supporting policy evaluation, access control, protocol registry management, and OT-specific system integrations. • Apply Zero Trust principles to remote access for industrial assets, accounting for the safety, uptime, and determinism constraints of OT environments. • Integrate with industrial protocols and OT asset types — PLCs, RTUs, HMIs, historians — running Modbus, DNP3, OPC-UA, Profinet, and EtherNet/IP. • Own features end-to-end, from architecture through production deployment in real customer environments. • (Staff / Principal) Define technical direction, lead architecture reviews, and support hiring as the OT engineering function scales. Required Qualifications • Experience: Hands-on background building or operating secure remote access systems — VPN, ZTNA, jump servers, privileged access, session brokers, or equivalent. • OT Domain Knowledge: Direct experience in or with OT / ICS environments — manufacturing, energy, utilities, oil and gas, water, transportation, or defense. • Technical Fundamentals: • Strong systems programming in Go, Rust, or a comparable language • Solid networking (TCP/IP, TLS, firewalls) and identity (SAML, OIDC, PKI) fundamentals • Familiarity with the Purdue Model and IT/OT DMZ design patterns • Working knowledge of OT protocols: Modbus, DNP3, OPC-UA, EtherNet/IP • Mindset: High ownership, end-to-end accountability, comfortable in a small team where you solve problems before they become fires. Preferred Qualifications • Experience with OT/SRA/PAM platforms: Claroty, Dragos, Nozomi, Xona, Cyolo, Dispel, SSH PrivX OT, CyberArk, or BeyondTrust • Exposure to IEC 62443, NIST SP 800-82, NERC CIP-005/007, or CMMC • Background in safety-critical, regulated, or compliance-driven environments • (Staff / Principal) Track record owning platform architecture and mentoring engineering teams This is your chance to build the secure access layer that protects the world's most critical industrial systems. If you're a Senior/ Staff/ Principal -level engineer with deep OT and secure remote access experience, we want to hear from you. AppGate is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class. In furtherance of AppGate's policy regarding affirmative action and equal employment opportunity, AppGate has developed a written affirmative action program. This program is available for review upon request by any applicant or employee during normal business hours by contacting the company's EEO Coordinator.
$124k - $280k
...identify vulnerabilities, develop secure systems, and provide proactive... ...part of the Cyber Defense and Engineering team, you will lead large-... ...security transformation. As a Senior Manager, you will serve as a trusted... ...10 years of experience in OT/ICS environments What Sets...Senior$77k - $202k
...Cybersecurity Senior Associate At PwC, our people... ...vulnerabilities, develop secure systems, and provide... ...and maintain secure IT-OT infrastructure reliability... ..., mentor junior staff, and build meaningful client... ...Computer Science, Electrical Engineering, Industrial Engineering...Senior- ...Information Security Technology Solutions Implement and support Information Security technology solutions with a focus on OT/ICS technologies and projects. Leads and/or assists with... ...risks. Required Skills: Firewall Engineering Additional Skills: Security...Suggested
- A leading technology firm is seeking a Remote Sr. Microsoft Security Consultant for a contract position lasting 6-8 months. This role requires strong technical expertise in integrating Microsoft Security tools, deep knowledge of Microsoft security technologies like Entra...SeniorContract workRemote work
- ...DHCP and WINS, including hosts and lmhosts files Expert level knowledge of protocols such as: Kerberos, NTLM, TCP, UDP, IPv4, IPv6, SAML, LDAP and Secure LDAP Expert level knowledge of Windows server operating systems Knowledge of Semperis ADFR and DSP...Senior
- ...Senior Security Engineer Chicago Overview: The Senior Security Engineer works in Optiv's 24x7x365 Security Operations Center as a member of the Managed Security Services team. The Senior Security Engineer uses technical knowledge on a number of security technologies...Senior
$150k - $260k
...Staff/Senior/Principal Software Engineer (Elixir/AI Focus) Location: Remote (with occasional travel) Base Location: Salt Lake City, UT, US Employment... ...recruitment purposes only. This information is managed securely in accordance with MLabs Ltd’s Privacy Policy and Information...SeniorFull timeContract workRemote work- ...EAD, H4 , L 2 This is hybrid from day-1 ( Candidates must reside near Chicago, Illinois ) Description : As Senior Endpoint Security Engineer reporting to the Manager of End User Computing, you will play a pivotal role in fortifying our organization's...SeniorLocal area
$80k - $92k
...remote with occasional travel to USA, and in Canada. Role Description: We are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business Unit. The professional will be responsible for the design, implementation, maintenance...SeniorLocal areaRemote work$90 - $100 per hour
...We are seeking a Senior Network Security Engineer with deep expertise in Cisco Identity Services Engine (ISE) and identity-driven network segmentation to support and enhance a modern enterprise security architecture. This role will focus on designing, implementing, and...SeniorHourly payLive inRemote work3 days per week- ...Security Operations - Senior Security Engineer Reporting to the Team Lead, Security Operations Engineering, the Security Operations – Senior Security Engineer... ...Ability to communicate effectively with all levels of staff, management, and clients both verbally and in writing....SeniorVisa sponsorship
- ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Seattle, Washington; Charlotte, North Carolina; Jacksonville, Florida; Jersey City, New Jersey; Boston, Massachusetts; Washington, District of Columbia; Chicago, Illinois; Jacksonville, Florida To proceed...SeniorWork at officeRemote workShift workDay shift
$140k - $165k
...Senior Security Engineer Chicago, IL (Hybrid) At Beyond Finance, we've made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future. Through compassionate, individualized care, a culture focused...SeniorFull time$100k - $138k
...meaningful work that helps drive global business, investment and innovation forward. What You'll Do The Senior Physical Security Engineer is responsible for the technical implementation, configuration, testing, and ongoing support of integrated physical...SeniorWork at officeLocal areaRemote workWorldwideFlexible hours$92k - $120k
...Time Type: Full time Remote Type: Job Family Group: Information Technology Job Description Summary: The Senior IT Security Engineer is responsible for planning, deploying, administering, and maintaining security platforms and technologies to protect the...SeniorFull timeWork experience placementWork at officeRemote workWork from homeFlexible hours2 days per week$131k - $169k
...Senior Security Engineer Seeking a development & cloud focused Senior Security Engineer to join our expanding security team. The ideal candidate will have passion for AppSec, Cloud and AI. They will be a skilled communicator and relationship builder capable of promoting...SeniorWork at officeWork from homeFlexible hoursDay shift$145k - $175k
...performance so campaigns don't just look good-they deliver results. Learn more at later.com. About this position: As a Senior Security Engineer at Later, you will play a critical role in strengthening and scaling the security foundations that power our platform....SeniorPermanent employmentLocal areaRemote work- A leading marketing platform is seeking a Senior Anti-Abuse Security Engineer to architect and implement advanced detection systems for abuse prevention. The role involves building automated behavioral analysis pipelines and collaborating with various teams to ensure security...Senior
- Bain & Company is seeking a SaaS Security Engineer based in Chicago, IL. The role focuses on leading and scaling the SaaS security program, including ownership of the SSPM platform. Candidates should have 3-7+ years of business/security experience and strong technical skills...SeniorWork at office1 day per week
- ...Artificial Intelligence Senior Security Engineer Chicago, Illinois;Washington, District of Columbia; Boston, Massachusetts; Denver, Colorado To proceed with your application, you must be at least 18 years of age. Acknowledge ( Bank of America employees are...SeniorWork at officeShift workDay shift
- ...Key Responsibilities:- Secure Software Development Lifecycle Leadership... ...procedures in alignment with Modern Engineering SDLC practices. Lead the... ...Engineers, developers, and DevOps staff, consistent with expectations for senior Bank engineers. dvocate for secure...Senior
$159.8k - $188k
...an impact? West Monroe is seeking a Security Architect to join our Cybersecurity & Enterprise... ...at the intersection of cybersecurity, IT/OT integration, enterprise modernization,... ...architecture, enterprise cybersecurity engineering, or IT/OT architecture ~ Experience...Local areaImmediate startFlexible hours$146k - $175k
...Senior Application Security Engineer, Ai & Product Security Artera is seeking a hands-on Senior Application Security Engineer, AI & Product Security to work alongside our AI builders and Systems Engineers to threat-model agentic and LLM-powered features, harden PHI...SeniorTemporary workSummer workSummer holidayCurrently hiringWork at officeLocal areaImmediate startRemote workFlexible hoursShift work3 days per week$108.25k - $130k
...great team for you. WHERE YOU’LL FIT WITHIN THE TEAM The SaaS security engineer will lead and scale our SaaS security program, with primary... ...controls and recommending solutions to vendors Partner with Senior Manager and stakeholders to problem solve Support team growth...SeniorFull timeWork experience placementWork at office1 day per week$134k - $205k
...who treats zero-days like morning coffee and builds automated fortresses before a threat even breaks a sweat. As our Senior Security Operations Engineer, you're the lead mechanic of our invisible shield, welding code and hardening global infrastructure until it's more secure...SeniorRemote workWork from homeFlexible hoursShift workDay shift$130k - $170k
A technology solutions provider is seeking a Senior Cloud Security Engineer to enhance security architecture for AWS cloud systems supporting federal programs. This remote position focuses on implementing security controls, supporting Risk Management Framework activities...SeniorRemote work$192k - $240k
...Engineering at Brex Engineering at Brex is about building systems that scale with speed and... ...intention. Our teams span Software, Data, Security, and IT, and operate with high autonomy... ...builders become leaders. What you’ll do As a Senior Application Security Engineer, you will...SeniorWork experience placement$130k - $180k
...physicians, providing critical information about the right treatments for the right patients, at the right time. Senior Application Security Engineer Tempus is seeking a Senior Application Security Engineer with deep expertise in penetration testing to join our...Senior$172k - $225.7k
...Senior Security Architect At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native... ...to drive business value. The Security Applied Field Engineering (AFE) organization is at the forefront of this effort, ensuring...SeniorFlexible hours- ...Senior Network Security Engineer The Senior Network Security Engineer will work within a team of Network Engineers at OneMain. The engineer’s primary responsibility is to lead the network segmentation strategy and lifecycle to maturity. The engineer must take part...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior/Staff/Principal SWE - OT Security Engineering. Be the first to apply!
- assistant principal Chicago, IL
- director data engineering Chicago, IL
- senior civil engineer project manager Chicago, IL
- principal cloud engineer Chicago, IL
- director systems engineering Chicago, IL
- engineering director Chicago, IL
- director of electrical engineering Chicago, IL
- chief building engineer Chicago, IL
- principal security engineer Chicago, IL
- principal infrastructure engineer Chicago, IL

