Senior OT Network Architect

Census InfoTech Inc

Manassas, VA

JOB DETAILS
JOB TYPE
Full-time, Employee
SKILLS
Analysis Skills, Best Practices, CCIE - Cisco Certified Internetwork Expert, CCNA - Cisco Certified Network Associate, CCNP - Cisco Certified Network Professional, Cisco Network Systems, Communication IC, Communications Protocols, Computer Security, Delivery Management, Ethernet, Extreme Network Systems, Failover, Firewall Administration, Firewalls, High Availability, IP (Internet Protocol), ISA Standards, Identify Issues, International Electro-Technical Commission (IEC), Internet Security, Leadership, MPLS (Multi-Protocol Label Switching), Maintain Compliance, Network Administration/Management, Network Architecture/Engineering, Network Design, Network Monitoring, Network Routing, Network Switching, Network Topology, QoS (Quality of Service), Ransomware, Rapid Spanning Tree Protocol (RSTP), Regulatory Compliance, Risk Analysis, Root Cause Analysis, Strategic Planning, Supervisory Control and Data Acquisition (SCADA), Supply Chain, Technical Support, Wide Area Network (WAN), Zoning
LOCATION
Manassas, VA
POSTED
1 day ago
Senior OT Network Architect
Location: Manassas, VA (Onsite  100%)
Employment Type: Contract-to-Hire
 
 
Job Summary
We are seeking an experienced Senior OT Network Architect to lead the design, implementation, and modernization of Operational Technology (OT) network infrastructure in a mission-critical industrial environment. The ideal candidate will possess deep expertise in OT networking, SD-WAN architecture, cybersecurity, network segmentation, and industrial communication protocols within ICS/SCADA environments.
This role requires hands-on experience designing resilient, secure, and highly available OT network architectures while supporting IT/OT convergence initiatives and compliance standards such as NERC CIP.
Key Responsibilities
Architecture & Design
  • Design and implement segmented OT network architectures transitioning from flat Layer 2 environments to SD-WAN-enabled, zone-based architectures.
  • Develop network segmentation strategies using ISA/IEC 62443 zones and conduits models.
  • Engineer resilient ring and fault-tolerant network topologies across substations and OT environments.
  • Develop SD-WAN standards including:
    • Underlay and overlay architecture
    • Path selection policies based on latency, jitter, and packet loss
    • QoS optimization for ICS protocols such as DNP3, Modbus, and IEC 61850
Security & Compliance
  • Implement OT-specific cybersecurity controls including:
    • Micro-segmentation
    • Firewall zoning
    • Least-privilege access
  • Define and maintain firewall policies to restrict unauthorized inter-zone communication.
  • Conduct OT-focused risk and vulnerability assessments related to ransomware, lateral movement, and supply chain threats.
  • Ensure compliance with NERC CIP and other applicable cybersecurity frameworks.
Implementation & Operations
  • Lead deployment and integration of SD-WAN solutions across OT sites.
  • Configure and support high-availability and failover mechanisms including:
    • Active/active and active/standby redundancy
    • Rapid Spanning Tree
    • ERPS
    • MPLS-TP
  • Troubleshoot OT network incidents and perform root cause analysis.
  • Manage network implementation projects and provide regular status updates to leadership.
Required Qualifications
  • 10+ years of experience in network architecture and design, preferably within OT, ICS, or SCADA environments.
  • Strong expertise in:
    • SD-WAN technologies
    • Routing and switching
    • Firewall configurations
    • Network segmentation
  • Hands-on experience with industrial protocols including:
    • Modbus
    • DNP3
    • OPC
    • Ethernet/IP
    • IEC 61850
  • Strong understanding of IT/OT convergence principles.
  • Experience with industrial-grade switching infrastructure and network resiliency technologies.
  • Excellent troubleshooting and analytical skills.
Preferred Qualifications
  • Experience with ICS and SCADA systems.
  • Knowledge of OT cybersecurity best practices.
  • Familiarity with network monitoring and management tools.
  • Experience with Cisco networking environments and Extreme Networks switches.
Certifications
  • CCNA or CCNP required
  • CCIE preferred
  • Security certifications are a plus


Thanks & Regards
Vineeth Damarla
AVP -  BDM| Delivery Manager 
Vineeth@censusinfotech.com

About the Company

C

Census InfoTech Inc