Sr. Cybersecurity OT SME

Amyx, Inc.

Washington, Washington, DC

JOB DETAILS
SKILLS
Automation Systems, CISSP - Certified Information Systems Security Professional, Communication Skills, Computer Security, Computer Workstations, Control Systems, Cyber-Physical, DMZ, Dental Insurance, Desktop PC, Documentation, Environmental Protection Agency (EPA), Federal Compliance Regulations, Forensic Science, ISA Standards, Incident Response, Industrial Management, International Electro-Technical Commission (IEC), Internet Security, Laptop PC, Life Insurance, Maintain Compliance, Preferred Provider Organization (PPO), Programmable Logic Controller (PLC), Public Health, Reimbursement, Remote Access, Risk Analysis, Risk Management, Security Architecture, Security Attacks, Security Information and Event Management (SIEM), Staff Requirements, Supervisory Control and Data Acquisition (SCADA), Systems Administration/Management, Systems Maintenance, Technical Presentation, Telemetry, U.S. National Institute of Standards and Technology (NIST), United States Citizen, Vision Plan, Water Utility
LOCATION
Washington, Washington, DC
POSTED
30+ days ago
Overview:

We are seeking a Cyber Security SME with deep expertise in Operational Technology (OT) security for water and wastewater utilities. This role will lead cybersecurity strategy, architecture, and risk management for industrial control systems (ICS), SCADA networks, and process automation systems critical to water infrastructure. The SME will ensure compliance with federal standards, improve resilience against cyber threats, and support EPA and utility partners in safeguarding public health and environmental resources

Responsibilities:
  • OT Cybersecurity Strategy
  • Develop and implement security architectures for water utility OT environments (SCADA, PLCs, RTUs, HMIs).
  • Design segmentation strategies (Purdue Model, DMZ, secure remote access).
  • Integrate OT telemetry into enterprise SOC/SIEM for threat detection.
  • Risk Assessment & Compliance
  • Conduct OT risk assessments for water/wastewater systems.
  • Align with NIST SP 800-82, ISA/IEC 62443, and EPA cybersecurity guidance.
  • Prepare and maintain System Security Plans (SSPs), POA&Ms, and RMF documentation.
  • Incident Response & Resilience
  • Develop OT-specific incident response playbooks and tabletop exercises.
  • Support forensic analysis and recovery planning for cyber-physical systems.
  • Stakeholder Engagement
  • Collaborate with water utility operators, engineers, and EPA program leads.
  • Deliver executive briefings and technical reports on OT cyber posture
  • Must have the ability to communicate accurate information
Qualifications:

Required:

  • 10+ years in cybersecurity;
  • 8+ years in OT/ICS security for water utilities or critical infrastructure.
  • Hands-on experience with:SCADA platforms (e.g., Wonderware, Ignition, OSIsoft PI).OT protocols (Modbus, DNP3, OPC-UA).Passive monitoring tools (Nozomi, Claroty, Dragos).
  • Strong knowledge of NIST SP 800-82, ISA/IEC 62443, and RMF.
  • U.S. Citizenship; Public Trust eligibility.

 

Desired:

  • Bachelor’s in Cybersecurity, Engineering, or related field.
  • Certifications: GICSP, CISSP, GRID, ISA/IEC 62443.
  • Experience with EPA programs, water/wastewater operations, or municipal utilities.

 

Benefits include:

  • Medical, Dental, and Vision Plans (PPO & HSA options available)
  • Flexible Spending Accounts (Health Care & Dependent Care FSA)
  • Health Savings Account (HSA)
  • 401(k) with matching contributions
  • Roth
  • Qualified Transportation Expense with matching contributions
  • Short Term Disability
  • Long Term Disability
  • Life and Accidental Death & Dismemberment
  • Basic & Voluntary Life Insurance
  • Wellness Program
  • PTO
  • 11 Holidays
  • Professional Development Reimbursement

 

 

Please contact talent@amyx.com with any questions!

 

Amyx is proud to be an Equal Opportunity Employer.  All qualified candidates will be considered without regard to race, color, religion, national origin, age, disability, sexual orientation, gender identity, status as a protected veteran, or any other characteristic protected by law. Amyx is a VEVRAA federal contractor and we request priority referral of veterans.



Physical Demands

Employee needs to be able to sit at a workstation for extended periods; use hand(s) to handle or feel objects, tools, or controls; reach with hands and arms; talk and hear. Most positions require ability to work on desktop or laptop computer for extended periods of time reading, reviewing/analyzing information, and providing recommendations, summaries and/or reports in written format. Must be able to effectively communicate with others verbally and in writing. Employee may be required to occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Regular and predictable attendance is essential.

About the Company

A

Amyx, Inc.

Amyx, Inc. is a financially strong ISO 9001-2008 certified and CMMI-DEV Level 3 appraised small business founded in 1999 and headquartered in Reston, Virginia. Amyx’s services are listed below. These services, backed by proven solutions, are delivered by a workforce of exceptional professionals, many of whom possess over 25 years of experience. Amyx personnel have strong core values rooted in public service and hold an intense belief that service to the Government can make a difference. Additional information on our core capabilities can be found on our Core Capabilities page.

COMPANY SIZE
100 to 499 employees
INDUSTRY
Computer/IT Services
FOUNDED
1999
WEBSITE
http://www.amyx.com/