
Senior Cybersecurity Engineer
Fluence Energy3 months ago
Arlington, VA, USA or Houston, TX, USASenior / Staff+
Responsibilities
- Contribute to cybersecurity architecture and implementation across software products, OT, cloud, network, and infrastructure environments.
- Integrate security requirements and secure-by-design practices into product development and deployment processes.
- Execute vulnerability scanning, analysis, and remediation tracking for Fluence OS.
- Perform risk assessments, threat modeling, and security reviews for product features and deployments.
- Design and implement OT network segmentation, access control, and monitoring solutions.
- Apply IEC 62443, NIST, NERC CIP, and related cybersecurity standards to engineering practices and configurations.
- Evaluate and deploy security tools, automation, and monitoring solutions.
- Create documentation, hardening guides, and security baselines.
- Lead cross-functional technical initiatives, influence engineering decisions, and mentor engineers.
Requirements
- 8–12 years of cybersecurity engineering experience, preferably in product or OT/industrial environments.
- Experience implementing cybersecurity controls in network, cloud, or infrastructure environments.
- Familiarity with OT/ICS environments or industrial networking concepts.
- Strong expertise in vulnerability management, threat modeling, network security, OT security, cloud security, and secure infrastructure design.
- Hands-on experience with Linux-based systems and security tooling in complex production environments.
- Experience securing industrial control systems or operational technology environments.
- Knowledge of cybersecurity frameworks and standards including IEC 62443, NIST, CIS, or NERC CIP.
- Proven experience designing or leading cybersecurity architecture or large-scale security initiatives.
- Ability to lead cross-functional technical initiatives, mentor engineers, and influence engineering decisions.
- Excellent communication and problem-solving skills, including the ability to explain technical risks to technical and non-technical stakeholders.