Cybersecurity Engineer

GE VernovaBucharest, BucharestOn-siteFull-timeStaff, 8–12 yearsListed 1 hour ago

Apply now

About this role

# Job Description Summary
The ICS Cybersecurity Engineer will serve within the Services Organization, focusing primarily on the design, deployment, and implementation of secure Industrial Control Systems (ICS) and IT/OT infrastructures for customer projects. The role is project-oriented, delivering cybersecurity solutions and architectures aligned with regulatory frameworks and industry best practices. While the primary responsibility is project implementation, familiarity with support and incident management is considered a strong asset.

Job Description

Architecture & Roadmap Development

- Participate in domain technical and business discussions relative to future architecture direction for ICS/OT environments.
- Assist in the analysis, design, and development of secure infrastructure roadmaps, ensuring alignment between current and future state architectures.
- Gather and analyze data to define architectural requirements at the project level.
- Coach and mentor project teams and customer stakeholders on ICS cybersecurity best practices.

Cybersecurity in Project Implementation

- Integrate and configure ICS/OT security tools (firewalls, intrusion detection, asset inventory, anomaly detection) into customer environments.
- Conduct vulnerability assessments, compliance checks, and security hardening activities within the scope of project delivery.
- Ensure all project activities are carried out in compliance with ICS-relevant standards (ISO9001, ISO27001, IEC 62443) and company processes.
- Translate business and operational requirements into secure technical solutions that strengthen cyber resilience for customer environments.

Required Qualifications

- Bachelor’s Degree with a minimum of 8 years of professional experience.
- Proven experience in ICS/OT cybersecurity engineering and implementation projects.
- Familiarity with applying ICS security frameworks (IEC 62443, NIST CSF, NERC CIP) in projects.
- System administration: Windows – core competency to install, configure, manage.
- Linux administration and security expertise.
- Network hardware: Cisco enterprise and industrial switches, VLAN, ACL, routing, VPN, and network segmentation for ICS environments.
- Security management: Enterprise firewalls (Cisco ASA, Fortinet, Palo Alto, or equivalent) – design, configure, deploy, with emphasis on OT perimeter defense and secure remote access.
- Windows / Active Directory Services – install, configure, manage.
- Virtualization: VMware vSphere clusters, with experience in HA, DRS, and backup APIs.
- Storage: Shared NAS/SAN network storage (HP 3PAR/MSA/EVA, EMC DataDomain).
- Backup Technologies (NetBackup, BackupExec, Veeam, Networker).
- Knowledge of anti-virus implementations (McAfee EPO, Bitdefender, Microsoft Forefront, etc.).
- Experience with IPAMs and password management solutions.
- Experience with monitoring, logging, and SIEM tools (Nagios, Graylog, Splunk, Claroty, Nozomi, Dragos).
- Strong cybersecurity foundation with demonstrated OT project delivery experience.

Desired Qualifications

- Experience in support/incident management (L1/L2/L3) for ICS/OT security tools, incident response, and vulnerability remediation.
- Willingness to travel abroad for on-site project delivery (up to 50% of the time or more).
- Fluent in English.
- Degree or Diploma in Computer Science or equivalent knowledge or experience.
- Proven track record of problem analysis, identification, and resolution.
- Excellent communication skills, discipline, accountability, and flexibility in a project-driven environment.
- Strong understanding of ITIL and change management policies and procedures.
- Hands-on experience in technical roles within critical infrastructure or industrial environments.
- Understanding of architecture standards concepts and ability to apply them to project work.

Additional Information

Relocation Assistance Provided: No