SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Vulcan Elements manufactures American rare-earth permanent magnets for defense, aerospace, and automotive applications with a focus on national security and economic resilience. As an OT Cybersecurity Engineer, you will secure the industrial control systems and manufacturing floor devices that power the company's operations, including PLCs, historians, and Manufacturing Execution Systems (MES) across Rockwell/Allen-Bradley, Siemens, and other platforms.
You will design and enforce IT/OT network segmentation, protect OT assets, and lead the OT side of the company's NIST SP 800-53 (Low-Impact Baseline) assessment and Plan of Action and Milestones (POA&M). This role works closely with Automation and Engineering teams and requires a strong safety-first mindset alongside deep security expertise.
Key responsibilities include:
- Work with the OT Automation group to design a segmented, defense-in-depth architecture for the OT environment, including PLCs, HMIs, historians, MES, engineering workstations, and virtualized systems.
- Secure Rockwell/Allen-Bradley and Siemens control systems, and support additional ICS/SCADA platforms as the manufacturing environment expands.
- Ensure sufficient IT/OT boundary controls and zone/conduit segmentation; manage firewall and ACL policy aligned with NIST guidance and industry frameworks such as ISA/IEC 62443.
- Develop, own, align, and enforce internal security standards to be used by manufacturing equipment/OT vendors as contractual handover requirements.
- Monitor OT network asset lists and industrial protocols (Modbus, EtherNet/IP, PROFINET, and others) for anomalous activity, remaining vendor- and protocol-agnostic as new platforms are adopted.
- Lead the assessment of OT-relevant controls against the NIST SP 800-53 Low-Impact Baseline, contribute to the System Security Plan (SSP), and help build and close out the POA&M.
- Partner with external CMMC compliance partners and IT security teams to keep OT controls consistent with NIST SP 800-171/CMMC Level 2 programs.
- Own the specification and implementation of native OT monitoring systems and develop Incident Response Plans.
- Partner with Automation, Engineering, and IT teams to build security into new production lines and control system upgrades from the start.
Requirements:
- 3+ years of experience in OT/ICS security, controls engineering, or industrial networking, ideally in manufacturing, defense, or critical infrastructure.
- Hands-on experience with Rockwell/Allen-Bradley (ControlLogix, FactoryTalk) and/or Siemens (S7, TIA Portal, WinCC) required; comfort working across other ICS/SCADA platforms and industrial protocols and associated industrial switch technology (Modbus, EtherNet/IP, PROFINET) as the environment grows.
- Working knowledge of ISA/IEC 62443, NIST SP 800-82, and NIST SP 800-53; experience contributing to an SSP or POA&M for OT systems is a strong plus.
- Must be a U.S. Person due to required access to U.S. export-controlled information or facilities.
Preferred Qualifications:
- Experience as the point of contact with integrators/OEMs for cybersecurity during contract execution and commissioning/implementation.
- Worked with advanced monitoring software and hardware products for OT environments such as Claroty, Dragos, or Nozomi.
- Experience or knowledge of MQTT, Sparkplug, Kafka, or OPCUA.
- Prior experience supporting DoD programs, federal contractors, or CUI/export-controlled (ITAR/EAR) environments.
- Ability to work on the manufacturing floor, including around industrial equipment, and to lift up to 50 lbs as needed.
- CMMC Registered Practitioner (RP), CMMC Certified Professional (CCP), GICSP, CCNA, ISA/IEC 62443 certificate, or CompTIA Security+.