The MITRE Corporation

Industrial Control System (ICS) Cybersecurity Engineer (Center for Securing the Homeland)

About the Employer

Job Description

Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day—working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities, and a culture of innovation that embraces diversity, inclusion, flexibility, collaboration, and career growth. If this sounds like the choice you want to make, then choose MITRE—and make a difference with us. Department Summary: Our mission-driven team works directly with MITRE’s government and industry homeland security sponsors to improve industrial control system cybersecurity across government organizations and critical infrastructure providers. We’re seeking cyber defenders with expertise and innovative ideas in Operational Technology (OT)/ICS SCADA/IOT with an interest in integrated security operations (IT, OT and Physical), threat-informed cyber defense, cyber resiliency, adversary emulation, threat hunting, cyber deception, forensics analysis, and/or safety-critical systems. Roles&Responsibilities: This team works closely with our government and critical infrastructure sponsors and their stakeholders to improve the cybersecurity of mission critical operational technology systems. A collaborative approach and interest in building relationships based on an understanding our sponsors’ unique missions, constraints, and opportunities is as important as specific technical skills. We are looking for people with both a breadth of cyber experience and a depth of knowledge in one or more areas that can be applied directly to sponsor problems. This may entail some or all of the following: Working directly with government and critical infrastructure operators to develop requirements for new cyber protection technologies, perform applied research and development activities, develop operational pilots, and assist in transition to operational use. Developing and operationalizing cyber sensor and cyber analytics architectures to enable more efficient and effective OT cybersecurity operations, threat-hunting, and forensics analysis. Researching and developing improved situational awareness of OT assets through baselining normal activity and highlighting anomalous behavior through multi-source data analytics Conducting cyber mission dependency, criticality, mission failure, and adversary cyberattack scenario analyses to inform design of OT resilient architectures. Researching, developing, operationalizing, evaluating, and improving OT defensive tactics, techniques, and procedures (TTPs) for detecting and responding to cyber threats. Using MITRE ATT&CK® and ATT&CK for ICS to build detection capability and to support hunting the adversary in OT environments. Researching and developing OT Cyber Resiliency solutions including developing and operationalizing OT/ICS SCADA cyber defense architectures. Performing forensics analysis of OT devices to support cyber incident analysis. Developing and performing attack emulation and deception operations. Basic Qualifications: Typically requires a minimum of 8 years of related experience with a Bachelors in one of the following disciplines: Cybersecurity, Information Assurance, Computer Engineering, Electrical Engineering, Systems Engineering or similar technical field; or 6 years and a Master’s degree; or a PhD with 3 years’ experience; or equivalent combination of related education and work experience. Experience in one or more areas listed under work responsibilities. Experience working with electric utilities, gas utilities, manufacturing companies, port facilities, or water utilities in industrial control system cybersecurity or cyber operations. Applicants selected for this position will be subject to a government security investigation and must meet eligibility requirements for access to classified information. This position requires a minimum of 50% hybrid on-site Preferred Qualifications: Experience with cybersecurity of distributed energy resources (solar, wind), electric vehicle charging infrastructure Experience working with federal departments and agencies or their stakeholders (e.g., state/local/tribal/territorial governments) and critical infrastructure organizations (especially electric, gas or water utilities). Experience with embedded system firmware or real-time operating systems. Experience with OT network monitoring including serial, Ethernet, wireless, etc. Experience with OT adversary emulation. Working knowledge of cybersecurity policies and standards related to ICS/SCADA. Ability to apply knowledge of Cyber Physical /OT/ICS/SCADA, security engineering to address new cyber defense/resiliency techniques. Possess strong writing and communication skills. This requisition requires the candidate to have a minimum of the following clearance(s): None This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s): Fitness - DHS Work Location Type: Hybrid MITRE is proud to be an equal opportunity employer. MITRE recruits, employs, trains, compensates, and promotes regardless of age; ancestry; color; family medical or genetic information; gender identity and expression; marital, military, or veteran status; national and ethnic origin; physical or mental disability; political affiliation; pregnancy; race; religion; sex; sexual orientation; and any other protected characteristics. For further information please visit the Equal Employment Opportunity Commission website EEO is the Law Poster and Pay Transparency. MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE’s employment process, please email recruitinghelpmitre.org. Copyright © 2024, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only. Benefits information may be found here