Job Description
Job Description
Title : Network Security Engineer – (Subcontract at an NRI)
Through NRI Resource Management Services (RMS), we offer custom talent solutions to help our clients meet their evolving technology and business needs. We help effectively match the right technology professional to their organization, recruiting for contract, contract-to-hire, and direct roles. Our client in (area / region) has an immediate need for a (job title). Please note that this is a (contract / contract to hire / direct hire) opportunity with our client and NOT with NRI.
Travel Requirements
Note : This position requires extensive travel within the United States, up to 90%.
Position Summary
We are seeking experienced Network Security Engineers to join the Client’s specialized Operational Technology (OT) Security team. This team is charged with strengthening cybersecurity across multiple OT sites nationwide. The primary focus will be on deploying robust security controls in accordance with IEC 62443 and NIST standards for cyber-physical systems.
Key Responsibilities
- Travel to various OT sites across the U.S. to perform on-site security implementations.
- Implement and configure Cisco Firepower appliances in both transparent and routed modes to achieve effective OT network segmentation and system isolation.
- Replace unmanaged OT switches identified during site assessments with Meraki switches, configuring them for logical VLAN segmentation.
- Configure and troubleshoot OT traffic flows to maintain secure and efficient communication across segmented networks.
- Assist with rack-and-stack processes, supporting Client field services personnel during hardware deployment.
- Provide support for Access Point (AP) replacements as part of site upgrades when required.
- Collaborate with site personnel and internal teams to facilitate seamless deployment and minimize operational disruptions.
- Document technical configurations, site observations, and implementation details in comprehensive technical reports.
- Validate failover scenarios utilizing SD-WAN (third-party vendor) and Cisco Firepower during network segmentation activities.
Required Qualifications
Extensive hands-on experience with Cisco Firepower appliances (transparent and routed modes).Proficiency with Meraki switches for VLAN segmentation.Familiarity with SD-WAN integration, particularly in relation to Cisco Firepower implementation in transparent mode.Understanding of IEC 62443 and NIST Cybersecurity Framework as applied to OT environments.Previous experience working in OT settings such as manufacturing, utilities, or critical infrastructure.Willingness and ability to travel extensively throughout the U.S. (up to 90%).Strong troubleshooting skills, with the ability to document and communicate effectively.Capacity to work both independently and as part of a geographically dispersed team.Preferred Qualifications
Relevant professional certifications, including CISSP, GICSP, Cisco Security, or ISA / IEC 62443.Experience with wireless infrastructure and Access Point deployments.Knowledge of physical security controls in industrial settings.Work Environment
This is a field-based role involving travel to industrial and operational sites. The position may require working in environments with heavy machinery, electrical systems, and other industrial hazards. Appropriate safety training and personal protective equipment (PPE) will be provided.