> Markdown version of [/jobs/ext/2210839-cybersecurity-commissioning-specialist-cxcyb](https://www.wearedevelopers.com/jobs/ext/2210839-cybersecurity-commissioning-specialist-cxcyb). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Commissioning Specialist (CxCYB) - **Company:** Blueprint School Network, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Backup Devices, Cyber Security, Supervisory Control and Data Acquisition (SCADA), Data Logging, Vulnerability Analysis - **Published:** August 24, 2026 - **Apply:** https://energyresiliencepartnersllc.applytojob.com/apply/OwHbi6WCyO/Cybersecurity-Commissioning-Specialist-CxCYB?source=GS ## About the Role * At least 5 years inspecting and testing cybersecurity systems, including two projects of similar size and complexity. * Experience with DoD RMF, DISA STIG/SRG, vulnerability assessment, network/device hardening, and industrial or facility control systems. * Ability to be employed by the independent Commissioning Firm and travel to Puerto Rico for field commissioning. * Current relevant certifications maintained throughout the assignment and no disqualifying recent disciplinary action. Preferred Qualifications * CISSP, CISM, CASP+, CGRC, GIAC ICS/OT, ISA/IEC 62443, or comparable credentials. * Microgrid, PLC/SCADA, CMMC, NIST SP 800-82/53/171, and USACE experience. ## Description Provide independent commissioning assurance that microgrid and facility control-system cybersecurity requirements are implemented, tested, documented, corrected, and ready for turnover. This role is distinct from the Contractor Cybersecurity SME and must remain within the independent Commissioning Firm. What You Will Do * Review cybersecurity design, STIG/SRG applicability, inventories, interconnections, account controls, hardening, backups, logging, and test procedures. * Develop or independently review cybersecurity pre-functional and functional test checklists. * Witness scans and tests, evaluate evidence, record issues, verify corrective actions, and confirm retesting. * Coordinate with the Cybersecurity SME, CxC, controls/network teams, CQC, Government stakeholders, and OEMs while preserving independent judgment. * Support readiness certification, final commissioning reporting, turnover, and post-construction verification., * This is a contingent opportunity dependent on contract award/NTP, project funding, final staffing authorization, Government acceptance when required, and successful installation-access processing. * When on site, work may involve tropical heat and humidity, rain, uneven terrain, stairs/ladders, construction noise, required PPE, and extended, weekend, outage, emergency, or alternate-shift hours. * Candidates must be authorized to work in the United States, follow drug-free workplace and conduct requirements, and protect FCI/CUI using only authorized systems and procedures. * ERP encourages applications from qualified Native American, Puerto Rican, veteran, military-spouse, disabled, and local candidates. ERP provides equal employment opportunity consistent with applicable law. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Hate organising your photos? Try it with 5 Terabytes](https://www.wearedevelopers.com/videos/79-hate-organising-your-photos-try-it-with-5-terabytes) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)