> Markdown version of [/jobs/ext/3066356-principal-ot-cybersecurity-ics-security-architect](https://www.wearedevelopers.com/jobs/ext/3066356-principal-ot-cybersecurity-ics-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal OT Cybersecurity / ICS Security Architect - **Company:** Peraton Inc - **Location:** Colorado Springs, CO, United States (Remote available) - **Experience:** Starter - **Salary:** $135,000.0 - $216,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Configuration Management, Cyber Security, Monitoring of Systems, Supervisory Control and Data Acquisition (SCADA), Identity and Access Management, Network Monitoring, Packet Analyzer, Cisco Nexus Switches, Zero Trust Network Access, Software Requirements Analysis, Systems Architecture, Software Vulnerability Management, Information Technology, Patch Management, DODAF - **Published:** September 25, 2026 - **Apply:** https://www.builtincolorado.com/job/principal-ot-cybersecurity-ics-security-architect/11363396?handler=ApplyRedirect ## About the Role * U.S. Citizenship and the ability to obtain and maintain a Public Trust determination and PIV credential for unescorted access to the customer facility. * Bachelor's degree in Computer Science, Computer or Electrical Engineering, Cybersecurity, or a related technical discipline, and 12+ years of progressive systems architecture or cyber engineering experience; in lieu of a degree, 16 years of relevant experience will be considered. * Demonstrated systems-architecture experience across both operational technology (OT / ICS) and enterprise information technology (IT) security environments. * Direct experience in the electric-utility or power-grid domain (utility, ISO / RTO, generation / transmission / distribution operator, DOE laboratory, or comparable critical-infrastructure operator). * Hands-on experience applying NERC CIP standards (CIP-002 through CIP-014) in a utility environment. * Proven record leading the full RFI and vendor-evaluation lifecycle: requirements, market survey, RFI authorship, response evaluation, lab validation, and recommendation. * Strong technical writing and executive-briefing skills. * Ability to travel domestically up to 25%, including routine trips to the Pacific Northwest., * Working familiarity with FISMA controls and CISA Zero Trust Architecture mappings. * Depth in one or more component domains: identity and access management; network detection and monitoring; packet capture and data diodes; cyber-asset and configuration management; or vulnerability and patch management for embedded devices. * Experience authoring alternatives analyses under a formal systems-lifecycle methodology (utility SLC, DoDAF, NIST RMF, or comparable). * Industry certifications such as GICSP, CISSP, GRID, CISA, or NERC-CIP-focused credentials. * Experience presenting to federal or utility executive steering committees. * Comfort operating under federal market-research guardrails (open information exchange with vendors; no NDAs; no procurement commitments). * Experience with privileged access management (PAM) solutions. * Experience with log and traffic monitoring systems supporting power protection, SCADA, and telecommunications environments. * Experience with configuration management systems for power protection, SCADA, and telecommunications environments. ## Description Peraton Labs is hiring a Principal OT Cybersecurity / ICS Security Architect - a senior systems architect role bridging operational technology (OT), industrial control systems (ICS), and enterprise IT cybersecurity - to join our Strategic Innovation Group in support of a federal customer's cybersecurity and OT modernization program for critical infrastructure. As a Principal OT Cybersecurity / ICS Security Architect on our team, you will lead the requirements and solutions-analysis effort for one or more parallel workstreams of the customer's modernization program, spanning core capability areas such as access control, security monitoring, and asset and vulnerability management. You will work with the customer's engineering, operations, cybersecurity, and test-and-evaluation stakeholders, alongside a Peraton Labs delivery team of engineers and technical writers. The goal is to define requirements, survey the market, evaluate candidate products, and deliver defensible recommendations that guide the customer's procurement decisions. WHAT YOU WILL DO * Lead end-to-end solutions analysis for one or more workstreams: elicit and validate requirements, produce System Requirements Specifications (SRS) with traceability to NERC CIP, FISMA, and CISA Zero Trust Architecture. * Conduct market research to identify candidate commercial products across identity and access controls, network monitoring and threat visibility, and inventory / configuration / vulnerability management. * Draft Requests for Information (RFIs), manage vendor response windows, and lead technical engagement with bidders under federal market-research guardrails. * Assess vendor responses and product capabilities against requirements; author comparison reports and down-select recommendations. * Design lab test environments, author test plans, and oversee hands-on product demonstrations and evaluation at customer and Peraton Labs facilities. * Author Alternative Solutions Analysis (ASA) documents and brief steering committees and executive decision-makers. * Facilitate multi-stakeholder workshops across operational technology (SCADA, RTUs, protective relays, industrial protocols) and enterprise IT cybersecurity domains to build consensus on requirements and product selection., * Travel: Up to 25% domestic; routine trips to the Pacific Northwest; periodic trips to the Peraton Labs ICS Lab in New Jersey. * Schedule: Standard business hours, with occasional evening or weekend work during lab test windows or scheduled vendor demonstrations. * Customer interaction: Frequent - requirements workshops, vendor engagements, steering-committee briefings. Requires professionalism, strong communication, and resilience in multi-stakeholder consensus-building. * Onboarding: Background check, PIV credential, and customer-required training must be completed prior to unescorted facility access., Coordinate end-to-end installation projects for customers by tracking progress, scheduling within SLAs, documenting interactions, resolving work order issues, and communicating with customers, service providers, stores and vendors. Maintain compliance documentation, use systems (Installation Management System, myRedVest, Salesforce), deliver customer support via inbound/outbound calls, and adapt to process changes while meeting performance goals. Top Skills: Installation Management SystemMyredvestSalesforce What you need to know about the Colorado Tech Scene With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation. Key Facts About Colorado Tech * Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey) * Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3 * Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech * Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook) * Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures * Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [MySQL Protocol Features You Should Be Aware Of](https://www.wearedevelopers.com/videos/100267-mysql-protocol-features-you-should-be-aware-of) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Brewing Tea over the Internet](https://www.wearedevelopers.com/videos/697-brewing-tea-over-the-internet) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)