Looking for a

Cybersecurity Engineer

QUB-101
Location: Remote
Type: Full-time
Seniority: Senior

About Us:

As a Senior Cybersecurity Engineer at Kenility, you’ll join a tight-knit family of creative developers, engineers, and designers who strive to develop and deliver the highest quality products into the market.

 

Technical Requirements:

  • Bachelor’s degree in Computer Science, Software Engineering, or a related field.
  • 4+ years of cybersecurity engineering experience, including proven hands-on work with industrial control systems, SCADA environments, or critical infrastructure security.
  • Practical experience implementing or managing cloud-based email security solutions such as Abnormal Security, Proofpoint, Mimecast, or Microsoft Defender for Office 365 in production environments.
  • Working knowledge of industrial communication protocols such as Modbus, DNP3, OPC-UA, or comparable technologies.
  • Solid understanding of the differences between traditional IT and OT security approaches, particularly the availability-focused requirements of operational environments.
  • Familiarity with IEC 62443 principles and the Purdue Model as frameworks for industrial network segmentation and security architecture.
  • Understanding of NERC CIP standards sufficient to assess their potential applicability and determine relevant scope.
  • Ability to collaborate effectively with site operations, electrical, and facilities engineering teams in addition to cybersecurity stakeholders.
  • Practical experience leveraging AI and LLM-based tools such as Claude, ChatGPT, Copilot, or similar solutions to support scripting, query creation, automation, technical documentation, and security triage, while critically validating generated outputs.
  • Previous experience in military, electrical utility, manufacturing, oil and gas, or data center operational environments, particularly when combined with a transition into OT cybersecurity, is preferred.
  • GICSP certification is preferred.
  • Experience with industrial security monitoring platforms such as Dragos, Nozomi Networks, Claroty, or comparable technologies is preferred.
  • CISSP or an equivalent cybersecurity certification is preferred.
  • Previous exposure to Bitcoin mining operations or the broader energy sector is preferred.
  • Minimum Upper Intermediate English (B2) or Proficient (C1).

 

Tasks and Responsibilities:

  • Lead the complete implementation and operational rollout of Abnormal Security within Microsoft 365/Exchange Online or Google Workspace environments.
  • Establish API integrations, configure threat detection policies, and implement automated quarantine and remediation workflows for malicious emails.
  • Manage migration or coexistence with existing email security technologies such as Proofpoint, Mimecast, or Microsoft Defender for Office 365, including the retirement of redundant solutions when appropriate.
  • Optimize detection capabilities for business email compromise, vendor email compromise, executive impersonation, wire fraud, and invoice-related threats.
  • Connect user phishing-reporting processes and SOC triage workflows with Abnormal Security’s case management capabilities.
  • Develop reporting mechanisms to track email threat patterns, detection effectiveness, and remediation times for threats reaching user inboxes.
  • Enable helpdesk and SOC personnel to effectively triage email security incidents through appropriate platform training and operational guidance.
  • Develop and maintain comprehensive OT/ICS asset inventories covering PLCs, HMIs, SCADA and BMS platforms, mining fleet management and control systems, and site networking infrastructure.
  • Design and implement IT/OT network segmentation based on the Purdue architecture and IEC 62443 zone-and-conduit principles.
  • Assess and implement industrial cybersecurity monitoring technologies such as Dragos, Nozomi Networks, Claroty, or equivalent platforms to provide passive network visibility and threat detection.
  • Evaluate whether NERC CIP requirements apply to power-generation and grid-connected assets and assist with relevant compliance documentation for applicable BES Cyber Systems.
  • Adapt vulnerability and patch management processes to OT environments while considering operational availability, vendor release schedules, and controlled maintenance windows.
  • Establish OT-focused incident response procedures that support secure isolation and recovery without unnecessarily affecting physical safety or mining operations.
  • Manage cybersecurity risks associated with OT vendors, equipment manufacturers, and system integrators, including remote connectivity, firmware maintenance, and support-account practices.
  • Act as the technical bridge between cybersecurity and site operations or engineering teams, translating security requirements into practical operational actions.

 

Soft Skills:

  • Responsibility
  • Proactivity
  • Flexibility
  • Great communication skills
Join us

Ready to be part of our team?

Tell us what you're working on—we’ll help you design, scale, and deliver AI-powered software that drives real business outcomes.
Thank you!
Your message has been sent.
We will review it shortly and get back to you.