About this role
Job title: Lead Cyber Security Engineer
About the Role This is an individual contributor role at the intersection of cybersecurity, critical infrastructure, and the energy transition. The Cyber Security Engineer will help integrate secure-by-design solutions to keep GE Vernova’s advanced grid technologies running safely and reliably in industrial and OT environments. The position offers long-term growth in industrial cybersecurity and critical power systems, contributing to operational resilience, customer trust, and the delivery of safe, reliable, future-ready technologies.
What You'll Do
- Cybersecurity Design and Implementation: Apply IEC 62443 cybersecurity requirements and best practices across system design, deployment, and maintenance; implement and maintain cybersecurity controls, including system hardening and application whitelisting for STATCOM systems in industrial/OT environments.
- Security Infrastructure and Network Segmentation: Configure and support DMZ infrastructure (Active Directory, syslog servers, and jump servers); manage firewalls including rule configuration, access control, and network segmentation; support secure network architecture for critical power and automation systems.
- Assessment, Testing, and Remediation: Conduct vulnerability assessments, mitigation activities, penetration testing, security compliance checks, and remediation efforts; identify, assess, and address cybersecurity risks in industrial environments.
- Collaboration and Support: Collaborate with engineering, IT, and OT teams to ensure secure and reliable system operation; support secure project execution and contribute to cybersecurity-related technical decisions.
- Compliance and Continuous Improvement: Maintain alignment with cybersecurity standards and best practices; support continuous improvement of security controls, processes, and documentation.
What We're Looking For
- Bachelor’s or Master’s degree in Engineering, Technology, Cybersecurity, or a related field.
- Experience in cybersecurity for industrial, OT, energy, or utility projects.
- Familiarity with IEC 62443 cybersecurity requirements and best practices.
- Experience with system hardening and application whitelisting for PCs and engineering workstations.
- Experience with DMZ infrastructure, Active Directory, syslog servers, and jump servers.
- Experience with firewall rule configuration, access control, and network segmentation.
- Familiarity with vulnerability assessment, penetration testing, and compliance checks.
- Understanding of secure network architecture for industrial and critical infrastructure systems.
- Strong communication skills and ability to collaborate across engineering, IT, and OT teams.
- Fluent written and spoken English; additional languages are an advantage.
- Ability and willingness to travel to site locations globally approximately 10% of the time.
- Who You Are: A team player with a hands-on attitude, strong communicator, able to work both independently and in teams, curious, open-minded, and willing to learn; analytical and innovative in problem solving; highly proactive with a “make things happen” mindset; motivated to work in an international environment.
Nice to Have
- IEC 62443 certifications and training.
- CISSP.
- GICSP.
Compensation & Benefits
- Relocation assistance provided: Yes
- Strong support from the team and collaboration with other Centre of Excellence groups globally.
- Opportunities for learning and professional development.
- An inspiring environment with a strong international culture and the benefits of a large company.