Overview
Skills
Job Details
Title: Senior Tripwire Operations Engineer
Location: Remote: Must be in Southern California and may go to the office 1-2x per month. Also possible travel to Las Vegas 1x a quarter.
Duration: 6+ Months
Position Overview:
The Senior Tripwire Engineer is responsible for the administration, maintenance of the Tripwire platform used for configuration baseline monitoring across operational technology (OT) environments. This role plays a key part in supporting cybersecurity compliance and operational integrity, especially within regulated industries. The engineer will collaborate with cybersecurity, infrastructure, and compliance teams to ensure system security aligns with industry standards and regulatory requirements.
Key Responsibilities:
Maintain and operate Tripwire and IP360 platforms, including policy creation, asset tagging, scanning configuration, and agent management.
Monitor configuration changes, investigate anomalies, and perform root cause analysis for deviations from baselines.
Support regulatory compliance (e.g., NERC CIP, NIST CSF) by implementing controls for configuration monitoring, security patching, and asset inventory.
Perform backend maintenance and platform updates for Tripwire agents and infrastructure.
Triage logging and monitoring failures, coordinating with asset owners as needed.
Maintain accurate asset inventory and assist with onboarding new OT systems.
Support cybersecurity audits, assessments, and evidence collection activities.
Collaborate with cross-functional teams to support change management and cybersecurity initiatives.
Identify opportunities for automation and process improvement.
Participate in disaster recovery, vulnerability management, and incident response exercises.
Qualifications:
Bachelor s degree in Computer Science, Information Systems, or related field or equivalent experience.
8+ years in cybersecurity, with experience in configuration monitoring, vulnerability management, or NERC CIP compliance.
Expert-level experience with Tripwire (Enterprise and/or IP360) required.
Familiarity with OT environments and regulatory frameworks such as NERC CIP, NIST 800-53, or ISO 27001.
Hands-on knowledge of operating systems (Windows, Linux, UNIX), networking, and security tools (e.g., Splunk, Nessus, Symantec, etc.).
Experience with scripting (e.g., PowerShell or Python) is a plus.
Strong communication, analytical, and problem-solving skills.
Cybersecurity certifications (e.g., CISSP, CISA, CRISC) preferred.