Overview
Skills
Job Details
Job Title: ICS Network Architect
Location: Tampa, FL (Onsite 4 days office / 1 day remote; travel to sites within Tampa Electric territory as needed)
Duration: 24 Month Contract
Position Overview
The ICS (Industrial Control Systems) Network Architect is responsible for designing, implementing, and maintaining secure and reliable network infrastructures that support critical industrial operations. This role requires strong expertise in ICS and OT environments, ensuring compliance with cybersecurity standards, seamless integration between IT/OT systems, and optimized network performance across substations and control centers.
Primary Duties & Responsibilities
Design & Architecture
Develop and implement ICS network architectures, including LANs, WANs, and industrial Ethernet.
Establish network segmentation, DMZs, and zero-trust security models tailored for OT environments.
Document and refine network topologies, including communication paths between Data Centers, Substations, IEDs, protective relays, RTUs, and SCADA masters.
Security & Compliance
Implement firewalls, VPNs, intrusion detection/prevention systems, and secure remote-access solutions.
Ensure compliance with NERC CIP standards and other industry frameworks (e.g., IEC 62443, NIST SP 800-82, ISO 27001).
Collaborate with cybersecurity teams to enforce network access control, patch management, and monitoring best practices.
Operations & Support
Configure IP addressing, VLANs, and firewall rules to align with corporate and regulatory requirements.
Manage the transition from serial to IP, including installing, configuring, and testing serial-to-IP converters for legacy substation equipment.
Troubleshoot real-time communication issues between field devices and SCADA systems.
Monitor and optimize network performance for reliability, redundancy, and security.
Collaboration & Documentation
Partner with IT, OT, and SCADA engineers to validate and optimize data flows.
Maintain up-to-date network diagrams, device configuration records, and standard operating procedures (SOPs).
Coordinate with vendors on equipment procurement, deployment, and upgrades.
Required Experience
5+ years in network architecture, preferably within industrial control systems (utilities, energy, or critical infrastructure).
Strong knowledge of TCP/IP, DNS, DHCP, routing protocols (OSPF, BGP).
Experience with ICS protocols (DNP3, Modbus, IEC 61850, Goose).
Experience supporting substations and control house environments.
Proven ability to troubleshoot complex network/security issues in ICS/OT environments.
Certifications (Preferred)
CCNA, CCNP, or CISSP
Knowledge of compliance frameworks: NERC CIP, PCI DSS, ISO 27001
Technical Skills
Network segmentation & redundancy strategies
Industrial Ethernet and SCADA communications
Firewalls, VPNs, IDS/IPS
Azure/Cloud networking (a plus)
Strong documentation and design skills