[Remote] Engineer/Senior Engineer, Network/Server OT
Note: The job is a remote job and is open to candidates in USA. TerraForm Power is a platform company of Brookfield that focuses on renewable energy solutions. They are seeking a hands-on Network/Server OT Engineer to design, secure, and operate network and server infrastructure for their renewable energy portfolio, including the Remote Operation Center and remote generation sites.
Responsibilities
- Design and implement secure, resilient network and server architectures for T-ROC and support field sites (wind, solar, battery storage)
- Evaluate and introduce new technologies (hardware, software, cloud, security) that improve reliability, scalability, and compliance; create solution designs, reference architectures, and implementation plans
- Build and support virtualized environments (VMware/Hyper-V), Windows Server, Azure and AWS environments as required for OT environments
- Configure and manage HP/HPE/Intel or similar server platforms and Synology NAS and similar for storage, backup, and replication; optimize performance and capacity planning
- Support T-ROC infrastructure, including EMS/SCADA networks, historian, time synchronization (NTP/PTP), and reliable telemetry paths
- Ensure high availability, redundancy, and failover across T-ROC and remote sites; manage DR/BCP strategies, tabletop exercises, and recovery runbooks
- Collaborate with Operations, Compliance, and Asset Management to align changes with grid operations, dispatch needs, and regulatory obligations
- Working with IT and Compliance, maintain security controls aligned to NERC CIP, with practical application in OT environments
- Design and enforce network segmentation between IT and OT, least-privilege access, MFA, secure remote/vendor access, and Zero Trust principles where applicable
- Lead/participate in incident response, cyber event triage, and post-incident reviews; maintain playbooks and test recovery procedures
- Own technical evidence for network/server controls (configs, logs, diagrams, test records) and support internal and external audits as SME
- Deploy and maintain monitoring/observability across servers, network devices, applications, and site communications
- Implement configuration management, baseline verification, and change management processes that adhere to NERC CIP (including approvals, testing, back-out plans, and evidence)
- Maintain accurate OT inventories (hardware, software, firmware), network diagrams, data flow maps, and access lists; ensure audit-ready documentation
- Provide support for OT network/server issues, perform root cause analysis, and drive corrective actions
- Schedule and execute maintenance windows, firmware/patch cycles, and lifecycle refresh plans
- Coordinate with vendors and OEMs for support, RMA, security advisories, and product roadmaps
- Collaboration across IT, OT, Compliance, Operations, Asset Management, Operations, and external partners
Skills
- Bachelor's degree in Computer Science, Electrical/Computer Engineering, Information Systems, or related field; or equivalent practical experience
- 5+ years managing enterprise networks and servers (Windows/Linux), including virtualization (VMware/Hyper-V), storage/NAS (Synology or similar), and core Microsoft services (AD, DNS, DHCP, GPO, PKI)
- Hands-on experience with server platforms (deployment, firmware/low level management such as ILO, performance tuning)
- Strong knowledge of routing/switching, VLANs, ACLs, VPNs, NAT, QoS, BGP/OSPF, and secure remote access
- Working knowledge of AWS and Azure networking and security
- Experience implementing security monitoring, patch management, and backup/restore for servers and NAS
- Familiarity with NERC CIP concepts for Low Impact assets and Medium Impact control centers, plus OT fundamentals
- Proficiency with scripting/automation (PowerShell, Bash, Python) for configuration, monitoring, and evidence collection
- Strong communication skills—able to translate technical requirements for operations, compliance, and executive stakeholders
- A strong personal commitment to continuous improvement
- Value excellence in safety and environmental performance
- Ability to travel to remote generation sites (wind/solar/storage), substations as needed (~10%)
- Participate in on-call rotation and planned after-hours maintenance windows
- Ability to lift and install 50+lbs
- 10+ years experience spanning IT/OT environments
- Experience with direct responsibility for control center infrastructure
- Demonstrated leadership in architecture, program design, audit readiness, and cross-functional stakeholder management
- Proven track record implementing defense-in-depth and segmentation for OT networks, vendor remote access, and interconnection security (e.g., ICCP/TASE.2)
- Ability to set standards, mentor engineers, and drive large-scale changes across diverse sites
- Background in battery storage communications and site control systems; knowledge of inverter/plant controller vendor ecosystems
- Exposure to Zero Trust, micro-segmentation, and Privileged Access Management in industrial or utility OT environments
- Experience with SOAR, configuration drift detection, and compliance evidence automation
- Monitoring/Control: SNMP/Syslog/NetFlow, Windows Eventing, OT telemetry integrations, SCADA/EMS monitoring
- Automation: PowerShell, Python, Ansible (optional), Git., Bash, Batch
Company Overview
Company H1B Sponsorship