-
Principal Engineer - Operational Technology…
- MTA (Jamaica, NY)
-
Principal Engineer – Operational Technology Systems Security Compliance (Signal, Communications, Power)
Job ID: 13589
Business Unit: Long Island Rail Road
Regular/Temporary: Regular
Department: Chief Engineer
Date Posted: Nov 5, 2025
Description
Job Title: Principal Engineer Operational Technology Systems Security Compliance (Signal, Communications, Power)
Department: Engineering
MTA Agency: Long Island Rail Road
Primary Location(s): Hillside Support Facility
Salary: $189,989.68
Regulated/Safety Sensitive: Safety Sensitive
Union Affiliation: N/A
Closing Date (if applicable): Open until filled
Shift (if applicable): Day
Chartered in 1834, the Long Island Rail Road (LIRR) is the largest, busiest, and oldest continuously operating commuter railroad in the United States. In 2024, this 24/7/365 operation served 75.5 million riders on a system that stretches nearly 120 miles – from Penn Station and Grand Central Madison in Manhattan to Montauk on the eastern tip of Long Island.
JOB SUMMARY:
The purpose of the Principal Engineer Security Compliance – Operational Technology (OT) Systems position is to support the MTA’s Cybersecurity program in coordination with the MTA IT Cybersecurity (CS) group. This position will have a direct reporting relationship to LIRR’s Engineering Department with a dotted line reporting relation to the office of the CISO, MTA IT Cybersecurity. In coordination with MTA ITCS, this position will support the implementation of MTA’s Cybersecurity programs for LIRR, reduce cybersecurity risks, ensure compliance with MTA, TSA, State, and Federal requirements, and provide technical expertise in managing and analyzing control system risks regarding critical infrastructure. Critical infrastructure includes Centralized Traffic Control (CTC), Power, Signaling, Communications, Supervisory Control and Data Acquisition (SCADA), Positive Train Control (PTC), ground-based fiber network and voice/data radio mission, and all critical systems at the office controls centers and field locations In addition, the position will manage design review and oversight of third-party design and construction work that is associated with Operational Technology systems, including network architecture, hardware, and software related to Cybersecurity within the LIRR. Assist in the successful implementation of Cybersecurity programs while assuring the daily operation of the LIRR and will provide 24/7 emergency response for any Cybersecurity issues. As part of an operating department, the position is also responsible for providing general 24/7 support to LIRR operations and/or responding to incidents impacting the system, such as derailments, storm-related events, etc.; this includes after-hour and weekend reporting, and coverage as assigned.
DUTIES AND RESPONSIBILITIES:
+ Coordinate, liaise, and work in close alignment with MTA IT and Cybersecurity Office and their partners to satisfy and ensure the adaptation of the MTA’s application of NIST Cybersecurity Framework, IEC 62443 standard, MTA IT, New York State, TSA, CISA, FTA, and FRA Cyber related mandates and MTA IT Cybersecurity initiatives.
+ Coordinate efforts with the MTA IT Cybersecurity group to develop and maintain disaster recovery and contingency plans for each OT System to provide LIRR with minimal interruptions in service. Establish systems to monitor compliance with MTA IT architectural standards and ensure technical integrity. Develop and implement action plans to improve security in their security domain(s) and related technology as required.
+ Support MTA IT Cybersecurity to perform risk assessments, data analytic tools, operational process reviews, asset information, tabletop exercises, and collaboration with security engineers, architects, developers, vendors, and business units to constantly improve the overall security of the LIRR OT infrastructure.
+ Maintain infrastructure, and applications technology for LIRR OT Systems to support a secure Cybersecurity posture by hardening OT infrastructure and applications technology, guiding, responding, and analyzing LIRR systems in the reduction and containment of Cybersecurity risk identified by MTA IT Cybersecurity.
+ To comply with TSA mandates and MTA policies, provides system logs for security incident detections, asset information and architecture information, implements strong authentication and access controls such as usernames and passwords, patch the systems when appropriate, keep up to date incident response documentation and documented recovery procedures.
+ Analyze the current state of the operational technology infrastructure and identify opportunities for improvement to ensure systems meet business needs of Operational Technology (OT). Contribute to changes to establish roadmaps, document them effectively, and execute the implementation of changes in areas of responsibility. Act as a technical resource for multiple technologies, with vast knowledge of the OT capabilities and constraints, supported to continually improve system security, effectiveness, and efficiency.
+ Analyze cross-technology/platform issues within the LIRR OT infrastructure and address problems factoring in an understanding of the current and future architectures in accordance with MTA IT architectural standards to ensure optimal performance and reliability across systems. Interact with major providers at the technical expert level to address mission-critical issues, evaluate ongoing vendor service levels, and enforce SLAs and penalties.
+ Build and maintain effective working relationships with MTA IT Cybersecurity Stakeholders. Lead and participate in cyber-operational investigations in accordance with MTA IT and Cybersecurity Office and communicate findings to relevant business units to help improve the Cybersecurity posture. Conduct, validate, and maintain risk assessments and processes to address potential threats.
+ Partner with MTA IT Cybersecurity to research and evaluate new technologies with direction from MTA IT Cybersecurity to secure and manage risks in OT environments.
+ Promote security standards and support efforts to expand and migrate to future security architecture to improve security and share learning.
+ Support the entire LIRR territory and OT’s real-time head-end systems in day-to-day operation and perform other related duties as assigned.
+ Compile and analyze data for management reporting and metrics. Monitor relevant information sources to stay up to date on current attacks and trends which may affect LIRR operations. Identify and determine the potential impact of threats and vulnerabilities in operational technology areas and processes while documenting and communicating risks.
+ Develop documents and track recommendations to remediate process issues, threats, and vulnerabilities in accordance with MTA IT Cybersecurity Office. Participate in creating and updating enterprise Cybersecurity documents (IRPs, policies, standards, baselines, guidelines, and procedures) under the direction of the LIRR senior management and MTA IT Cybersecurity groups.
+ Remain current with Transportation and ICS/SCADA OT protection models for existing applications and new system implementations. Participate in the evaluation of new technologies to determine applicability to and best meet the needs of LIRR and constituent agencies. Provide a proactive approach to Cybersecurity by anticipating needs and performing investigations of security incidents related to LIRR operations and coordinate efforts with the MTA-IT Cybersecurity. Remain current on latest Cybersecurity industry trends and best practices in coordination with MTA IT Cybersecurity direction.
+ Ensure a safe working environment and adherence to guidelines of company safety policies and procedures. Maintain positive labor relations through the managing of all labor relations activities within the department. Ensure compliance with union contracts. Lead by example.
+ Support development of operating budget impacts with respect to OT infrastructure under tight financial constraints prior to experiencing impacts. Management of controls to identify critical issues, checks and balances for ensuring dissemination of this information to senior management.
+ Perform other assignments as requested by Senior Management.
REQUIRED EDUCATION AND EXPERIENCE:
+ Bachelor’s degree in engineering, Computer Engineering, Computer Science or related discipline. An equivalent combination of education, certifications and/or experience may be considered in lieu of a degree.
+ Minimum six (6) years of Operational Technology experience, including Networking and Security.
+ Minimum four (4) years of blended experience with Signal, Power, PTC, and other Industrial Control systems, office and field communications, system logics, cybersecurity, and applications, preferably at the LIRR.
+ Strong understanding of company/department operations, policies and procedures.
+ Knowledge of Office Control Systems as they relate to Signal, Power, Communications and PTC installation, testing, and commissioning.
+ Strong knowledge of Operational Technology Hardware and Software configuration management and processes
+ Experience working with real-time mission-critical operations control system
+ Strong knowledge of Operational Technology networks and server applications
+ Strong knowledge of application server, network monitoring, operating systems and security
+ Strong analytical skills and ability to analyze new and existing products, equipment and/or procedures.
+ Must be able to recommend improvements or replacements to better support the Operational Technology Systems
+ Strong working knowledge of Microsoft Office, PowerPoint and/or comparable applications
+ Must be able to work in a high-profile/high-pressure environment.
+ Strong interpersonal skills with the ability to interact with internal departments and outside agencies, including MTA-IT Cybersecurity and their partners.
+ Ability to work in a matrixed environment.
+ Ability to plan, forecast, set objectives/goals to support corporate goals and determine course of action.
+ Must possess strong human relations, communication, interpersonal, problem solving, decision making, and judgment skills.
+ Must demonstrate a high level of initiative, professional integrity and demeanor.
+ Must demonstrate the ability to create an environment that respects individual differences and allows employees to work to full potential.
PREFERRED QUALIFICATIONS:
+ Professional Engineer’s License
+ Master’s degree in Computer Engineering, Computer Science, or related discipline.
+ Cybersecurity certifications such as CISSP, CISM, CEH are preferred
+ Experience in LIRR Engineering/Operations.
+ Qualification in respective discipline (i.e., Signal, Communications, or Power) on applicable equipment.
+ Scripting or programming skills (PERL, Python, PowerShell, etc.)
+ Knowledge of telecommunication copper, fiber plants, SONET, and DWDM.
+ Demonstrated Project Management skills with strict adherence to budget and deadlines.
+ Working knowledge of union rules specific to the LIRR Engineering Department with experience managing within a complex, unionized environment.
BENEFITS:
+ Commuting Assistance – based on operating MTA agency (complimentary transportation pass within the MTA’s jurisdiction and tax-advantaged accounts)
+ Low Premium – High Quality Health Insurance Plans (lifetime coverage for eligible retirees and their dependents)
+ Pension plans and retirement savings accounts for eligible employees
+ Generous Paid Time Off and Holidays provided.
+ Tuition Reimbursement for eligible employees
+ Employee Assistance Programs
+ MTA Exclusive Employee Discount Programs
+ Work Life Services team and Office of the Chaplains unit
+ Employee Resource Groups
+ #TapYourCareer
+ #MTACareers
OTHER INFORMATION:
+ Actual salary offers may vary based on individual work experience. The annual salary range is subject to change and may be modified at the company’s discretion.
+ Employees driving company vehicles must complete defensive driver training once every three years for current MTA drivers; or within 180 days of hire or transfer for an employee entering an authorized driving position.
+ Safety Sensitive
+ LIRR: In addition to meeting the minimum requirements of the position, the selection process may include but is not limited to, a pre-screening assessment (i.e., physical, written, and/ or practical evaluation) and interview. Candidates forfeit further consideration in the process if they fail to participate in any step of the process when scheduled. Make-up dates/times will not be given. In addition, LIRR employee applicants must be in their current position for the 12 months immediately preceding the close date of this posting and must possess a satisfactory work history, including attendance and discipline record. A record of more than ten sick days without medical documentation in two of the last three years is considered unsatisfactory attendance. Not all qualified applicants are guaranteed an interview due to the competitive selection process. A medical examination and safety-sensitive drug/alcohol test may also be required.
+ #TapYourCareers
+ #MTACareers
EQUAL EMPLOYMENT OPPORTUNITY / ADA DISCLAIMER:
MTA and its subsidiary and affiliated agencies are Equal Opportunity Employers, including those concerning veteran status and individuals with disabilities. The MTA encourages qualified applicants from diverse backgrounds, experiences, and abilities, including military service members, to apply. If you require reasonable accommodation for a medical condition or disability to participate in the job application or interview process, please notify your MTA representative once you have been contacted regarding the role.
-
Recent Jobs
-
Principal Engineer - Operational Technology Systems Security Compliance (Signal, Communications, Power)
- MTA (Jamaica, NY)
-
Information System Security Engineers
- Artera Technologies (Annapolis Junction, MD)