OT Cyber Security Consultant

Glasgow
2 months ago
Applications closed

Related Jobs

View all jobs

Operational Technology (OT) Security Consultant

Head of Digital Transformation

Senior Systems Administrator

OT Security Engineer

Cyber Subject Matter Expert

Technical Specialist - HV Power & Cybersecurity

OT Cyber Security Consultant
Home based with travel to Glasgow and UK-wide customer sites

Are you an OT/ICS cyber specialist who enjoys getting hands-on with red team activities in critical industrial environments?
Do you want a role that mixes penetration testing, threat emulation and resilience validation with security architecture and incident response?
Would you like to help major UK operators strengthen their cyber resilience across energy, water, renewables and manufacturing?

What's in it for you
•28 days holiday plus bank holidays
•Flexible working
•Pension scheme
•Life assurance policy
•Private health care
•Salary sacrifice programme
•Mental health assistance programme
•Cycle to work scheme
•Green car scheme
•Support in achieving or maintaining chartered status (e.g. IET, BCS, CIISEC) with professional membership fees covered

What will you be doing?
•Delivering OT-focused red team activities with specialist partners, including penetration testing, adversary simulation and incident response exercises
•Planning and executing security assessments and incident response exercises in OT/ICS environments
•Developing and implementing attack scenarios and detection use cases using frameworks such as MITRE ATT&CK for ICS
•Performing vulnerability assessments, threat modelling and attack path analysis to identify and address security weaknesses
•Supporting risk assessments and compliance against standards such as IEC 62443, NIST SP800-82 and NIS-R
•Helping deploy, configure and maintain OT cybersecurity and security monitoring solutions
•Contributing to crisis simulations, incident response plans and cybersecurity awareness training
•Preparing reports, documenting findings and recommending improvements to strengthen cyber resilience
•Supporting proposal development and wider service delivery documentation

Where you'll be doing it
You'll be joining a long-established advanced systems integrator focused on operational technology and digital transformation. They deliver complex, business-critical projects across highly regulated industrial sectors including energy, water, renewables and manufacturing, helping clients optimise performance and manage cyber risk at scale.

What you'll need
•A degree in Engineering, Computer Science or a related discipline, plus around 35 years' practical cyber security experience
•Hands-on experience in offensive security (penetration testing, vulnerability assessment, adversary simulation)
•Working knowledge of ICS/OT environments (e.g. SCADA, PLCs, RTUs) and securing IT/OT interfaces
•At least one relevant ICS/OT certification (e.g. SANS GICSP, SANS GRID, or IEC 62443)
•Familiarity with ICS protocols (MODBUS, OPC, DNP3) and core network security principles (switching, routing, firewalls)
•Experience deploying or supporting OT cybersecurity solutions and monitoring tools
•Ability to develop attack scenarios and validate security posture against recognised frameworks (e.g. NIST 800-53/82, IEC 62443)
•Exposure to incident response, including testing and improving detection and response capabilities
•Strong communication and stakeholder engagement skills, comfortable with both technical and non-technical audiences
•Eligible for UK Cyber Security Council Practitioner registration (or close to it SFIA Level 4)
•Eligible for SC clearance

We appreciate your CV may not be up to date. No problem, just apply and we can deal with that later.

Important Information: We endeavour to process your personal data in a fair and transparent manner. In applying for this role, Russell Taylor will be acting within your interest and will contact you in relation to the role, either by email, phone or text message. For more information see our on our website. It is important you are aware of your individual rights and the provisions the company has put in place to protect your data. If you would like further information on the policy or GDPR please get in touch with us

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

How Many Cyber Security Tools Do You Need to Know to Get a Cyber Security Job?

If you are trying to build or move forward in a cyber security career, it can feel like the list of tools you are expected to know never ends. One job advert asks for SIEM platforms, another mentions penetration testing tools, another lists cloud security, threat intelligence platforms, endpoint detection, scripting languages and compliance frameworks. Scroll LinkedIn and it gets worse. Everyone seems to “know” dozens of tools, certifications and platforms. Here is the reality most cyber security hiring managers agree on: they are not hiring you because you know every tool. They are hiring you because you understand risk, can think like an attacker and a defender, follow process, communicate clearly and make good decisions under pressure. Tools matter — but only when they support those outcomes. So how many cyber security tools do you actually need to know to get a job? For most job seekers, the answer is far fewer than you think. This article explains what employers really expect, which tools are essential, which are role-specific and how to focus your learning so you look credible, not overwhelmed.

What Hiring Managers Look for First in Cyber Security Job Applications (UK Guide)

If you want to stand out in the highly competitive world of cyber security job applications, you need to understand what hiring managers look for before they even finish reading a CV. Cyber security hiring managers scan applications quickly and with specific priorities in mind. They assess not just your technical ability, but your judgement, professionalism, clarity, risk awareness and evidence of impact. This guide explains what hiring managers look for first in cyber security applications across roles like Security Analyst, Security Engineer, Penetration Tester, Incident Responder, Security Architect, Governance Risk and Compliance specialists and Cloud Security positions. Use this as a practical, step-by-step checklist to sharpen your CV, LinkedIn profile, cover letter and portfolio before you apply on www.cybersecurityjobs.tech .

The Skills Gap in Cyber Security Jobs: What Universities Aren’t Teaching

Cyber security has become one of the most critical disciplines in the modern economy. From protecting financial systems and healthcare data to securing national infrastructure, cloud platforms and supply chains, cyber security professionals now sit at the frontline of digital trust. Demand for cyber security talent in the UK has surged. Job vacancies remain high, salaries continue to rise, and organisations across every sector report difficulty hiring skilled professionals. Yet despite this demand, many graduates struggle to break into cyber security roles and employers consistently report that candidates are not job-ready. The problem is not intelligence, ambition or academic effort. It is a persistent and widening skills gap between university education and real-world cyber security work. This article explores that gap in depth: what universities teach well, what they routinely miss, why the gap exists, what employers actually want, and how jobseekers can bridge the divide to build sustainable careers in cyber security.