Senior Cyber Consultant (OT environment)
- Full-time
Company Description
Wherever our customers are in the world, we help them digitalise and optimise their remote business processes using advanced hybrid network solutions and digital technologies. At Marlink, we empower our customers worldwide by helping them digitalize and optimize their remote operations through advanced hybrid network solutions and cutting-edge digital technologies. Our teams operate globally, harnessing innovation, expertise, and applied technology to connect systems and people, driving success in today’s digital-first world. With 1,500 employees in over 30 countries, and customers in the maritime, energy, and government sectors, we push boundaries to deliver excellence.
As Senior Cyber Consultant (OT environment), you will support clients in securing and governing industrial and operational technology environments by applying strong cybersecurity and IT foundations to OT/ICS use cases, while progressively developing deeper operational technology knowledge. The role translates cybersecurity principles, governance requirements, and architecture practices into practical controls that work within safety, availability, and operational constraints.
Job Description
- Assess OT/ICS environments from a cybersecurity and risk perspective, including architecture, segmentation, remote access, monitoring, hardening, and governance.
- Design and review layered security architectures across enterprise, DMZ, and OT environments, including trust boundaries, conduits, and least-privilege access models.
- Support asset discovery, dependency mapping, attack path analysis, and prioritization of remediation actions based on risk and operational feasibility.
- Define and assess controls related to identity, logging, detection, network telemetry, firewalling, third-party access, and defense in depth.
- Contribute to OT monitoring strategy, use cases, alerting, onboarding of telemetry, and integration into SOC processes and incident workflows.
- Support incident preparedness and response planning across IT and OT, including exercises, escalation paths, decision-making, and recovery playbooks.
- Translate regulatory and control framework requirements into practical OT security requirements, standards, procedures, and implementation roadmaps.
- Map environments and improvement plans against IEC 62443, NIST, ISO 27001, NIS2, and applicable sector regulations or client standards.
- Participate in workshops, interviews, site visits, and discovery sessions to understand operational context and validate how systems function in practice.
- Produce clear and decision-oriented deliverables, including assessment reports, architecture papers, control statements, remediation plans, and governance artefacts.
- Work closely with OT engineers, operators, project teams, and client leadership to align cybersecurity measures with operational and business objectives.
Qualifications
- Solid experience in cybersecurity, information security, network security, security architecture, SOC, detection engineering, GRC, or incident response.
- Strong knowledge of core cybersecurity principles including identity and access management, hardening, logging, monitoring, segmentation, remote access security, and risk management.
- Strong understanding of enterprise network design and security concepts, including routing, switching, VLANs, firewalls, DNS, DHCP, MFA, jump hosts, and access control.
- Experience with security frameworks and regulatory mapping such as IEC 62443, NIST, ISO 27001, NIS2, or equivalent standards.
- Experience assessing architectures, controls, risks, and remediation priorities in complex environments.
- Ability to understand and document data flows, system interfaces, trust boundaries, and dependencies.
- Interest and ability to build stronger knowledge in OT/ICS operations, industrial processes, control system architectures, safety priorities, and operational constraints.
- Experience facilitating workshops, writing reports, presenting findings, and engaging both technical and non-technical stakeholders.
- Bachelor’s degree in cybersecurity, computer science, information systems, engineering, or a related discipline is preferred.
- Relevant cybersecurity certifications are an advantage.
Soft Skills:
- Strong consulting mindset with the ability to balance security objectives with operational realities.
- Prepared to undertake regular travel - both domestic and international - to support client engagements.
- Excellent communication skills across technical teams, operations, and leadership audiences.
- Structured thinking and strong problem-solving ability in ambiguous environments.
- Ability to listen, learn quickly, and absorb unfamiliar industrial or operational domains.
- Professional stakeholder management and expectation management skills.
- Strong ownership, delivery discipline, and attention to quality.
- Collaborative approach and confidence working across IT, OT, engineering, and governance teams.
- Motivation to expand from cyber/IT into OT/ICS cybersecurity in a hands-on consulting role.
Additional Information
What we offer:
- Growth in an open-minded culture with very little hierarchical macrostructure.
- Continuous development and advancement through industry-relevant certifications and internal/external training/workshops.
- Challenging local and global projects involving current solutions.
- Learning and sharing experiences with well-known and respected experts in the field of information/cybersecurity.
- Positive, motivating, international work environment.
- Hybrid work – office work + possibility of working from home by agreement.
- Flexible working hours.
- Additional and supplementary health insurance packages.
- Monthly fee for transportation and hot meal.
- Multisport membership.
- Pet-friendly office.
- Social events and team bonding gatherings.