Assesses clients’ operational technology security posture across manufacturing, energy, utilities, and critical infrastructure. Conducts stakeholder interviews, reviews OT documentation, evaluates environments against cybersecurity frameworks and regulations, develops maturity assessments and remediation roadmaps, and presents findings to technical teams and executives. Advises on OT security governance, policies, procedures, risk management, and compliance while supporting broader cyber risk advisory engagements.
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But that’s not who we are – that’s just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position Summary:
The Operational Technology (OT) Cybersecurity Consultant assesses the security posture and maturity of OT environments for clients across manufacturing, energy, utilities, and other critical infrastructure sectors. This role involves conducting stakeholder interviews, reviewing OT documentation, evaluating security practices against industry frameworks, and developing maturity assessment reports with remediation recommendations. The Consultant presents findings and strategic guidance to clients while working with Project Managers, Directors, and Delivery teams to manage project scope and timelines.
What You'll Do
- Maintain current knowledge of OT security standards, regulatory developments, and industry trends through ongoing professional development and relevant certifications
- Support and guide OT risk and security discussions with technical teams, operations staff, and executive stakeholders
- Conduct stakeholder interviews and review OT-related policies, procedures, architecture documentation, and compliance records to understand organizational OT environments and priorities
- Assess client environments against OT security practices and compliance posture against IEC 62443, NIST SP 800-82, NIST CSF, NERC CIP, NIS2 Directive, EU Cyber Resilience Act, C2M2, and other relevant OT standards and frameworks
- Develop maturity assessment and benchmarking reports identifying OT security gaps, current state findings, and prioritized remediation recommendations
- Develop sequenced remediation roadmaps with prioritized activities, timelines, and implementation guidance to address identified OT security gaps
- Advise clients on OT security program structure, governance frameworks, organizational roles and responsibilities, and recommended policies and procedures
- Present assessment findings, risk analysis, and strategic recommendations to clients and their leadership through executive briefings and detailed reports
- Support other Cyber Risk Advisory consulting engagements when necessary to maintain team capacity
What You'll Bring
- At least 4 years of working experience in operational technology security, OT risk assessment, or related infrastructure security roles
- Bachelor's degree in Engineering, Computer Science, Information Systems, or related field, or equivalent combination of education and experience demonstrating OT security expertise
- Direct experience in OT environments such as manufacturing, energy, utilities, or other critical infrastructure sectors
- Hands-on experience with Industrial Control Systems (ICS) and Supervisory Control and Data Acquisition (SCADA) systems
- Knowledge of control system technologies, industrial automation architectures, and OT-specific networking environments
- Expertise in OT security assessment frameworks including IEC 62443, NIST SP 800-82, and industry-specific requirements such as NERC CIP
- Understanding of emerging OT regulatory requirements including NIS2 Directive, EU Cyber Resilience Act, and other sector-specific directives
- Strong analytical and critical thinking abilities
- Strong oral and written communication skills when presenting technical findings to both technical and non-technical audiences
Bonus Points
- GICSP (Global Industrial Cyber Security Professional) certification
- CISM certification
- CISSP certification
- GRID (GIAC Response and Industrial Defense) certification
- GCIH (GIAC Certified Incident Handler) certification
- C2M2 (Cybersecurity Capability Maturity Model) assessment experience
- NIST Cybersecurity Framework (CSF) assessment and implementation experience
- Incident response experience in OT or critical infrastructure environments
- Business continuity or disaster recovery experience in OT environments
- Experience with safety-critical systems and understanding of functional safety standards (IEC 61508, ISO 10218)
- Technical writing experience for policy and procedure development
- Cloud platform experience relevant to OT environments or industrial IoT implementations
Why You’ll Want to Join Us
At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.
Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].
Similar Jobs
Artificial Intelligence • Big Data • Healthtech • Software • Biotech
Leads end-to-end IVD, companion diagnostic, clinical trial assay, tumor profiling, and SaMD development programs. Aligns internal cross-functional teams and biopharma partners across strategy, validation, clinical operations, regulatory submission, manufacturing, and commercialization. Owns governance, milestones, budgets, resources, risks, and partner relationships while delivering programs through regulatory approval or pivotal clinical trials.
Top Skills:
Analytical ValidationAssay DevelopmentBioinformaticsBlaClinical ValidationCompanion Diagnostics (Cdx)Design ControlsEu IvdrFda Regulatory RequirementsIndIvdMaaNdaPhase I/Ii/IiiSoftware As A Medical Device (Samd)
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Lead product marketing strategy and go-to-market execution for Falcon Exposure Management. Develop positioning, messaging, launches, thought leadership, web strategy, and field enablement while partnering with product, sales, marketing, and executive teams. Translate cybersecurity capabilities into customer value and business outcomes, guide market education, analyze buyers and competitors, and strengthen CrowdStrike’s category leadership. The role requires deep exposure management expertise, strong cybersecurity knowledge, exceptional communication skills, and 12–15+ years of relevant experience.
Top Skills:
AIB2B SaasCloud SecurityCybersecurityEnterprise SoftwareExternal Attack Surface ManagementFalcon Exposure ManagementIdentity SecuritySecurity OperationsVulnerability Management
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Lead program management for CrowdStrike’s Office of Adversary Strategy, coordinating complex cross-functional projects from scoping through delivery. Responsibilities include managing schedules, dependencies, risks, metrics, communications, change management, process improvements, and escalations. The role partners with technical teams and leadership, applies Agile project management practices, coaches teams through obstacles, and uses AI technologies to improve decision-making, workflows, and business outcomes.
Top Skills:
AgileArtificial IntelligenceChatgptClaudeExcelGeminiGenerative AiJIRAKanbanScaled Agile FrameworkScrumSystems Development Lifecycle
What you need to know about the NYC Tech Scene
As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.
Key Facts About NYC Tech
- Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
- Key Industries: Artificial intelligence, Fintech
- Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
- Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory


