Principal Cyber Security Consultant
AtkinsRéalis · Birmingham, United Kingdom
About The Role
Join AtkinsRéalis, a leading global engineering and design consultancy, as a Principal Cyber Security Consultant. In this role, you will lead complex OT cyber security projects, establish robust governance frameworks, develop enterprise security policies, and build strong client relationships. You will also oversee multiple project teams, contribute to business development, and serve as a thought leader in OT cyber security. The ideal candidate will have extensive experience in securing OT environments, exceptional communication skills, and a strong familiarity with OT security standards and regulations.
- Lead and oversee multiple complex Operational Technology (OT) cybersecurity projects, ensuring alignment with client business objectives and risk appetite.
- Establish robust cybersecurity governance frameworks tailored to OT environments, spearheading comprehensive security risk assessments and gap analyses.
- Build and maintain strong working relationships with clients, acting as a trusted adviser and managing stakeholder expectations proactively.
- A self-driven attitude with a keen interest in emerging technologies and security innovations. You keep up to date with the latest developments in OT cyber security and are committed to continuous professional development and skill enhancement
- Thought Leadership & Industry Involvement: Active involvement in the cyber security community – such as publishing articles, speaking at conferences, or contributing to standards – will be seen as a plus. This demonstrates a commitment to the field beyond day-to-day project work and aligns with the thought leadership aspect of the role
- Leadership & Delivery: Demonstrable ability to spearhead teams and manage complex security engagements on live industrial sites. Experience conducting engagements on operational plants – including performing risk assessments and deploying appropriate security controls – is required. You can coordinate multiple projects concurrently, delivering results that meet client priorities and deadlines
- Certifications & Professional Memberships: Possession of industry certifications with a focus on OT security is highly desirable. Examples include GIAC Global Industrial Cyber Security Professional (GICSP) or ISA/IEC 62443 certifications for OT, and more general certifications like CISSP or CISM. Chartered or full membership of relevant professional bodies (e.g. IISP, BCS, IET) is also advantageous
- Exceptional Communication Skills: Excellent verbal and written communication skills. You listen actively to client needs and can explain complex cyber security concepts in clear, non-technical language. Able to confidently present to both engineers and C-suite stakeholders, adjusting your approach to suit the audience
- Standards & Regulatory Knowledge: Strong familiarity with OT security standards and frameworks such as IEC 62443 and NIST CSF, and with relevant regulations like the NIS Regulations and HSE OG-0086. Ability to apply these frameworks in practice and guide organisations through compliance and accreditation processes
- Security Clearance & Travel: Ability to obtain the necessary UK security clearance for working on sensitive projects (this will be discussed and processed as needed). Willingness to travel throughout the UK to client sites, with flexibility for short-term travel as required
- As a Principal Consultant, you will bring deep expertise in OT cyber security and the ability to spearhead strategic engagements, building trust with clients and delivering innovative solutions
- Project Management & Stakeholder Engagement: Outstanding organisational skills with the ability to juggle multiple tasks and projects at once. Delivers high-quality work under pressure, consistently meeting tight deadlines. Capable of balancing business and client priorities while effectively managing stakeholder expectations
- Teamwork & Collaboration: A proven team player who can also take initiative and spearhead. Able to work effectively both independently and within multidisciplinary teams in a complex, matrix organisation. You foster collaboration and can influence without direct authority when working across different teams or departments
- Specialist Expertise: Deep expertise in at least one relevant sub-domain of cyber or information security (for example, security architecture design, incident response, cyber risk management, security training, or policy development) is a bonus. This could be demonstrated by significant project experience or thought leadership in that area. Such expertise complements the broad knowledge required and can enhance our team’s capabilities
- Technical Mastery in OT: In-depth knowledge of the OT system lifecycle – how OT systems are specified, procured, designed, deployed, and operated – and how to embed cyber security best practices into each stage. Hands-on experience with security technologies commonly used in industrial control systems and SCADA environments is expected
- We are seeking a knowledgeable, enthusiastic, and conscientious professional with extensive experience in securing Operational Technology (OT) environments (such as energy, utilities and transportation)
- Extensive OT Cyber Security Experience: Proven experience delivering technical cyber security consultancy in OT environments (e.g. energy, utilities, transportation). This includes a deep understanding of the unique risks in OT systems versus IT systems. You should have a strong track record implementing security in industrial control system contexts and securing critical national infrastructure
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring