Senior IT/OT Security Consultant

Bureau Veritas
Hamburg, Germany
12 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Languages
English, German
Job source

Tech stack

Cyber Security Supervisory Control and Data Acquisition (SCADA) Modbus Tisax Mitre Att&ck Industrial Software

Job description

  • Perform advisory services on our client’s SCADA/ICS/OT infrastructure for small to large-sized projects. This will include security risk assessments based on IEC 62443 methodology, gap assessments, security maturity reviews, trainings and consultancy support.
  • Provide support in security design and security architecture of industrial networks and provide recommendations to improve the design.
  • Assist customers in establishing or extending their SCADA/ICS/OT security program by building joined roadmaps.
  • Apply secure by design principles, threat modelling, and risk assessment to OT products.
  • Demonstrate strong knowledge of the IEC 62443 set of standards, the Cyber Resilience Act (CRA), NIS2, and industry-specific standards like TISAX, UR E26/E27, EASA Part-IS and so on.
  • Demonstrate strong knowledge of Germany-specific cybersecurity agencies, topics and regulations like BSI, KRITIS, and more detailed sector-specific regulations
  • Deliver OT Cybersecurity training courses on IEC62443, CRA, and other standards and regulations.
  • Collaborate with engineering and supply chain teams to implement and verify effective security controls.
  • Interpret security vulnerabilities, risks, policies, and procedures concerning the operational business impact.
  • Manage and execute assessments based on internationally recognized frameworks or specific frameworks developed by Bureau Veritas Cybersecurity and support in certification journey.
  • Support our sales with your technical expertise.

Requirements

  • Experience with industrial systems such as PLCs, DCS, or SCADA.
  • Familiarity with industrial protocols such as Modbus or IEC 104.
  • Experience conducting risk assessments and threat modelling.
  • Excellent communication skills in both German and English. You can effectively engage with stakeholders at all levels, from C-level executives to technical specialists and non-technical contacts.
  • Knowledge of standards and frameworks such as IEC 62443, MITRE ATT&CK for ICS, NIST CSF, or NIST SP 800-82.
  • Experience sharing knowledge, for example through white papers, presentations, or speaking engagements or ambition to do so would be a big plus.
  • A proactive personality. You think along with clients and know how to bring people on board with your ideas.

About the company

Imagine your customer is a leading manufacturing company or critical infrastructure operator, specializing in production of specialized products or the delivery of essential services that keep industries and communities running. As an OT security professional, your mission is ambitious: to optimize operational efficiency, ensure compliance with industry-leading certifications, and protect the systems at the heart of your client’s operations.

That’s where you step in. Through targeted training, you introduce your client to the world of IEC 62443, the gold standard in OT cybersecurity, and CRA, the main cybersecurity regulation for products. Our gap assessments identifies weaknesses in both processes and systems, ensuring a clear path to enhanced cybersecurity and compliance. You work side by side with your client, providing advisory and support to address challenges with precision and confidence.

With our expertise in risk assessments and independent OT security assessments, you empower your client to achieve exceptional cyber resilience. From securing industrial control systems to safeguarding critical processes, your efforts not only strengthen defenses but pave the way for certification success.

Your success story? It’s not just about compliance, it’s about ensuring your client’s OT environment is resilient, secure, and ready for the future.

As the cybersecurity division of Bureau Veritas we are looking to expand our team of consultants in Germany. And for this we are looking for a Senior IT/OT Security Consultant based in the Germany to be involved in OT security projects for various industries., What can you expect at Bureau Veritas Cybersecurity?

At Bureau Veritas Cybersecurity you work in an environment where trust, expertise and social impact are key. We believe that you can really make a difference when you get the space to deepen your knowledge and actively contribute to a safer digital society. What does that look like in practice?

  • Impactful growth: The cybersecurity division of Bureau Veritas is rapidly growing, and you will have the chance to grow along with it. Whether it’s about taking on more responsibilities, increasing your visibility within and outside the organization, or pursuing training and education, your career development is a priority. Growth at Bureau Veritas Cybersecurity occurs also by participating in projects that have a real impact on society. Whether protecting smart devices from hacking attempts or performing an IT audit for the government, you’ll build your skills while making a difference. You’ll receive support through clear growth paths, regular performance reviews and the opportunity for active learning.
  • Working with a diverse client portfolio: Our clients come from many industries and contexts, but have one thing in common: they rely on our expertise to meet security and compliance requirements and to build cyber resilience. In your role, you’ll help protect people, processes and technology within IT, OT and IoT environments, supporting clients in identifying risks and addressing them with confidence.
  • Work within a highly skilled community: Cybersecurity does not stop at national borders, and neither does the way we work. With teams around the world, you’ll work with colleagues from different countries, disciplines and cultures, connected by a shared commitment to quality and integrity. We share knowledge, learn from each other and develop new solutions together, supported by initiatives such as our R&D programs and hands-on test labs.
  • A culture of respect, connection and well-being: We actively pursue a safe, inclusive and positive work environment. Our values define how we collaborate, give feedback and assess performance. We support well-being and team bonding through team activities, access to OpenUp.com and by encouraging a healthy work-life balance with flexible work options. We believe in celebrating successes and creating a good work environment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:15 min

Overcoming cultural resistance to achieve international security compliance standards

Ali Yazdani Ali Yazdani · World Congress 2023

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

1:23 min

Raspberry Pi and Modbus for feeder control

Øivind Heggland Øivind Heggland · Europe 2026 Virtual

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

1:12 min

Abstracting physical machine boundaries using industrial edge gateways

Freya Menzel Freya Menzel +1 · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all