OT Cyber Security Consultant

2025 – Present

I joined a top-tier global consulting firm to expand my cybersecurity expertise into strategic consulting across multiple industries and client environments. This role allows me to apply the deep technical knowledge gained in industrial cybersecurity to broader business challenges while developing high-level consulting and client management skills.

Working within their cybersecurity practice provides exposure to diverse client challenges, from critical infrastructure protection to digital transformation security strategies. The role combines technical expertise with strategic business consulting, helping organisations navigate complex cybersecurity decisions that impact their operations and growth.

Focus Areas:

  • Strategic cybersecurity consulting across multiple industries
  • Critical infrastructure protection and compliance strategies
  • Technical solution architecture and implementation guidance
  • Client relationship management and business development
  • Cross-functional project leadership and stakeholder engagement

Lead OT / Automation Cyber Security Engineer

2022 – 2024

I joined a large agro-chemical company through their apprenticeship program and rapidly advanced to leading cybersecurity initiatives for a highest risk, top-tier COMAH critical national infrastructure site. My role encompassed developing and enforcing global OT security standards while managing complex security transformation projects.

The scope of responsibility expanded significantly as I demonstrated capability to handle enterprise-scale security challenges. I lead security architecture decisions that impact global operations and provide advisory support to other sites worldwide.

Key Technical Achievements:

  • Security Architecture Transformation: Independently designed and deployed IEC 62443-compliant zone and conduit network segmentation, achieving a 99.5% reduction in attack surface while maintaining operations
  • Threat Mitigation Leadership: Conducted comprehensive risk assessment and proactively identified and remediated 27 high-risk vulnerabilities across critical infrastructure systems
  • Global Framework Development: Developed OT security architecture and monitoring tools now used as the global standard across Syngenta’s international operations
  • Major Project Leadership: Managed a $400k infrastructure modernisation project to replace legacy OT switches, firewalls, and 20+ year-old SCADA systems
  • Zero-Trust Implementation: Led end-to-end design and deployment of zero-trust network architecture specifically tailored for industrial control systems
  • Security Monitoring Enhancement: Implemented Splunk-based OT security monitoring with custom dashboards and automated alerts for anomaly detection across critical infrastructure
  • ICS Penetration Testing: Developed and executed penetration testing frameworks for industrial control systems while maintaining operational integrity

Compliance & Standards Expertise:

  • Regulatory Compliance: Extensive experience implementing NCSC NIS Guidance/CAF, IEC 62443, NIST SP 800-82, OG-86 and NERC CIP standards
  • Risk Assessment: Applied HAZOP and PHA methodologies integrated with OG-86, IEC 62443, and NIST CSF frameworks
  • Threat Modelling: Utilised MITRE ATT&CK for ICS and attack lifecycle methodologies to enhance security architectures

Stakeholder Management:

Advisory Services: Provide ongoing cyber security guidance and support to other facilities globally

Executive Communication: Successfully translated complex cyber security risks into business-relevant strategies for senior management

Cross-functional Leadership: Drove cyber security culture adoption across engineering, operations, and IT teams through targeted communication and training initiatives


Enterprise Data Architect & Analyst

2022 – 2024

While completing my cyber security apprenticeship, I simultaneously built and operated an independent data consulting practice, serving small and medium businesses with data architecture and analytics solutions. This parallel career track demonstrated my ability to apply technical skills in real business contexts while building entrepreneurial experience.

Business Development & Delivery:

  • Architecture Design: Created scalable data architectures that transformed business intelligence capabilities, enabling data-driven decision making for client organizations
  • Process Automation: Developed automated ETL processes that reduced manual data processing time by 60%, improving operational efficiency and data accuracy
  • Visualization & Reporting: Built custom Power BI and SQL-based dashboards that simplified complex datasets for non-technical stakeholders
  • Client Success: Delivered measurable improvements in data accessibility and business insight generation across multiple industry sectors

Technical Implementation:

Infrastructure Optimisation: Implemented scalable data processing workflows that supported business growth and expansion

Cloud Solutions: Designed comprehensive data warehousing solutions using Azure Data Factory, Databricks, and Power BI for educational institutions

Analytics Development: Applied Python, SQL, and machine learning frameworks to deliver predictive analytics capabilities

TECHNICAL SPECIALISATIONS

TECHNICAL SPECIALISATIONS

Industrial Cybersecurity

My specialisation in operational technology security spans the complete spectrum of industrial cybersecurity, from initial risk assessment through implementation and ongoing monitoring. Experience includes securing PLCs, RTUs, SCADA systems, DCS, and process control environments across chemical manufacturing and energy generation facilities.

Core Competencies: IEC 62443, OG-86, NIST SP 800-82, NERC CIP compliance implementation | Zero-trust architecture design for industrial control systems | Industrial IoT (IIoT) security architecture and deployment | Advanced network segmentation using zone and conduit models | MITRE ATT&CK for ICS threat modelling and attack lifecycle analysis

Network Security & Infrastructure Architecture

Extensive experience in designing and implementing secure network infrastructures for both IT and OT environments. Specialisation in bridging traditional IT security practices with operational technology requirements while maintaining operational efficiency and safety.

Technical Proficiency: Cisco, Checkpoint, and Fortinet firewall and switch configuration | VMware ESXi and Hyper-V virtualization environments | Splunk security monitoring and incident response | Active Directory segmentation and policy management | Veeam backup and disaster recovery implementation

Risk Management & Compliance Frameworks

Comprehensive expertise in developing and implementing cybersecurity risk management programs aligned with industry standards and regulatory requirements. Focus on practical, implementable frameworks that balance security requirements with operational needs.

Framework Expertise: Cybersecurity risk assessment and management methodologies | Regulatory compliance implementation (IEC 62443, NERC CIP, ISO 27001) | Business impact analysis and continuity planning | Third-party risk management and vendor assessment | Security program development and maturity assessment

Data Architecture & Advanced Analytics

Proven ability to design and implement scalable data architectures that support business intelligence and decision-making processes. Experience spans cloud-based solutions, automated data processing, and advanced analytics implementation for diverse business requirements.

Technical Capabilities: Azure Data Factory, Databricks, and Power BI solution architecture | Python, SQL, and PowerShell automation development | Machine learning implementation using scikit-learn and PyTorch | ETL process design and optimization | Custom dashboard and reporting system development

Start Here.

Download my free OT security quick reference guide.

Join 2,000+ other professionals.