Full-Time

Senior Security Consultant

Operational Technologies

Updated on 8/12/2026

IOActive, Inc.

IOActive, Inc.

51-200 employees

Research-driven security testing and consulting

Compensation Overview

$100k - $175k/yr

+ Performance-based incentives

Remote in USA + 3 more

More locations: Remote in Canada | Remote in UK | Remote in Spain

Hybrid

Approximately 30% travel, including on-site work at industrial facilities.

Bachelor's

Category
IT & Security (1)
Required Skills
Threat modeling
Cybersecurity
Penetration Testing

Get referred to IOActive, Inc.

See people who can refer or advise you

Requirements
  • At least 5 years of experience in offensive security services, including at least 2–3 years focused on operational technology, industrial control systems, or other critical infrastructure work.
  • Hands-on engagement delivery experience across multiple operational technology domains, including penetration testing, threat modeling, industrial control systems assessments, embedded industrial device security, or red-team/purple-team work in operational technology environments.
  • Working knowledge across the breadth of the operational technology landscape and industrial protocols.
  • Familiarity with relevant standards and frameworks.
  • Experience working in or alongside plant operations, with appreciation for safety, availability, and process integrity considerations that differentiate operational technology from information technology security work.
  • Ability to operate as the senior technical voice on engagements.
  • Strong written communication skills for producing actionable client reports.
  • Strong verbal communication skills for technical workshops with engineering audiences and business conversations with client leadership.
  • Comfort with the physical and operational realities of operational technology engagements, including plant visits, equipment rooms, control rooms, and occasional non-standard hours during testing windows.
  • Ability to collaborate closely with delivery teams across service lines.
  • Bachelor's degree in Engineering or Computer Science, or equivalent experience.
  • Willingness to travel approximately 30%, including on-site work at industrial facilities and in plants, substations, refineries, and field locations.
  • Ability to obtain relevant security clearances if engagements require them.
Responsibilities
  • Serve as the senior technical voice in client discussions, technical deep-dives, and interviews with industrial systems engineers, control system vendors, and operational technology security teams.
  • Lead delivery on operational technology engagements as the senior consultant on project teams, owning the technical approach, methodology, hands-on testing, and findings.
  • Protect the integrity, safety, and availability of clients’ critical assets by applying non-disruptive and non-destructive operational technology assessment methodologies.
  • Perform hands-on technical work spanning industrial protocols and embedded industrial device analysis.
  • Conduct network architecture reviews using the Purdue model and industrial segmentation principles, identifying safety, availability, and security risks.
  • Lead threat modeling exercises tailored to operational technology environments, incorporating safety, availability, and process integrity considerations alongside traditional security risks.
  • Translate technical findings into business and operational risk language for client engineering, plant operations, and security leadership.
  • Author and quality-review engagement deliverables to IOActive's standard.
  • Build trusted technical relationships with client Security Architects, Operational Technology Security Leads, Heads of Industrial Cybersecurity, and engineering directors.
  • Support pre-sales conversations through scoping calls, capability discussions, and proposal input.
  • Mentor junior and mid-level consultants in operational technology methodology, tools, and client engagement without direct reporting authority.
  • Contribute to operational technology methodologies, testing playbooks, report templates, and intellectual property.
  • Identify opportunities to extend IOActive's operational technology capability through new service offerings, tooling, or research directions.
  • Collaborate with the Hardware and Silicon practice on embedded industrial device work and component-level analysis where engagements span boundaries.
  • Contribute to IOActive's operational technology research, including vulnerability discovery, protocol analysis, attack technique development, and published findings.
  • Build a personal profile in the operational technology security community through events, conference talks, published research, and working group participation.
  • Represent IOActive in operational technology security industry conversations, standards bodies, and customer advisory engagements as opportunities arise.
Desired Qualifications
  • Relevant industry certifications are strongly preferred.

IOActive provides security services to Global 1000 enterprises across industries, including full stack penetration testing, program efficacy assessments, and hardware hacking. Its offerings are research-fueled and delivered by specialized teams that bring an attacker’s perspective to help clients maximize security investments and improve overall security posture and business resiliency. The company differentiates itself through deep technical expertise, a track record with Global 500 clients, and a 100% service satisfaction guarantee, signaling commitment and value. Its goal is to help customers reduce risk, strengthen defenses, and maintain resilience by continuously improving security programs and investments.

Company Size

51-200

Company Stage

N/A

Total Funding

N/A

Headquarters

Seattle, Washington

Founded

1998

Get referred to IOActive, Inc.

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • April 2026 AI-code findings created strong demand for secure-development assessments and red-teaming.
  • Recent 2026 event calendar shows active client-facing marketing across CSA, ESCAR, and BSides.
  • The firm’s research-led brand supports premium positioning against generic penetration-test boutiques.

What critics are saying

  • AI-code research commoditizes quickly, pressuring consulting fees by 2027.
  • No public funding, acquisition, or large-customer disclosures signal fragile visibility and slower growth.
  • FTC safe-harbor settlement history still stains trust in privacy-sensitive enterprise deals.

What makes IOActive, Inc. unique

  • IOActive’s April 2026 whitepaper tested 27 AI models across 730 prompts.
  • The firm publishes hardware and embedded-security findings, including STM32MP25xx PCIe protections in 2026.
  • IOActive maintains visible technical credibility through conference talks from Ehab Hussein and Andrew Zonenberg.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Flexible Work Hours

Company News

GlobeNewswire
May 15th, 2024
Ioactive Recognized For Trailblazing Cybersecurity Practices At 2024 Global Infosec Awards

SEATTLE, May 15, 2024 (GLOBE NEWSWIRE) -- IOActive, Inc., the worldwide leader in research-fueled security services, was named as a winner of the Trailblazing Cybersecurity Research and Trailblazing Cybersecurity Provider categories by Cyber Defense Magazine (CDM), the industry’s leading electronic information security magazine. “This selection from Cyber Defense Magazine as one of the industry’s most influential cybersecurity research firms is a testament to the hard work and expertise of our team,” said Jennifer Sunshine Steffens, CEO at IOActive. “We believe in approaching cybersecurity from an attackers’ perspective, and this philosophy underpins everything we do - from our groundbreaking research across industries to our comprehensive security services tailored to meet the evolving needs of our clients. As we continue to innovate and push the boundaries of cybersecurity, we remain steadfast in our mission to make the world a safer place for all.” This award highlights ongoing momentum for the company as Steffens was recently recognized as one of The Top 50 Women Leaders of Washington for 2024, in addition to IOActive winning three award categories at the 2024 Cybersecurity Excellence Awards. IOActive is proud to be recognized as part of a coveted group of industry leaders. The full list of this year’s award recipients can be found here: http://www.cyberdefenseawards.com/ For more information, please visit www.ioactive.com or join us on LinkedIn and X

FreightWaves
Jun 5th, 2023
Is Your System Vulnerable To Cyberattacks? Here’S How To Find Out

“What should keep you up at night is, ‘What do I not know?’ There may be things that you know you don’t know, and there may be things you don’t know that you don’t know.”During the National Motor Freight Traffic Association’s (NMFTA) May webinar, John Sheehy, senior vice president of research and strategy at IOActive, a research-fueled security services firm, offered that thought-provoking reminder.Sheehy’s presentation, hosted by Antwan Banks, director of cybersecurity of NMFTA, is part of the organization’s cybersecurity series leading up to its October Digital Solutions Conference in Houston. The conference will be a meeting of minds to discuss emerging cybersecurity threats and related issues faced by the transportation and logistics industries.Cybercrime attacks on large transportation businesses have made headlines in recent years, and as the industry has become more appealing to attackers, companies of all sizes are vulnerable to system breaches. The range of threat techniques only continues to grow as hackers adapt and evolve ways to gain access to critical company information.For transportation companies, threats don’t just apply to internal digital systems, but also to the vehicles and equipment they use to move freight. Additionally, how these systems interface with one another through telematics devices presents risk. With many entry points for hackers, the importance of cybersecurity is paramount.The prevalence of these “hackable” interfaces that organizations build their business on provides malicious individuals and entities many opportunities to breach an organization and wreak havoc.“[It] could be as simple as one of your employee’s laptops or something more complex such as your overall wide area network. Or … from an operational technology perspective, something that might move freight on the warehouse floor that is necessary for shipping and receiving can be disrupted too,” Sheehy elaborated.Identifying critical digital security lapses is the first step in defending your business from bad actors, who, in the worst-case scenario, could pose an existential threat to your company.Penetration testing is one of the most impactful ways to figure out what it is you don’t know about your company’s vulnerabilities, allowing you to mitigate risks before an attacker can exploit them.During the webinar, Sheehy discussed what penetration tests are, as well as the methodologies and the best practices you can implement to gain maximum value from them.What is a penetration test?Simulating an attack on your computer system or network using the same tools, techniques and procedures as the real thing, penetration testing allows an organization to evaluate its security and expose the business impacts of its vulnerabilities. “These vulnerabilities may result from poor or improper system configuration, known and/or unknown hardware or software flaws, or operational weaknesses in processes or technical countermeasures,” Banks said.Penetration test methodologiesPenetration tests are not one-size-fits-all processes; Sheehy identified three main kinds of test methodologies, which fall on a spectrum from limited to more information provided to testers