Security Solutions Senior Manager – Operational Technology / IoT

NationwideRemoteNormalsenior
OtherTechnology
1 views0 saves0 applied

Quick Summary

Overview

Qualifications Experience 10–15 years of experience in cybersecurity, with a sustained focus on OT, ICS/SCADA,

Technical Tools
OtherTechnology

Requirements

~1 min read
  • 10–15 years of experience in cybersecurity, with a sustained focus on OT, ICS/SCADA, or IoT security; must include 5+ years in a senior consulting or practice leadership role with direct P&L, pricing, or staffing accountability.
  • Demonstrated experience standing up or scaling a security practice or service line from limited or zero headcount within a consulting, VAR, systems integrator, or professional services organization.
  • Demonstrated experience serving as an OT/IoT technical SME within pursuit or sales teams, with a track record of contributing to scoping, pricing, and winning consulting engagements.
  • Deep technical expertise across OT/IoT security domains, including:
    • ICS/SCADA & Protocol Security: Purdue-model zone design, protocol-aware monitoring, and asset visibility across brownfield industrial environments.
    • OT/IoT Detection & Monitoring Platforms including but not limited to Dragos, Claroty, Nozomi Networks, Armis, and Forescout.
    • IT/OT Segmentation including but not limited to Cisco, Elisity, Illumio, Fortinet, Palo Alto Networks, and Check Point, applying IEC 62443 zone-and-conduit design.
    • OT specific secure remote access and ICS identity
    • Governance & Regulatory Compliance: NERC CIP, IEC 62443, NIST 800-82, TSA pipeline and rail security directives, and NIS2 evidence and audit packages.
    • AI/IT-OT Convergence Risk: scoring agentic AI and machine-to-machine risk across converged IT/OT/IoT environments.
  • Demonstrated people leadership: hiring, developing, and retaining consulting teams, with direct ownership of pricing and go-to-market decisions.
  • Strong executive presence; comfortable leading C-level and plant-leadership workshops and advising on multi-year OT security roadmaps.
  • Bachelor's degree in a related field, or equivalent professional experience.

Nice to Have

~1 min read
  • Experience delivering OT/IoT security engagements in energy, utilities, manufacturing, transportation, or public-sector critical infrastructure, particularly where the work intersects regulatory scrutiny (NERC CIP, TSA, NIS2).
  • Relevant certifications such as GICSP, CISSP, CISM, or an ISA/IEC 62443 cybersecurity credential.
  • Experience building formal partner or alliance relationships directly with OT platform vendors.
  • Contributions to OT/ICS/IoT security thought leadership through white papers, conference presentations, or published content.
  • A track record of standing up a new practice or service line from the ground up, rather than inheriting an established book of business.

Working knowledge and consulting experience in at least five of the following areas:

  • OT/ICS Security and Protocol-Aware Monitoring
  • IoT and IoMT Security
  • IT/OT Segmentation and Zero Trust Architectures
  • Risk Management and Assessments
  • Policy, Governance, and Compliance (NERC CIP, IEC 62443, TSA, NIS2)
  • Network and Systems Security
  • Cloud and IIoT Security
  • Security Operations
  • Identity and Access Management
  • Practice Management and P&L Ownership

Demonstrated consulting delivery and practice-leadership competencies, including:

  • Structured discovery and assessment – design and execute current-state OT/IoT discovery across plant floor, corporate/campus, and cloud environments; run stakeholder interviews and technical SME sessions; synthesize findings into clearly structured, actionable outputs.
  • Gap analysis and maturity evaluation – assess and communicate OT/IoT security maturity against NERC CIP, IEC 62443, and NIS2, prioritized by business and safety risk.
  • Executive communication – structure findings and recommendations so executives can act on them quickly, leading with business impact rather than technical detail.
  • Workshop facilitation – cross-collaborate on executive workshops, program kickoffs, and cross-functional discovery sessions that align stakeholders with competing priorities.
  • Roadmap and program planning – develop phased OT/IoT roadmaps, including multi-year programs with milestone sequencing aligned to client risk and funding cycles.
  • Deliverable excellence – a consistent track record of producing client-ready assessments, gap and risk registers, strategies, and executive readouts that meet professional services quality standards.
  • Practice development and P&L management – build and manage a practice budget, hiring plan, and margin targets.
  • Sales and pipeline management – identify, shape, and drive OT/IoT opportunities from initial discussions through proposals, SOW, ROM, staffing, and deal closure.
  • Partner and alliance management – build and maintain vendor relationships, and adjust technology and go-to-market strategy as the partner ecosystem shifts.
  • Professional writing is required: strong, demonstrable ability to produce and approve technical, business, and practice-planning artifacts at a client- and executive-deliverable standard.
  • Able to run a growing practice — concurrent engagements, an active hiring pipeline, and a P&L — under shifting priorities and timelines.
  • Able to communicate and adapt approach, language, and style across audiences, from technical SMEs to CISO, VP, and CxO-level stakeholders.
  • Collaborative, with the ability to manage conflicting interests across client stakeholders, technology partners, and internal WWT practices, and to operate effectively amid ambiguity.
  • Commercially aware, with sound judgment on scope, effort, margin, and staffing for a practice with no existing revenue base to lean on.
  • Self-directed and entrepreneurial, with strong problem-solving instincts and comfort operating without established processes or precedent to lean on.
  • Ownership and accountability – take responsibility for practice outcomes and for the quality of every deliverable released under your approval, and follow through on commitments without being chased.
  • Trusted advisor – build credibility quickly at both the working and executive levels in a market segment WWT is newly entering, giving candid and well-reasoned recommendations.
  • Clear communication – translate technical and financial complexity into plain language for the audience at hand, and keep stakeholders informed without surprises.
  • Developing others – treat hiring and mentoring as core to the role, not an addition to it, and hold the team you build to the standard applied to your own work.
  • Integrity – give honest assessments even when the message is hard, and protect the client's interests and WWT's reputation in every recommendation.

What We Offer

~1 min read

Responsibilities

~3 min read
  • →Stand up the practice and support P&L growth – build the OT/IoT Security practice, own pricing, margin, and go-to-market strategy, revenue/GP attainment, and headcount plan.
  • →Recruit and lead the delivery team – hire, onboard, and develop OT/IoT services delivery experts; coach and manage performance as the team scales.
  • →Build and launch the offering portfolio – design, price, and bring to market the practice's offerings
  • →Own the OT/IoT methodology on engagements – frame asset visibility and IT/OT convergence as the prerequisite to every other OT offering, apply Purdue-model zone design and protocol-aware monitoring, and set enforcement strategy across passive visibility, segmentation, and governance workstreams.
  • →Support partner strategy and direction – working with GSA team, support relationships with OT detection leaders plus segmentation and firewall partners; monitor partner-ecosystem shifts, such as vendor M&A, that could affect the roadmap, and adjust the technology strategy accordingly.
  • →Partner-delivered services - maintain relationships with our key SI partners since a good portion of our delivery will still be partner led-performed.
  • →Account for AI-driven IT/OT convergence risk – ensure the practice's assessment methodology scores agentic AI and IT/OT convergence risk together, since OT environments are where AI-connected systems create the most immediate exposure; reflect that risk in client-facing findings and roadmap recommendations.
  • →Guide clients through OT/IoT regulatory obligations – advise on and produce audit-ready evidence packs against NERC CIP, IEC 62443, TSA pipeline and rail security directives, and NIS2, for regulated critical infrastructure clients.
  • →Own delivery quality end to end – review and approve major deliverables, engagement strategies, and solution approaches before they reach the client, across diagnostic, assessment, strategy, and advisory/continuous-retainer engagement models.
  • →Own client relationships at the working and executive level – act as a senior trusted advisor across the engagement lifecycle; translate OT/IoT findings into business-level recommendations for CISO, COO, and plant-leadership audiences; facilitate executive workshops and steering committees.
  • →Serve as the OT/IoT technical SME on pursuit teams – partner with account and sales teams to shape the solution approach, build Rough Order of Magnitude estimates, and develop Statements of Work that define scope, price, deliverables, assumptions, and timelines.
  • →Stay hands-on – maintain direct client delivery, supporting proposals, executive workshops, and the practice's highest-visibility engagements.
  • →Collaborate across Security Architecture – partner with practices on engagements that span multiple teams, and pull additional services through from every OT engagement where it fits the client's roadmap.
  • →Drive practice maturity – build reusable delivery assets, discovery and assessment frameworks, standard OT engagement patterns, and OT/IoT security thought leadership content; support marketing and digital platform initiatives that build practice visibility and pipeline.
  • →Track and report practice performance – own forecasting and reporting against the revenue, margin, and headcount plan; report team and practice metrics to Security Architecture leadership.

The Senior Practice Manager holds final authorship and quality accountability for the practice's client-ready deliverables and for the internal business artifacts that keep the practice funded and staffed. Approving client deliverables for release, and supporting the practice's P&L and hiring plan, are defining functions of the role.

  • Maintain technical currency as OT/IoT detection, segmentation, and governance models evolve, through hands-on platform work with partners, and by tracking the analyst taxonomy for cyber-physical systems (ICS, IoT, smart buildings, medical devices, robotics).
  • Broaden capability across the adjacent domains that determine whether an OT program is executable, including Zero Trust and IT segmentation, cyber resilience and incident response for ICS environments, and cloud architecture, to a depth sufficient to lead the discussion and recognize when specialist support is required.
  • Maintain working currency in AI security as it intersects OT, including the controls available to govern agentic and tool-calling systems operating near industrial environments; AI competence is expected of every consultant in the practice, independent of specialization.
  • Build commercial fluency: engagement economics, margin, leverage models, and the pricing and staffing decisions that determine whether a new offering is viable.
  • Develop the practice-leadership capabilities required at the Director or VP, Security Architecture level, including shaping cross-practice offerings, expanding into adjacent accounts, and growing practice capacity through structured mentoring rather than informal assistance.
  • Seek and act on feedback from Security Architecture leadership, partners, and clients; use delivery and pursuit retrospectives as a source of both individual and practice improvement.

 

Location & Eligibility

Where is the job
Worldwide
Fully remote, anywhere in the world
Who can apply
Same as job location

Listing Details

First seen
September 28, 2026
Last seen
September 29, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
66%
Scored at
September 29, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

Security Solutions Senior Manager – Operational Technology / IoT