Principal ot cybersecurity consultant assurance and compliance
RINA
Overview RINA is recruiting for a Principal OT Cybersecurity Consultant Assurance and Compliance to join its office in GENOA or ROME within the Operating Engine Division. Mission The Principal Cybersecurity Consultant Assurance and Compliance is responsible for ensuring the security, compliance, and long‑term resilience of complex IT and Operational Technology (OT) environments, with a strong focus on industrial automation, critical infrastructures, and transportation systems. The role provides expert guidance on cybersecurity governance, risk management, and technical assurance, supporting organizations in designing, assessing, and continuously improving integrated cybersecurity frameworks aligned with international regulations and standards (e.g. CRA, NIS2, IEC 62443, ISO 27001, EN 50701, NIST). Acting as a trusted advisor to senior stakeholders, clients, and regulators, the role drives informed decision‑making on cybersecurity risks, ensures robust protection of safety‑critical and mission‑critical systems, and promotes cybersecurity‑by‑design principles throughout the entire system lifecycle. Key Accountabilities Cybersecurity Governance, Risk Management & Compliance: Define, implement, and continuously evolve integrated cybersecurity governance and risk management frameworks for complex IT and OT environments. Lead comprehensive cybersecurity risk assessments, identifying threats, vulnerabilities, and systemic weaknesses across industrial automation plants, subsystems, and onboard/transportation systems. Define mitigation strategies that balance cybersecurity, safety, operational continuity, and regulatory compliance. Ensure continuous alignment with applicable international regulations and standards, including CRA, NIS2, IEC 62443, ISO 27001, EN 50701, and NIST frameworks. Technical Assurance & Security Evaluation Lead and oversee advanced technical assurance activities for complex and safety‑critical IT/OT systems. Supervise and validate configuration reviews, vulnerability assessments, and security evaluations in mixed IT/OT environments. Assess system conformance against international assurance and security standards (e.g. ISO 27001, ISO/IEC 15408, NIST SP 800 series). Prepare and approve high‑quality technical documentation, including security assessment reports, evaluation evidence, test descriptions, and test procedures, ensuring accuracy and defensibility of conclusions. Provide authoritative recommendations to improve system security posture and resilience. Operational Technology & Critical Infrastructure Security Act as subject matter expert for cybersecurity of industrial and critical infrastructure systems, including SCADA, PLCs, industrial control systems, industrial networks, and transportation/onboard platforms. Design, assess, and validate OT network architectures based on the Purdue Model and Zone & Conduit concepts. Support the implementation of network segmentation, system hardening, monitoring, and defense‑in‑depth measures in line with IEC 62443 and EN 50701 principles. Promote and apply cybersecurity‑by‑design and secure‑by‑default approaches throughout the entire system lifecycle, ensuring long‑term reliability and compliance of safety‑critical systems. Audit, Certification & Regulatory Interaction Plan, lead, and validate internal and external cybersecurity audits to assess compliance readiness for certifications such as ISO 27001, IEC 62443, EN 50701, and CMMC. Act as senior technical interface with certification bodies, auditors, and regulatory authorities. Support organizations in certification processes and in maintaining continuous improvement of cybersecurity management systems over time. Stakeholder Engagement, Advisory & Capability Development Act as a trusted cybersecurity advisor for customers and internal stakeholders on complex or high‑risk cybersecurity topics. Collaborate with multidisciplinary teams to embed cybersecurity, governance, and compliance requirements into engineering, operational, and business processes. Provide technical leadership, mentoring, and guidance to cybersecurity consultants and specialists. Deliver advanced training sessions, awareness initiatives, and technical workshops covering IT, OT, governance, and compliance best practices. Education Bachelor’s Degree in Computer Engineering or Cyber Security Master’s Degree in Computer Engineering or Cyber Security Qualifications 12–15+ years of experience in cybersecurity assurance, risk management, and compliance across IT and OT environments. Strong hands‑on background in industrial and OT systems at plant and subsystem level. Proven experience leading complex risk assessments, audits, and assurance activities for critical infrastructures. Deep understanding of international cybersecurity standards, regulations, and frameworks, including CRA, NIS2, ISO/IEC 27001, IEC 62443, EN 50701 and NIST standards and guidelines. Strong understanding of industrial networking principles, Purdue Model, Zone & Conduit architecture. Familiarity with operating system security (Windows, Linux). Excellent analytical, decision‑making, and communication skills. Competencies DOMAIN & BUSINESS ACUMEN - Applying a scientific approach and critical thinking in operations and solution development within area of expertise. FORESIGHT & INSIGHT - Context awareness adopting a systemic perspective and informed decision making. INTERPERSONAL INFLUENCE - Skills and strategies we use to interact effectively with others. PERSONAL EMPOWERMENT - Ownership for life, work and results, striving to grow professionally and personally. WORKPLACE DYNAMICS - Resourcefulness in shaping progress and working efficiently. RINA is a multinational company providing a wide range of services in the energy, marine, certification, infrastructure & mobility, industry, research & development sectors. Our business model covers the full process of project development, from concept to completion. At RINA, we endeavor to create a work environment where every single person is valued and encouraged to develop new ideas. We provide equal employment opportunities and are committed to creating a workplace where everyone feels respected and safe from discrimination or harassment of any kind. We are also compliant to the Italian Law n. 68/99. #J-18808-Ljbffr
- ...RINA is currently recruiting for a Principal OT Cybersecurity Consultant Assurance and Compliance to join its office in GENOA or ROME within the Operating Engine Division. Mission The Principal Cybersecurity Consultant Assurance and Compliance is responsible...ConsigliatoImpiego permanente
- Techyon èl' Head Hunter leader nella ricerca e selezione di professionisti senior e manager nel segmento Information Technology . About the Company: per conto di una realtà specializzata in servizi di consulenza in ambito ICT,i nostri Recruiter Engineer ricercano...Consigliato
- Un'azienda di consulenza IT cerca un Network & Security Specialist a Genova. Il candidato ideale avrà almeno 2-3 anni di esperienza in IT, con competenze in sistemi Microsoft e soluzioni Fortinet. Le responsabilità includono la configurazione e il troubleshooting di apparati...ConsigliatoSmart workingLavoro ibrido
- ...collegamento tra i requisiti normativi e l'implementazione tecnica, collaborando attivamente con il SOC e altri team per garantire la compliance con la direttiva NIS2. È necessaria una comprensione di base di reti e sistemi, così come abilità nell'analisi dei rischi. È...Consigliato
- ...Select how often (in days) to receive an alert: Technology Innovation, Strategy and Roadmapping Consultant Posting Date: 29 Apr 2026 City: Genova Location: Genova, IT, 16129 Rozzano, IT, 20089 La Spezia, IT, 19124 Contract Type: Permanent Division: Sustainability...ConsigliatoImpiego permanente
- Easy Net Srl, attiva nella consulenza tecnologica, è alla ricerca di un ANALISTA FUNZIONALE con almeno 4-5 anni di esperienza. Il candidato ideale dovrà raccogliere requisiti, gestire documenti e lavorare in stretta collaborazione con i team tecnici.Il lavoro si svolgerà...Contratto con partita IVA
- ....io is seeking an Information Security Consultant to enhance digital innovation safety. This... ...involves assisting clients in GDPR compliance, conducting risk analyses, and contributing... ...is fluent in English, has 2+ years in cybersecurity, and is eager to collaborate in a...Remoto
- ...La risorsa riporterà al Cybersecurity Manager e contribuirà al governo e al miglioramento... ...attenzione agli aspetti di governance, risk & compliance e sicurezza. Il ruolo richiede una... ...conoscenza della lingua inglese per consultazione di documentazione tecnica e...Impiego permanente
- ...delle centrali di produzione elettrica, siamo alla ricerca di un Cybersecurity Engineer o esperto nel settore della Cybersecurity .La risorsa... ..., utilities o infrastrutture criticheConoscenza di ambienti OT/ICS, SCADA, PLC o reti industrialiContratto a tempo indeterminato...Impiego permanente
35.000 €
...’interno del team Cyber Security. Responsabilità principali Implementare e monitorare controlli di sicurezza per garantire la compliance con policy e standard aziendali Condurre attività di Vulnerability Assessment e Penetration Test per identificare e mitigare rischi...- ...supporto cross-funzionale : lavorare con Data Owner, IT, Risk & Compliance, Audit e Privacy per garantire la protezione e la governance... ...Certified Defender/Sentry/Guardian, etc.). Conoscenza dei principi ITIL. Esperienza in ambito Cloud Platform Security (Azure,...
- ...Client / Employer: Tinexta Defence Next - Ingegneria dei Sistemi, società del Gruppo T-Defence, è alla ricerca di un/una Cybersecurity System Engineer entusiasta e motivato/a, per partecipare in qualità di consulente alle attività di ingegneria dei sistemi con focus...Impiego permanente
- ...Hornetsecurity is looking for a cybersecurity professional to engage with partners and customers, providing product demonstrations and... ...IT and several years of experience in presales or technical consultancy. This role offers full remote work and involves traveling internationally...Remoto
- ...RINA is currently recruiting for a OT Cyber Security Engineer to join its office... ...postures; Provide supportto Customers in cybersecurity related activities; Draft... ...Qualifications Knowledge of security aspects of principal Operating Systems; Previous...Orario flessibile
- genova, liguria, Italy Company: JR Italy Client / Employer: 7 Layers Responsabilità principali: Pianificazione ed esecuzione di Web Application & API Penetration Test in autonomia. Redazione della documentazione tecnica relativa alle attività, con revisione tecnica dei ...Smart workingOrario flessibile
- genova, liguria, Italy Company: JR Italy Client / Employer: smeup Partner d'eccellenza per la Digital Transformation, smeup è l'importante player IT italiano che combina software strategico, infrastrutture e sicurezza per generare valore e innovazione nei processi...Smart workingTempo pienoImpiego permanenteOrario flessibile
55.000 €
...tecnica per un'importante azienda nella cyber security industriale. La risorsa supporterà le attività di integrazione della sicurezza OT nei processi HSE e collaborerà con ingegneria e IT. Il candidato ideale ha un diploma tecnico o laurea in ambito informatico,...Tempo pienoLavoro ibridoRemotoLavoro da casa- ...gestione e implementazione di infrastrutture IT in contesti enterprise. La risorsa opererà su progetti in ambito infrastrutturale e cybersecurity, contribuendo alla progettazione, evoluzione e messa in sicurezza degli ambienti IT dei clienti.ResponsabilitàProgettazione,...Lavoro ibrido
28.000 € - 33.000 €
...specializzato in infrastrutture Microsoft. La figura sarà inserita nel team di delivery per la gestione di progetti enterprise e cybersecurity.Richiesta esperienza di almeno 3 anni in ambienti enterprise, conoscenza approfondita di Windows Server, Active Directory e...- BKN301 in Genova, Italy, is looking for a Senior Security Engineer to join our Blue Team. You will be responsible for monitoring security events, responding to incidents, and strengthening our defenses in a dynamic fintech environment. The ideal candidate has experience...Tempo pienoImpiego permanente
25.000 € - 40.000 €
Descrizione azienda MC Engineering è una dinamica società di consulenza informatica , con sedi a Torino, Milano, Roma e Bari. Lavoriamo a stretto contatto con realtà innovative nel mondo ICT, portando avanti progetti che spaziano tra vari settori. Per noi, le persone...Remoto- Posted: 19.05.2026 Job information Location Client / Employer BKN301 Job reference 016eddf9a45001783e0d5efe4a6c7948 Listing type Basic EU work permit required No Posted 19.05.2026 03.07.2026 Who We Are At BKN301, we build fintech solutions that enable banks, fintechs, and...Tempo pienoImpiego permanentePermesso di lavoro
- Capgemini Engineering cerca un Cybersecurity Engineer per supportare attività di cybersecurity e analisi di sicurezza. Il candidato ideale ha esperienza in cybersecurity, buona conoscenza degli standard di riferimento e ottime competenze comunicative. Sono richieste la...Impiego permanenteRemotoOrario flessibile
40.000 € - 50.000 €
...Mediterranean and Africa Marine Engineering Division. Mission The ideal candidate will provide technical expertise and support for consulting activities related to RINA Marine Cyber Services portfolio. Key Accountabilities Support RINA consulting activities related...Impiego permanente- Ruolo Cybersecurity Engineer in Capgemini Engineering, part of the Cybersecurity Expertise Center. Responsabilità Supporto operativo alle attività di cybersecurity (es. penetration testing), collaborando con team multidisciplinari per garantire l’implementazione delle...Impiego permanenteRemotoOrario flessibile
- ...Esperienza di almeno 2-3 anni in cyber security, security compliance o security evaluation Conoscenza dei principi di information security e gestione dei requisiti... ...e certificazione Legal EEO Statement Overtech Consulting promuove un ambiente di lavoro basato su diversità...
- SixteenFifty is seeking a BeyondTrust Technical Specialist (IAM/PAM) in Genova to manage and optimize a Privileged Access Management solution. The role involves ensuring security and efficient access management in a complex environment. This remote B2B contract opportunity...Remoto
1.300 €/mese
Per conto di un punto vendita specializzato nel settore della telefonia e dei servizi digitali, si ricerca una figura da inserire all’interno del team commerciale con l’obiettivo di supportare i clienti nella scelta delle soluzioni più adatte alle loro esigenze. La risorsa...Tempo pienoTempo determinato40 h/sett.- ...SII Group Italy cerca un Senior Cyber Security Engineer per la gestione operativa delle soluzioni di cybersecurity in ambienti complessi. Richiesta un'esperienza minima di 5-7 anni e competenze in tecnologie quali Firewall, PAM/IAM e Vulnerability Management. È prevista...Remoto
- Amberes Recruitment is seeking a Senior Pre-sales professional to lead technical sales across Italy, working closely with Account Managers and partners. The successful candidate will support partner-led sales cycles, drive technical validation, and act as a trusted advisor...
