A global team at the heart of cyber innovation, together we create a more secure digital future
Senior Security Consultant – Hardware and Embedded Security
Location
United States
Posted
46 days ago
Salary
0
Seniority
Senior
No structured requirement data.
Job Description
Senior Security Consultant – Hardware and Embedded Security
NCC Group
Senior Security Consultant – Hardware and Embedded Security Department: Cyber Services and Capabilities Employment Type: Full Time Location: CAN Waterloo Description Senior Security Consultant – Hardware and Embedded Security Location: Waterloo, Canada Thanks for checking out our latest opportunity. We’re thrilled that YOU are considering joining our team! We’re NCC Group – a global leader in security consulting with a relentless passion for cutting-edge research and technical excellence. Security isn’t just what we do; it’s who we are. Our culture thrives on collaboration, continuous learning, and a deep commitment to delivering outstanding results. At NCC Group, we don’t just identify vulnerabilities – we’re shaping the future of security, and we need someone like you to help us do it. We’re on the lookout for an experienced Security Engineer or Researcher to join our Hardware and Embedded Security consulting practice. Key Accountabilities What you’ll do: As a Senior Security Consultant, you’ll be the technical lead on complex projects, driving security assessments and providing expert advice to clients. Your main responsibilities will include: - Conducting in-depth penetration testing, code reviews, and security analysis. - Leading research and reverse engineering efforts on emerging technologies and attacks. - Guiding clients through secure design practices such as threat modelling and attack surface enumeration. - Mentoring junior team members and contributing to internal tools and research initiatives. - Working on diverse projects, often remotely, but with travel to client sites when needed. Skills To be successful in this role, you should have - Solid experience in software or hardware security - In-depth technical expertise in driver code auditing, bootloaders, secure boot, and embedded system architectures - Proficiency in C/C++ for security-focused code review - A solid understanding of firmware reverse engineering and security analysis - Strong communication skills – you’ll need to explain complex vulnerabilities to clients in clear terms - A Bachelor’s degree in Computer Science, Engineering, or a related field is desirable. Additionally, it is highly beneficial if you have experience with any of the following: - Cryptography knowledge - Black-box reverse engineering - Familiarity with UEFI platform firmware, ARM/x86 architectures, and secure boot architectures - Experience with SDR, wireless protocols (Bluetooth, Wi-Fi, ZigBee, etc.), or storage controllers like NVMe, SATA, and eMMC. Benefits What do we offer in return? We have a high-performance culture which is balanced evenly with world-class well-being initiatives and benefits: - Flexible Working: Balance your work and personal life with our flexible working options. - Holiday Allowance: Enjoy 20 days of holiday, plus and additional floating day to choose at your leisure - Pension, Medical and Dental cover as well as Life Assurance - Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities. - Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet. - Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.
Related Guides
Related Categories
Related Job Pages
More Consultant Jobs
Principal Cyber Strategic Consultant
NCC GroupA global team at the heart of cyber innovation, together we create a more secure digital future
Principal Cyber Strategic Consultant Department: Cyber Services and Capabilities Employment Type: Full Time Location: AUS Remote Description Position Title: Principal Consultant - OT C&I Location: Sydney, NSW Role Purpose As a Principal OT consultant in NCC Group's Global OT Consulting and Implementation (C&I) division, your role is pivotal in providing Cyber Security Assurance and Engineering to businesses, aiding them in safeguarding critical systems and information assets. Your responsibilities will include building and maintaining trusted client relationships, managing teams, conducting assessments, translating technical findings into actionable roadmaps, and ensuring adherence to internal policies and procedures. Moreover, you will play a key role in supporting sales activities and mentoring junior consultants, contributing to the overall knowledge sharing and growth within the delivery team. You will be working with the Global OT Director to expand our global engineering capabilities. Additionally, your responsibilities will extend to supporting the development of the C&I capability globally in some instances this could also include travel. Summary NCC Group specializes in offering comprehensive Cyber Assurance and engineering services aimed at assisting businesses in fortifying their cybersecurity posture. This encompasses defining security strategies, conducting risk assessments, developing policies, providing security awareness training, and offering on-demand cyber expertise. Our core services range from strategy and governance to incident response planning and 62443 assessments. We also provide bespoke services tailored to the specific needs of organizations, including managed services, security architecture review, SOC, monitoring, DFIR, Penetration Testing, Safety reviews and cyber transformation programs. The role within our OT division offers an exciting opportunity for individuals with prior relevant experience in the cyber and assurance field to leverage their skills in delivering high-quality solutions and fostering enduring client relationships. What we are looking for in you - The ability to assess and develop cyber security engineering solutions for industrial control systems (ICS), SCADA, and other OT environments - Provide expert consulting services in IT & OT and convergence challenges and solutions ideally with focus in the Rail sector, specifically commissioning depots or manufacturing facilities. - Perform risk assessments and gap analyses against relevant industry standards and frameworks (NIST, IEC 62443, etc.) - Leading workshops with suppliers and operators to facilitate 62443 Initial Risk Assessments, Detailed Risk Assessment processes and artifacts, and preparation of security cases for regulatory submission. - Design and implement security controls specific to industrial environments - Manage teams and projects that create and deliver technical reports and executive presentations for clients - Understanding of emerging threats, vulnerabilities, and security solutions specific to OT environments and protocols. - Support international teams remotely but also can travel where necessary to client sites - Excellent communication, consulting, and presentation skills, along with exceptional written communication and reporting abilities. - A recognised OT qualification such as GIAC GICSP, 62443 and similar - Have delivered OT projects within a critical national infrastructure client ideally in the transport subsector. - Ability to combine MITRE Threat Modelling, OT & Enterprise, aligned to IEC/ISA 62443. - Experience with TS 50701 (IEC63452) standard. - Practical experience as controls systems engineer or industrial engineering with SCADA or DCS or EMS. Desired Skills and Qualifications: - Certifications like CISM, CISSP, CRISC, ISO 27001 LI/LA, CISA are advantageous. - A degree in a science related topic (some examples are Mathematics, Computer Science, Engineering, Physics or relevant significant work experience in an operational environment) - Proficiency in managing people and building teams, demonstrating the ability to lead and develop individuals to contribute effectively to the team's objectives and overall organizational success. - Willingness and capability to prioritize safety of people, equipment and the environment when working in hazardous or "operating environments" such as side Behaviours: - Focusing on Clients and Customers. - Working as One NCC. - Always Learning. - Being Inclusive and Respectful. - Delivery Brilliantly. - Enabling Performance. Ways of working - Focusing on Clients and Customers. - Working as One NCC. - Always Learning. - Being Inclusive and Respectful. - Delivering Brilliantly. Our company At NCC Group, our mission is to create a more secure digital future. That mission underpins everything we do, from our work with our incredible clients to groundbreaking research shaping our industry. Our teams' partner with clients across a multitude of industries, delving into, securing new products, and emerging technologies, as well as solving complex security problems. As global leaders in cyber and escrow, NCC Group is a people-powered business seeking the next group of brilliant minds to join our ranks. Our colleagues are our greatest asset, and NCC Group is committed to providing an inclusive and supportive work environment that fosters creativity, collaboration, authenticity, and accountability. We want colleagues to put down roots at NCC Group, and we offer a comprehensive benefits package, as well as opportunities for learning and development and career growth. We believe our people are at their brilliant best when they feel bolstered in all aspects of their well-being, and we offer wellness programs and flexible working arrangements to provide that vital support. Come join us? What do we offer in return? We have a high-performance culture which is balanced evenly with world-class well-being initiatives and benefits: - Superannuation - Leaves Benefits include but not limited to: - Annual leave – 20 days - Sick Leave & caregivers Leave – 10 days - Marriage/Civil Partnership Leave (1 day) - Moving Home Leave (1 day) - Employee Assistance Program with access to confidential counselling support 24 hours a day, 7 days a week. This is a free service for up to 6 occasions per calendar year for you and your close family. So, what’s next? If this sounds like the right opportunity for you, then we would love to hear from you! Click on apply to this job to send us your CV and cover letter and the relevant member of our global talent team will be in touch with you. Alternatively send your details to global.ta@nccgroup.com . About your application We review every application received and will get in touch if your skills and experience match what we’re looking for. If you don’t hear back from us within 10 days, please don’t be too disappointed – we may keep your CV on our database for any future vacancies and we would encourage you to keep an eye on our career opportunities as there may be other suitable roles. If you do not want us to retain your details, please email global.ta@nccgroup.com. All personal data is held in accordance with the NCC Group Privacy Policy (candidate-privacy-notice-261023.pdf (nccgroupplc.com)). We are committed to diversity and flexibility in the workplace. If you require any reasonable adjustments to support you during the application process, please tell us at any stage. Please note that this role involves mandatory pre-employment background checks due to the nature of the work NCC Group does. To apply, you must be willing and able to undergo the vetting process. This role being advertised will be subject to screening as a mandatory requirement. . . . .
Company Description Ramboll is a global architecture, engineering, and consultancy company. As a foundation-owned people company, founded in Denmark, we believe that the purpose of sustainable change is to create a thriving world for both nature and people. So, that’s where we start – and how we work. Our history is rooted in a clear vision of how a responsible company should act and being open and curious is a cornerstone of our culture. Ramboll in the Americas has thousands of experts working across more than 70 offices. Ramboll experts deliver innovative solutions across Environment & Health, Water, Energy, and Planning & Urban Design. Job Description Remote-based position anywhere in the U.S. Applicants must be currently authorized to work in the United States on a full-time basis. No sponsorship is available for this position. Must be a U.S. citizen. Are you excited about understanding, interpreting, and navigating complex policy issues? Are you motivated by creating sustainable change that benefits society and nature? Are you a curious and open-minded person? If this sounds like you, or you’re curious to learn more, then this role could be the perfect opportunity. Join our site solutions team as our new Senior Lead Consultant, Impact Assessment and work with us to close the gap to a sustainable future. Your new role We are seeking an experienced engineer to lead Blast Risk Desktop Reviews and, as needed, Blast Risk Modeling, for complex industrial and energy infrastructure projects. The role centers on gathering and analyzing available data to identify potential blast and fire hazards around prospective sites, quantify likelihood and consequences through a structured risk matrix, and recommend practical mitigation measures. The engineer must be appropriately licensed and credentialed in one or more states. Candidate will need to be a U.S. Citizen. Your key responsibilities will be: - Lead the desktop review for blast and fire hazards using authoritative sources, existing reports, and geospatial datasets to assess blast risks within the site boundary and surrounding properties. - Identify and map all properties or infrastructure that could present a blast hazard affecting the subject site. Examples include natural gas and oil transmission pipelines, fuel depots and tank farms, petrochemical facilities, and oil refineries. Work with a project-specific GIS team to provide mapping for the project. - Determine proximity to conventional and nuclear power stations and outline potential emergency exclusion zones or necessary setbacks that could affect operations or access. - Quantify risk by calculating impact radii and return periods for potential blast events or pipeline ruptures, and by evaluating site vulnerabilities, secondary hazards, likelihood, and consequences of various blast events. - Perform blast risk modeling as needed and develop mitigation recommendations and describe residual consequences with mitigations in place. Qualifications About You - Professional Engineer in an engineering discipline, with experience performing blast and/or process safety assessments for energy or industrial facilities. - Working knowledge of quantitative risk assessment methods and risk matrices for explosion and fire scenarios. Preferred skills - Theoretical and practical knowledge of explosion and combustion mechanics and impact assessment, and ability to calculate frequency-consequence calculations, ignition-probability correlations, and return periods for various hazards. - Demonstrated ability to source and interpret geospatial and regulatory datasets for pipelines, petrochemical operations and heavy industry, and knowledge of GIS and CAD workflows for hazard mapping and presentation quality figures. - Experience with hazard identification and consequence modeling tools and methods used in blast and fire engineering. - Excellent technical writing and stakeholder communication skills with the ability to translate complex analysis into practical mitigation plans. - Work seamlessly with multidisciplinary technical teams and agencies throughout due diligence and permitting, and mentor junior staff. Additional Information What we can offer you - Investment in your development - Leaders you can count on, guided by our Leadership Principles - Being valued for the unique person you are - Never being short of inspiration from colleagues, clients, and projects - The long-term thinking of a foundation-owned company Ready to join us? Please submit your application with your up-to-date CV. We invite diversity in all its forms and encourage applicants from all groups to apply. Thank you for taking the time to apply! We look forward to receiving your application. Work at the heart of sustainable change with Ramboll in the Americas Ramboll is a global architecture, engineering, and consultancy company. As a foundation-owned people company, founded in Denmark, we believe that the purpose of sustainable change is to create a thriving world for both nature and people. So, that’s where we start – and how we work. Our history is rooted in a clear vision of how a responsible company should act and being open and curious is a cornerstone of our culture. Ramboll in the Americas has thousands of experts working across more than 70 offices. Ramboll experts deliver innovative solutions across Environment & Health, Water, Energy, and Planning & Urban Design. Where People Flourish Our mission is to create sustainable societies where people and nature flourish. This means that a culture of inclusion is embedded in everything we do. Our people bring diverse backgrounds and experiences to the company, enabling us to deliver innovative and forward-thinking solutions to our clients. We also know how important it is to achieve the right balance of where, when, and how much you work. At Ramboll, we offer flexibility as part of our positive and inclusive approach to work. We are committed to equal employment opportunity, regardless of age, disability or medical condition, gender identity, marriage and domestic partnership, pregnancy and maternity, race, ancestry, or national origin, religion or belief, sex and sexual orientation, military service and veteran status, or any other protected characteristic. Ramboll wants to ensure opportunities are accessible to candidates with disabilities. So, please let us know if there are any changes we could make to the application process to make it more comfortable for you. You can contact us at [email protected] with such requests. Salary Transparency Statement At Ramboll, your base pay is only part of your overall total compensation package. At the time of this posting, this role is likely to be compensated at an annual base salary between $97,204 - $140,657. Actual pay may be more or less than the posted range, depending on numerous factors, including experience, geographical location, internal equity, market conditions, education/training and skill level, and does not include bonuses, overtime, or other forms of compensation or benefits.
Company Description Ramboll is a global architecture, engineering, and consultancy company. As a foundation-owned people company, founded in Denmark, we believe that the purpose of sustainable change is to create a thriving world for both nature and people. So, that’s where we start – and how we work. Our history is rooted in a clear vision of how a responsible company should act and being open and curious is a cornerstone of our culture. Ramboll in the Americas has thousands of experts working across more than 70 offices. Ramboll experts deliver innovative solutions across Environment & Health, Water, Energy, and Planning & Urban Design. Job Description Remote-based position anywhere in the U.S. Applicants must be currently authorized to work in the United States on a full-time basis. No sponsorship is available for this position. Must be a U.S. citizen. Are you excited about understanding, interpreting, and navigating complex policy issues? Are you motivated by creating sustainable change that benefits society and nature? Are you a curious and open-minded person? If this sounds like you, or you’re curious to learn more, then this role could be the perfect opportunity. Join our site solutions team as our new Senior Lead Consultant, Impact Assessment and work with us to close the gap to a sustainable future. Your new role We are seeking an experienced engineer to lead Blast Risk Desktop Reviews and, as needed, Blast Risk Modeling, for complex industrial and energy infrastructure projects. The role centers on gathering and analyzing available data to identify potential blast and fire hazards around prospective sites, quantify likelihood and consequences through a structured risk matrix, and recommend practical mitigation measures. The engineer must be appropriately licensed and credentialed in one or more states. Candidate will need to be a U.S. Citizen. Your key responsibilities will be: - Lead the desktop review for blast and fire hazards using authoritative sources, existing reports, and geospatial datasets to assess blast risks within the site boundary and surrounding properties. - Identify and map all properties or infrastructure that could present a blast hazard affecting the subject site. Examples include natural gas and oil transmission pipelines, fuel depots and tank farms, petrochemical facilities, and oil refineries. Work with a project-specific GIS team to provide mapping for the project. - Determine proximity to conventional and nuclear power stations and outline potential emergency exclusion zones or necessary setbacks that could affect operations or access. - Quantify risk by calculating impact radii and return periods for potential blast events or pipeline ruptures, and by evaluating site vulnerabilities, secondary hazards, likelihood, and consequences of various blast events. - Perform blast risk modeling as needed and develop mitigation recommendations and describe residual consequences with mitigations in place. Qualifications About You - Professional Engineer in an engineering discipline, with experience performing blast and/or process safety assessments for energy or industrial facilities. - Working knowledge of quantitative risk assessment methods and risk matrices for explosion and fire scenarios. Preferred skills - Theoretical and practical knowledge of explosion and combustion mechanics and impact assessment, and ability to calculate frequency-consequence calculations, ignition-probability correlations, and return periods for various hazards. - Demonstrated ability to source and interpret geospatial and regulatory datasets for pipelines, petrochemical operations and heavy industry, and knowledge of GIS and CAD workflows for hazard mapping and presentation quality figures. - Experience with hazard identification and consequence modeling tools and methods used in blast and fire engineering. - Excellent technical writing and stakeholder communication skills with the ability to translate complex analysis into practical mitigation plans. - Work seamlessly with multidisciplinary technical teams and agencies throughout due diligence and permitting, and mentor junior staff. Additional Information What we can offer you - Investment in your development - Leaders you can count on, guided by our Leadership Principles - Being valued for the unique person you are - Never being short of inspiration from colleagues, clients, and projects - The long-term thinking of a foundation-owned company Ready to join us? Please submit your application with your up-to-date CV. We invite diversity in all its forms and encourage applicants from all groups to apply. Thank you for taking the time to apply! We look forward to receiving your application. Work at the heart of sustainable change with Ramboll in the Americas Ramboll is a global architecture, engineering, and consultancy company. As a foundation-owned people company, founded in Denmark, we believe that the purpose of sustainable change is to create a thriving world for both nature and people. So, that’s where we start – and how we work. Our history is rooted in a clear vision of how a responsible company should act and being open and curious is a cornerstone of our culture. Ramboll in the Americas has thousands of experts working across more than 70 offices. Ramboll experts deliver innovative solutions across Environment & Health, Water, Energy, and Planning & Urban Design. Where People Flourish Our mission is to create sustainable societies where people and nature flourish. This means that a culture of inclusion is embedded in everything we do. Our people bring diverse backgrounds and experiences to the company, enabling us to deliver innovative and forward-thinking solutions to our clients. We also know how important it is to achieve the right balance of where, when, and how much you work. At Ramboll, we offer flexibility as part of our positive and inclusive approach to work. We are committed to equal employment opportunity, regardless of age, disability or medical condition, gender identity, marriage and domestic partnership, pregnancy and maternity, race, ancestry, or national origin, religion or belief, sex and sexual orientation, military service and veteran status, or any other protected characteristic. Ramboll wants to ensure opportunities are accessible to candidates with disabilities. So, please let us know if there are any changes we could make to the application process to make it more comfortable for you. You can contact us at [email protected] with such requests. Salary Transparency Statement At Ramboll, your base pay is only part of your overall total compensation package. At the time of this posting, this role is likely to be compensated at an annual base salary between $97,204 - $140,657. Actual pay may be more or less than the posted range, depending on numerous factors, including experience, geographical location, internal equity, market conditions, education/training and skill level, and does not include bonuses, overtime, or other forms of compensation or benefits.
Associate Consultant (Co-op Program)
Umbrella IncorporatedCloud Managed Networks is an IT solutions provider specializing in cloud migration, network infrastructure, and cybersecurity. With a client-centric approach, we create tailored strategies to meet unique business needs, ensuring seamless digital transformations. Our expertise spans on-premises, cloud, and hybrid environments, offering services such as system architecture, managed IT support, and IoT solutions. As a trusted partner of industry leaders like Cisco, Fortinet, Artic Wolf and Verkada, Cloud Managed Networks delivers scalable, secure, and innovative solutions across various sectors, including healthcare, education, and manufacturing.
About Umbrella Umbrella Incorporated partners with enterprises to navigate complexity, accelerate growth, and drive measurable impact. With expertise across digital commerce, IT infrastructure, market insights, finance, and AI, we deliver integrated, end-to-end solutions through a collaborative, outcome-driven approach. Integrated expertise driving business forward. About Tidal Commerce Inc. Tidal is an outcome-focused, specialized eCommerce consulting and engineering boutique for B2C & B2B businesses, offering comprehensive solutions from ideation to implementation and management. - Recognized as a Shopify Plus partner. - Expertise in headless and composable technologies. - Diverse B2C and B2B planning and implementation experience and a deep understanding of both markets. - Integrated onshore and offshore teams in six countries, offering support for round-the-clock productivity. - Member of Umbrella-Incorporated, a business consulting firm, Tidal provides holistic end-to-end digital transformation solutions with cross-functional expertise in strategy, finance, operations, marketing and technology. About the role We are looking for Associate Consultants to join our management consulting Co-op program. This role provides a unique opportunity to work closely with clients, explore their business challenges, and contribute to tailored solutions. As a co-op, you’ll collaborate directly with a consultant who will provide coaching and mentorship throughout your experience. We expect our co-ops to be proactive learners and to take on responsibilities similar to those of full-time Associate Consultants, gaining meaningful, hands-on exposure to real projects. This co-op can be structured for school credit, and candidates who excel and show strong potential may be considered for a full-time offer upon completion. This is a future opportunity role to build our talent pipeline. What you'll do - Drive end-to-end project delivery by overseeing all phases - from initial scoping and stakeholder alignment, through planning, execution, and QA, to successful deployment and post-launch support. - Monitor project progress, track deliverables, and prepare status updates for internal and client teams. - Develop process documentation and presentation materials to support client recommendations. - Support meetings and workshops with both technical and non-technical stakeholders, capturing key insights and follow-up actions. - Conduct research and detailed analysis to support client engagements, including market research, benchmarking, and operational analysis. - Liaise with clients and team members to ensure needs and expectations are clearly understood and addressed. - Provide insights and recommendations based on data analysis to support strategic decision-making. Qualifications - Pursuing or recently completed a master's degree (MBA, MSc in Management, Strategy, Economics, or related field) - Proven project management skills with client-facing experience, including coordinating cross-functional teams, managing timelines, and ensuring high-quality deliverables. - Familiarity with digital transformation, enterprise technology implementations, and IT strategy would be an added advantage. - Experience in the e-commerce industry and familiarity with platforms such as Shopify and Commercetools is preferred. - Strong analytical, problem-solving, and critical-thinking skills with the ability to structure and interpret data-driven insights. - High proficiency in PowerPoint and Excel; familiarity with tools such as Miro, Jira, or other collaboration/project management platforms is a plus. - Excellent communication and presentation skills, with the ability to distill complex concepts into clear, actionable recommendations. - Proven ability to work independently while contributing effectively in team settings. Benefits - Hands-on technology and strategy consulting exposure to real client projects across industries, from Fortune 500 companies to fast-growing startups. - 1:1 mentorship and coaching from experienced consultants to support your growth. - Opportunity to take on responsibilities similar to a full-time Associate Consultant. - Earn school credit as part of your co-op placement. - Strong performance may lead to a return offer for a full-time position. - Access to a collaborative, fast-paced environment at the forefront of Digital Transformation and E-Commerce. - Chance to build expertise with leading platforms and tools such as Shopify, Commercetools, Miro, and Jira. - Flexible work arrangements, with opportunities to balance remote and in-office collaboration. Tidal Commerce is committed to creating and maintaining a workplace that is free from harassment and discrimination under the Ontario Human Rights Code. The Company’s policy is not to discriminate against any applicant or employee on the basis of a prohibited ground enumerated by the Ontario Human Rights Code. Tidal welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process. Please advise Human Resources if you require accommodation. Further, it is Tidal's policy to comply with all applicable provincial and federal laws regarding background and criminal record checks in making hiring decisions.

