What you’ll be doingSecurity Architecture ReviewsPerform holistic tabletop reviews covering both technical and non-technical risk across OT environments, without engaging in high-risk manual or automated activityAnalyze for areas of negative impact, high risk, and single points of failure (SPOF) within sensitive, legacy networksApply structured judgment to identify where risk is concentrated and where controls are missingAdapt review depth and approach to the operational realities of each client environmentOT Risk Identification & AssessmentIdentify vulnerabilities and weaknesses across Operational Technology environments, including Industrial Control Systems (ICS), SCADA, and field devicesAssess legacy and sensitive networks where conventional testing methods carry unacceptable operational riskDistinguish between theoretical and operationally relevant risk to keep findings actionableProve impact where appropriate, exercising restraint where the environment demands itClient Advisory & Program ImprovementSupport OT clients with security program improvements, identifying which critical controls are neededRefine testing scope collaboratively as engagements proceed and the environment becomes clearerTranslate technical findings into guidance that clients can act on across both technical and leadership audiencesBuild client confidence through credibility, clear communication, and operational awarenessMethodology & Continuous ImprovementContribute to the maturity of Packetlabs' OT testing methodology and practiceStay current on OT threats, attack techniques, and defensive controlsShare knowledge with the broader team to minimize blind spots and strengthen collective capabilityHelp raise the standard of OT security work across the firmWho you areNo egos, ever. Egos don't belong at Packetlabs. The more you learn, the less you know. You stay humble, ask questions, and work to help clients improve their security.Customer-first mentality. You are an excellent communicator with clients, project managers, and teammates. You are responsive, reliable, and professional throughout every engagement.You deliver work that you take pride in. Your work is an autograph of your excellence. You hold yourself to a high standard and it shows in what you produce.Digs deeper into every finding. You don't stop until impact is proven, while understanding that restraint is the right call in sensitive OT environments where high-risk activity is not appropriate.Comfortable being uncomfortable. You move toward obstacles, not away from them. Consulting is not a typical job and requires adapting to rapidly changing environments.Always learning. Cybersecurity changes every day and you keep up because you want to. You are deeply aware of your skillset and committed to improving it.Self-motivated and dependable. You take ownership of your work and your outcomes without needing to be managed into them.What you bringA graduate of an Information Security or Computer Science degree programProfessional qualifications (one or more preferred): GICSP, GRID, GCIP, CSSA, CACE, CISSP, OSCP3+ years experience assessing or operating within OT, ICS, or SCADA environmentsStrong understanding of the operational constraints that make OT testing distinct from IT testingExcellent communication skills, with the ability to convey risk clearly to technical and non-technical audiencesA demonstrated commitment to continuous learning in a rapidly evolving fieldStrong analytical and problem-solving skills, with the ability to work independently in unfamiliar or highly specialized environmentsWhat success looks likeClients gain a clear, accurate understanding of their OT risk without any operational disruptionFindings are credible, impactful, and directly actionable for both technical and leadership audiencesEngagements are delivered to a consistently high standard with strong client confidenceScope is managed well as engagements evolve, with risk surfaced early and clearlyPacketlabs' OT methodology and practice continue to mature through your contributionClients trust Packetlabs as a partner that understands the stakes of testing sensitive environmentsWhy us?The opportunity to work on high-stakes OT engagements where your judgment genuinely mattersReceive immediate and ongoing offensive security training, mentorship, and professional development to advance your technical capabilitiesPlay a key role in shaping the growth, direction, and methodology of Packetlabs expanding OT practiceA leadership team that values substance, quality, and disciplined executionCollaboration with a highly skilled team of security professionals who are passionate about technical excellence and raising the bar Competitive compensation and growth opportunityGRRSP with corporate matching in CanadaParticipation in corporate benefit plans within CanadaFlexible work environment that empowers employees to do their best workFully remote within CanadaPacketlabs is a cybersecurity consulting firm specializing in advanced Penetration Testing. We exist to eliminate the false sense of security that comes from shallow testing and checkbox-driven assessments.Packetlabs is looking for an OT Security Consultant to own how Packetlabs evaluates risk in sensitive, high-stakes systems where uptime, safety, and reliability cannot be compromised.This role requires the rare combination of offensive security instinct and operational restraint. OT environments (industrial control systems, SCADA, and field devices) demand a consultant who can identify real risk without introducing it. You will work directly with clients to understand their environments and deliver findings that improve security posture without disrupting operations.The pay range for this role is:80,000 - 120,000 CAD per year (Remote (Canada))