Loading jobs…
Loading jobs…
The Scion Group — GBR London
We are seeking a highly skilled Cyber Security Rail Lead to join our Global Transport practice. This role is pivotal in strengthening and expanding our cyber security capability within the global rail ecosystem, while also supporting cross-domain engagements in maritime, automotive, and aviation as needed. The ideal candidate will bring deep knowledge of operational technology (OT), rail systems, relevant international cyber security standards (including IEC 62443, TS 50701, IEC 63452), penetration testing methodologies, and the broader transport ecosystem.
In addition to technical leadership, the individual will play a key role in supporting business development, building client trust, and elevating NCC Group’s profile within the rail sector. This is a client-facing role requiring strong collaboration, communication and leadership skills. 1.
Technical Leadership (Rail Cyber Security) Serve as the subject matter expert (SME) for rail cyber security across global engagements. Lead, design, and deliver complex cyber security assessments across both operational technology (OT) and information technology (IT) environments. Apply deep knowledge of rail-specific standards and frameworks, including: IEC 62443 (Industrial Cyber Security) TS 50701 (Railway Cyber Security) IEC 63452 (Railway Rolling Stock Cyber Security) Conduct or oversee penetration testing activities, vulnerability assessments, architecture reviews, risk assessment and threat modelling for rail clients.
Requirements
for railway operators, manufacturers, and integrators.
across the rail ecosystem. 2.
Translate complex rail operations knowledge into training and mentorship for internal teams. Act as the internal thought leader on emerging rail threats, vulnerabilities, and industry trends. 3.
Business Development & Practice Growth Support the creation and growth of new rail opportunities globally. Build NCC Group’s market presence in the rail sector through: Thought leadership (whitepapers, webinars, industry events) Client engagements and pre-sales support Partnerships with key rail OEMs, operators, and regulators Collaborate with engagement managers and leadership to define rail-focused service offerings. Contribute to bids, proposals, and technical scoping activities for prospective customers.
4. Cross-Domain Support (Multi-Modal Transport) Potentially support projects across maritime, automotive, and aviation domains as required, with team backing. Maintain awareness of common OT and safety-critical technologies across transport sectors.
Promote knowledge-sharing across the wider Transport Cyber Security practice. 5. Teamwork, Collaboration & Mentorship Provide mentoring, guidance, and technical leadership to consultants at various levels.
Work closely with colleagues across global teams to deliver integrated and high-quality engagements. Promote a collaborative, supportive, and inclusive team culture. 6.
Client Engagement & Delivery Excellence Act as a trusted advisor to clients, providing clear, actionable cyber security recommendations. Communicate complex concepts in a clear, professional, and client-friendly manner. Ensure high-quality deliverables and maintain strong client satisfaction throughout engagements.
Technical Experience Proven experience in rail cyber security, ideally within operators, OEMs, integrators, or a cyber consultancy.