Professional experience
Dr. Jesus Molina
Industrial Cybersecurity & AI Security Leader
Industrial cybersecurity researcher, inventor, academic leader, and technical strategist with more than 20 years across OT/ICS, critical infrastructure, trusted computing, hardware assurance, standards, and customer-facing architecture. Brings twelve granted U.S. patents, international speaking and teaching experience, and practical AI engineering with Codex for agentic research, automation, implementation, and validation.
Barcelona, Spain · contact@jesusmolina.com · www.jesusmolina.com
Core expertise
Professional experience
Independent Cybersecurity Consultant
OTIFYD
Feb 2026 – Aug 2026
Spain
- Led industrial-cybersecurity projects, technical pre-sales, proposals, opportunity shaping, and client-facing architecture across critical-infrastructure contexts.
- Developed evidence-based programmes spanning IEC 62443, the Cyber Resilience Act, rail, energy, product assurance, and unidirectional security.
- Built structured mentoring and evaluation workflows and served as Agenda and Content Chair for the 2026 OT Defenders Summit.
Director of Industrial Security / Director of Vertical Development
Waterfall Security Solutions
2017 – 2025
Global
- Built and advanced rail-sector cybersecurity positioning while supporting energy, water, airports, manufacturing, healthcare, and other critical-infrastructure markets.
- Designed and advised on unidirectional gateway, data-diode, OT segmentation, secure remote-access, historian, edge, and industrial-cloud architectures.
- Translated IEC 62443, CLC/TS 50701, NIS2, NERC CIP, and sector requirements into product strategy, customer guidance, technical education, and market development.
- Represented Waterfall in EE-ISAC and UITP contexts and authored guidance for power generation, rail cybersecurity, NIS2, and ransomware defence.
Founder and Cybersecurity Consultant
JadeBrain Inc.
2011 – 2017
San Francisco Bay Area
- Advised international organizations on industrial, IoT, cloud, trusted-computing, and critical-infrastructure security, architecture, standards, and technical strategy.
- Represented clients in industry consortia, contributed to the Industrial Internet Security Framework, and organized RSA Conference IoT Sandbox workshops and live-hacking education.
- Created assessments, prototypes, cloud-security test concepts, reports, workshops, demonstrations, and customer-facing technical guidance.
Security Researcher
Fujitsu Laboratories of America
2007 – 2011
Sunnyvale, California
- Researched and prototyped trusted-computing, cloud-security, authentication, integrity-monitoring, mobile-security, and hardware-assisted security mechanisms.
- Represented Fujitsu in the Trusted Computing Group, OASIS, DMTF, and related standards work; held TCG leadership and board responsibilities.
- Invented patented hardware and software security mechanisms involving trust anchors, TPMs, independent auditing, secure transfer, and identity verification.
Academic leadership
Academic Director and Lecturer, Rail Cybersecurity
Universitat Politècnica de Catalunya School
2023 – Present
- Taught four consecutive UPC rail-cybersecurity course cycles from 2023 through 2026 using IEC 62443 and CLC/TS 50701.
- Academic Director for the new 2027 postgraduate programme Ciberseguridad Ferroviaria: Diseño, Normativas y Sistemas Técnicos (15 ECTS; 90 teaching hours).
- Designed sector-specific curriculum covering governance, standards, risk, signalling, embedded and industrial systems, technical defence, and a final applied project.
Education
- Ph.D., Electrical Engineering, University of Maryland, 2007 — intrusion detection and hardware-assisted integrity monitoring
- M.S., Electrical Engineering, University of Maryland, 2001
- Telecommunications Engineering degree, Universitat Politècnica de Catalunya, 1999
Leadership and recognition
- Twelve granted U.S. patents across trusted computing, hardware/software security, secure transfer, identity, and mobile systems.
- National Science Foundation reviewer for hardware and cybersecurity systems.
- Contributor to the Industrial Internet Security Framework, DMTF CIMI, OASIS TOSCA, and Cloud Security Alliance big-data security guidance.
- International speaker at S4x25, RSA Conference, Black Hat, DEF CON, Sikkerhetsfestivalen, ENISA/ERA rail events, and critical-infrastructure forums.
Applied AI engineering and AI security
- Practical AI engineering with Codex: agent-driven research and implementation, code and document automation, structured context, tool orchestration, testing, and human-reviewed validation.
- AI/OT security research covering generative-AI attack amplification, cyber-physical consequences, anomaly-detection context, and physically grounded mitigations.
Selected talks
- The Case For Vertical Specific (Rail) OT Security Training Materials — S4x25
- Replicating a 10-Year-Old OT Cyberattack Using AI — Sikkerhetsfestivalen 2024
- Learn How to Control Every Room at a Luxury Hotel Remotely — Black Hat USA and DEF CON 22, 2014
Selected publications
- Copilot — a coprocessor-based kernel runtime integrity monitor, USENIX Security 2004
- Power Generation OT Security: Applying and Interpreting ISA/IEC 62443 Standards, 2024
- NIS2 for Operational Technology Professionals: A Guide to Cybersecurity Compliance, 2023
- Cybersecurity Imperatives for Vital Rail Networks at Operations Control Centers, 2022