Professional experience

Dr. Jesus Molina

Industrial Cybersecurity & AI Security Leader

Industrial cybersecurity researcher, inventor, academic leader, and technical strategist with more than 20 years across OT/ICS, critical infrastructure, trusted computing, hardware assurance, standards, and customer-facing architecture. Brings twelve granted U.S. patents, international speaking and teaching experience, and practical AI engineering with Codex for agentic research, automation, implementation, and validation.

Barcelona, Spain · contact@jesusmolina.com · www.jesusmolina.com

Core expertise

OT/ICS security Industrial cybersecurity AI security Applied AI engineering Codex Agentic workflows LLM-assisted development Hardware assurance Trusted computing Data diodes Secure architecture IEC 62443 CLC/TS 50701 NIS2 Cyber Resilience Act Rail cybersecurity Energy cybersecurity

Professional experience

Independent Cybersecurity Consultant

OTIFYD

Feb 2026 – Aug 2026

Spain

  • Led industrial-cybersecurity projects, technical pre-sales, proposals, opportunity shaping, and client-facing architecture across critical-infrastructure contexts.
  • Developed evidence-based programmes spanning IEC 62443, the Cyber Resilience Act, rail, energy, product assurance, and unidirectional security.
  • Built structured mentoring and evaluation workflows and served as Agenda and Content Chair for the 2026 OT Defenders Summit.

Director of Industrial Security / Director of Vertical Development

Waterfall Security Solutions

2017 – 2025

Global

  • Built and advanced rail-sector cybersecurity positioning while supporting energy, water, airports, manufacturing, healthcare, and other critical-infrastructure markets.
  • Designed and advised on unidirectional gateway, data-diode, OT segmentation, secure remote-access, historian, edge, and industrial-cloud architectures.
  • Translated IEC 62443, CLC/TS 50701, NIS2, NERC CIP, and sector requirements into product strategy, customer guidance, technical education, and market development.
  • Represented Waterfall in EE-ISAC and UITP contexts and authored guidance for power generation, rail cybersecurity, NIS2, and ransomware defence.

Founder and Cybersecurity Consultant

JadeBrain Inc.

2011 – 2017

San Francisco Bay Area

  • Advised international organizations on industrial, IoT, cloud, trusted-computing, and critical-infrastructure security, architecture, standards, and technical strategy.
  • Represented clients in industry consortia, contributed to the Industrial Internet Security Framework, and organized RSA Conference IoT Sandbox workshops and live-hacking education.
  • Created assessments, prototypes, cloud-security test concepts, reports, workshops, demonstrations, and customer-facing technical guidance.

Security Researcher

Fujitsu Laboratories of America

2007 – 2011

Sunnyvale, California

  • Researched and prototyped trusted-computing, cloud-security, authentication, integrity-monitoring, mobile-security, and hardware-assisted security mechanisms.
  • Represented Fujitsu in the Trusted Computing Group, OASIS, DMTF, and related standards work; held TCG leadership and board responsibilities.
  • Invented patented hardware and software security mechanisms involving trust anchors, TPMs, independent auditing, secure transfer, and identity verification.

Academic leadership

Academic Director and Lecturer, Rail Cybersecurity

Universitat Politècnica de Catalunya School

2023 – Present

  • Taught four consecutive UPC rail-cybersecurity course cycles from 2023 through 2026 using IEC 62443 and CLC/TS 50701.
  • Academic Director for the new 2027 postgraduate programme Ciberseguridad Ferroviaria: Diseño, Normativas y Sistemas Técnicos (15 ECTS; 90 teaching hours).
  • Designed sector-specific curriculum covering governance, standards, risk, signalling, embedded and industrial systems, technical defence, and a final applied project.

Education

  • Ph.D., Electrical Engineering, University of Maryland, 2007 — intrusion detection and hardware-assisted integrity monitoring
  • M.S., Electrical Engineering, University of Maryland, 2001
  • Telecommunications Engineering degree, Universitat Politècnica de Catalunya, 1999

Leadership and recognition

  • Twelve granted U.S. patents across trusted computing, hardware/software security, secure transfer, identity, and mobile systems.
  • National Science Foundation reviewer for hardware and cybersecurity systems.
  • Contributor to the Industrial Internet Security Framework, DMTF CIMI, OASIS TOSCA, and Cloud Security Alliance big-data security guidance.
  • International speaker at S4x25, RSA Conference, Black Hat, DEF CON, Sikkerhetsfestivalen, ENISA/ERA rail events, and critical-infrastructure forums.

Applied AI engineering and AI security

  • Practical AI engineering with Codex: agent-driven research and implementation, code and document automation, structured context, tool orchestration, testing, and human-reviewed validation.
  • AI/OT security research covering generative-AI attack amplification, cyber-physical consequences, anomaly-detection context, and physically grounded mitigations.

Selected talks

  • The Case For Vertical Specific (Rail) OT Security Training Materials — S4x25
  • Replicating a 10-Year-Old OT Cyberattack Using AI — Sikkerhetsfestivalen 2024
  • Learn How to Control Every Room at a Luxury Hotel Remotely — Black Hat USA and DEF CON 22, 2014

Selected publications

  • Copilot — a coprocessor-based kernel runtime integrity monitor, USENIX Security 2004
  • Power Generation OT Security: Applying and Interpreting ISA/IEC 62443 Standards, 2024
  • NIS2 for Operational Technology Professionals: A Guide to Cybersecurity Compliance, 2023
  • Cybersecurity Imperatives for Vital Rail Networks at Operations Control Centers, 2022
Browse the professional library →