Northland Power is a Canadian power producer operating critical energy infrastructure across five continents - offshore wind farms, onshore renewables, battery storage, and natural gas assets. Founded in 1987, the company has spent nearly four decades building and running generation and storage systems that feed national grids. The attack surface is physical and digital: SCADA systems managing turbine arrays, OT networks spanning offshore platforms, and the convergence points where legacy industrial control protocols meet enterprise IT. Think wind farm telemetry in the North Sea alongside gas-fired dispatch logic in Asia - all of it requiring defense-in-depth against threats to operational availability.
For cybersecurity practitioners, the threat model here isn't hypothetical. Energy infrastructure sits in a category where ransomware, state-sponsored intrusion, and supply-chain compromise all carry real-world consequences - grid destabilization, safety hazards, regulatory exposure. The company's geographic footprint across Canada, the United States, Latin America, Europe, and Asia means navigating multiple regulatory regimes (NERC CIP, EU NIS2, and their regional equivalents) while maintaining consistent security posture across diverse OT environments. This isn't a single-cloud SaaS shop; it's a distributed industrial operation with heterogeneous technology stacks and long asset lifecycles.
The technical domains demand fluency in both IT and OT security - network segmentation for industrial control systems, monitoring of SCADA and DCS environments, incident response across time zones and jurisdictions. The company describes its culture as entrepreneurial and solution-oriented, bringing together industry experts to address complex challenges. Security roles in this context involve securing infrastructure where uptime is non-negotiable and the consequences of failure extend well beyond data loss.






