OT Security Engineer
About this opportunity
Job Description Summary
We are looking for an experienced Operational Technology (OT) Security Engineer to secure and enhance our industrial environments. The successful candidate will work closely with IT, OT, manufacturing, engineering, and cybersecurity teams to protect industrial control systems (ICS), SCADA environments, and manufacturing operations against cyber threats while maintaining operational reliability and safety.
This role is responsible for designing, implementing, monitoring, and continuously improving OT cybersecurity capabilities across global manufacturing sites.
Job Description
Sandoz continues to go through an exciting and transformative period as a global leader and pioneering provider of sustainable Biosimilar and Generic medicines. As we continue down this new and ambitious path, unique opportunities will present themselves, both professionally and personally. Join us, the future is ours to shape!
Key Responsibilities
Design, implement, and maintain OT cybersecurity solutions across manufacturing environments.
Develop and maintain OT cybersecurity architecture aligned with ISA/IEC 62443 and NIST Cybersecurity Framework.
Deploy and administer OT security technologies.
Perform OT asset discovery, inventory management, and network segmentation validation.
Conduct OT risk assessments, cybersecurity maturity assessments, and gap analyses.
Support vulnerability management activities and coordinate remediation with site engineering and automation teams.
Support secure deployment of industrial technologies, new manufacturing projects, plant expansions, migrations, and modernization initiatives.
Develop OT security standards, procedures, and technical documentation.
Required Qualifications & Experience
Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Technology, or equivalent experience.
5+ years of cybersecurity experience, including 3+ years of dedicated OT/ICS cybersecurity experience.
Experience working in manufacturing, pharmaceutical, energy, utilities, or other industrial environments.
Strong understanding of Industrial Control Systems (ICS), including SCADA, PLCs, DCS, HMI, and industrial networking.
Experience with industrial protocols such as Modbus, Profinet, EtherNet/IP, OPC UA, DNP3, and BACnet.
Knowledge of Purdue Enterprise Reference Architecture and familiarity with Zero Trust principles for OT environments.
Experience investigating OT cybersecurity incidents and collaborating with SOC and Incident Response teams; supporting OT security telemetry onboarding into SIEM platforms.
Experience creating detection use cases and analytics for industrial threats, participating in disaster recovery and business continuity planning, and working with vendors and third parties to secure OT solutions.
What you’ll receive:
Monthly pension contribution matching your individual contribution up to 3% of your gross monthly base salary
Risk Life Insurance
5-week holiday per year (1 week above the Labor Law requirement)
Cafeteria employee benefit program – choice of benefits from Benefit Plus CZ in the amount of 12,000 CZK per year
Meal vouchers in amount of 120 CZK for each working day (full tax covered by company)
Multisport Card
Premium Health Care Program
Why Sandoz?
Sandoz is the global leader in Biosimilar and Generic medicines, a segment of the healthcare industry that delivers 80% of the world’s medicines at 30% of the cost, touching the lives of more than 1 billion people across 100+ countries! While we are proud of our achievements, we have an ambition to do more so that everyone can achieve the basic human right of good health.
With investments in new development capabilities, production sites, new acquisitions, and partnerships, we have the opportunity to shape the future of Sandoz and help even more people gain access to low-cost, high-quality medicines, sustainably.
Our momentum is powered by an open, collaborative culture driven by our talented and ambitious colleagues, who, in return for applying their skills, experience an agile and collegiate environment with impactful careers, where diversity of thought is welcomed and where personal growth is supported!
Join us, help us make healthcare fairer and faster.
Commitment to Diversity & Inclusion
We are committed to building an outstanding, inclusive work environment and diverse teams representative of the patients and communities we serve.
#Sandoz
Skills Desired
Information Security Risk Management, ITIL, Quality Management, Root Cause Analysis (RCA), Sec Ops (Security Operations), Vendor Management
Job details
How this role compares
Computed from every other active Information Technology role in our database, not just this employer's listings.
We currently track 1211 comparable Information Technology roles across 59 biopharma companies.
Salary context
152 of 1211 peers report a salary range (USD, annualized)
Peers share this role's job function. This posting doesn't list a seniority level, so peers aren't narrowed by seniority either -- the range below may span more levels than usual.
Where these roles are based
Top locations among the 1211 comparable roles
+ 26 more countries
Seniority mix
665 of 1211 peers have a known seniority level
Therapeutic area mix
2 of 1211 peers have a known therapeutic area; the rest are genuinely unlabeled, not hidden
Similar opportunities
The closest matches from our peer group, ranked by how similar they are, not how well you'd qualify for them -- treat this as market context, not a guaranteed shortlist; a weak match is labeled as one below.
Matched on job function only -- seniority, specialty, and location weren't confirmed as aligned.
Notify me about similar jobs
Get an email when we spot other openings like this one – same job function, comparable seniority, roles you'd actually want to see.
How we calculate "similar"
No black box, no LLM guesswork: a deterministic score built from four normalized attributes. Here's this role's own peer group at different match levels, so you can see the mechanism, not just the result.
Every comparison starts from the same 100-point budget: 25 for working in the same function, 40 for the same therapeutic area, 20 for the same or adjacent seniority, 15 for the same country. A dimension we can't confirm on both sides contributes nothing, never a guess, never a free pass.
0 points, never a partial guess. A role we know almost nothing about beyond its function bottoms out at 25%; it never inflates to 100% just because there's little to compare against. Seniority uses a defined ladder (Associate → Manager → Associate Director → Senior → Principal → Director → Senior Director → Executive/VP) so "Director" and "Senior Director" count as adjacent, but "Director" and "Executive/VP" do not.