Principal Architect, Manufacturing Security

🔥 0 minutes ago

🇩🇰 Denmark – Remote

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Danaher Corporation

Danaher Corporation

10,000+ employees

🏥 Healthcare

💼 Consulting

📦 Logistics

Healthcare • Consulting • Logistics

Danaher Corporation is a leading global life sciences and diagnostics innovator that develops and supplies instruments, technologies, software, and services to accelerate scientific research, biotechnology development, and clinical diagnostics. The company operates through businesses focused on biotechnology tools, diagnostics platforms, and life sciences products, leveraging the Danaher Business System and an acquisition-driven strategy to scale technologies and support customers across academia, pharmaceutical and biotech companies, and clinical laboratories.

📋 Description

• Own and evolve Danaher's enterprise OT security architecture blueprint across its global manufacturing portfolio • Define network segmentation standards, tiered ISA-95/Purdue security zones, IT/OT boundary controls, DMZ patterns, and BMS isolation strategy • Lead portfolio-wide adoption of secure remote access architecture, retiring legacy VPN and direct-vendor connections • Extend zero-trust network access to OT OEMs, contractors, and remote support vendors • Partner with Manufacturing Security and information security leadership on OT cybersecurity policies, architecture governance standards, and control frameworks • Translate governance standards into OpCo-level implementation plans • Drive the Architecture Review Board process for OT security capabilities, including micro-segmentation, remote access OT extension, OT monitoring tools, and industrial firewall platforms • Validate technical designs before deployment and enforce architectural standards across the portfolio • Advise OpCo CIOs, site IT leads, and plant engineers on OT security architecture • Provide architecture consultation for high-risk sites and oversight for the segmentation remediation program • Provide guidelines and standards supporting secure digital manufacturing enablement

🎯 Requirements

• Deep expertise in OT/ICS network architecture, including Purdue Model/ISA-95 zone segmentation, industrial DMZ design, OT protocol firewall policy (Modbus, Profinet, EtherNet/IP, OPC-UA, BACnet), and secure remote access architecture • Hands-on experience designing and validating network segmentation across complex, multi-site OT environments, including PLCs, DCS, SCADA, BMS, HMI, and historian systems • Experience in life sciences, pharmaceutical, or similarly regulated manufacturing • Strong command of IEC 62443, NIST SP 800-82, CIS Controls for ICS, and CISA/NSA OT security guidance • Demonstrated experience applying OT cybersecurity standards in a federated, multi-OpCo enterprise • Experience with ZTNA and SASE architectures, including Zscaler or equivalent, in OT environments • Experience integrating industrial remote access protocols, vendor management workflows, and identity governance • 12+ years of experience in OT/ICS security, network architecture, or industrial cybersecurity • At least 5 years in a principal architect, distinguished engineer, or equivalent senior individual-contributor capacity within a complex multi-site manufacturing environment

🏖️ Benefits

• Career development and hiring-from-within opportunities • Culture of belonging • Approximately 10% regional and international travel

Apply Now