Security Engineer - Manufacturing Cybersecurity
HybridMadrid, Madrid, Spain
Job Summary
Protect Roche Manufacturing systems and networks against cybersecurity threats by providing local architecture and engineering support to system owners and administrators. Execute technical design reviews, integration, testing, and documentation for new OT systems and infrastructure changes. Develop Manufacturing Cybersecurity standards and baselines, advise on risk mitigation measures, and coordinate vendor OT services. Design and sustain OT Security Monitoring (IIDS), lead incident response investigations, and leverage secure AI tools to automate log analysis and threat modeling. Collaborate with cross-functional teams to align security requirements and participate in stakeholder workshops. This role supports the Manufacturing Cybersecurity Engineering team within the Information Security function.
Required Qualifications
- Bachelor's degree in Computing Engineering, Automation Engineering or similar
- 0-3 years of experience in the IT or Cyber Security field
- Solid knowledge on IT and OT infrastructure, including PLC security and protection
- Current knowledge of technology capabilities and trends; types, and techniques of hacking attacks
- Java, Net, C++, Python, bash, power shell
- One of five potential security-related certifications (Certified Ethical Hacker (CEH), CompTIA Security+, Certified Information System Security Professional (CISSP), ISA/IEC 62443 Cybersecurity Specialist certification, Global Industrial Cyber Security Professional (GICSP))
- Solid knowledge on IT infrastructure and service deployment model within Roche
- Must be authorized to work and live within commuting distance
- Office presence required approximately 40% of the time (typically two days per week)
Desired Qualifications
- Foundational knowledge of cybersecurity principles and a strong eagerness to develop technical security skills in a manufacturing environment
- Demonstrated potential to collaborate effectively within a team and build productive relationships with stakeholders
- Commitment to learning and taking ownership of assigned tasks within security projects or incident support
- Some knowledge about local manufacturing and automation systems in use according to the current industry standards
- Familiarity with emerging AI security standards and risk models
- Eagerness to utilize secure, enterprise-ready AI productivity and engineering tools to assist in routine log analysis, scripting, and threat modeling workflows
- Developing ability to apply tools, principles, and concepts related to requirements, data, usability, and process analysis within the security domain under supervision
- Ability to support the analysis of technology fit and contribute to the evaluation of effective, strategically aligned cybersecurity solutions and controls
- Expertise in anti-virus software, intrusion detection, firewalls and content filtering in OT
- Knowledge of risk assessment tools, technologies and methods
- Expertise in designing secure networks, systems and application architectures
- Disaster recovery, computer forensic tools, technologies and methods
- System administration, supporting multiple platforms and applications
- Endpoint security solutions, including file integrity monitoring
- Deep understanding of cybersecurity terms and principles (defense-in-depth, network segmentation, security monitoring and incident response, access management, OT patch management, secure remote access, anti-malware protection etc.)
- Advanced knowledge on networking (LAN/WAN) and industrial networking including significant low-level networking experience with the TCP/IP (Transmission Control Protocol/Internet Protocol)
- Solid knowledge on IT infrastructure and service deployment model within Roche
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.