Join a team that safeguards the heartbeat of advanced manufacturing. As a Senior Engineer – OT Cybersecurity, you’ll own and elevate our OT/ICS security monitoring and protection capabilities across multi-site operations—partnering with Automation, Manufacturing IT, Site Engineering, and Operations to reduce risk without compromising reliability or compliance. If you thrive on solving complex problems in high-availability environments and want real impact at scale, this is your next step.
You’ll be the seasoned individual contributor shaping our OT security posture—deploying and maturing monitoring platforms, leading incident response in OT environments, and guiding architecture and controls aligned to industry standards (IEC 62443, NIST SP 800-82, ISO 27001/27019). Your work will directly protect production systems, ensure audit readiness, and translate technical risk into clear business outcomes.
What you’ll do
- Operate and continuously improve OT/ICS cybersecurity monitoring and threat detection solutions (e.g., Nozomi; Claroty/Dragos or equivalent), including sensor health, tuning, content development, and integration with SIEM/SOAR.
- Analyze OT network and system behavior to detect anomalies, triage/contain threats, and lead/coordinate incident response for OT environments in collaboration with InfoSec, Site Automation, and Operations.
- Maintain complete and accurate asset inventories, alerts, rulesets, and documentation in line with policies, procedures, and GxP/Good Documentation Practices.
- Drive vulnerability identification and risk treatment in OT, partnering with asset owners on patching/compensating controls, secure configurations, and change control that balances security with availability.
- Create and deliver training and enablement for asset owners and system administrators on the use of cybersecurity monitoring tools and on secure OT/ICS practices.
- Communicate events, risks, KPIs/KPAs, and trends to stakeholders; produce clear incident records and metrics for IT, manufacturing, and leadership.
- Stay current with OT threat landscape (TTPs, advisories) and recommend pragmatic mitigations aligned to IEC 62443, NIST SP 800-82, ISO 27001/27019, and corporate standards.
- Contribute to and help maintain OT security policies, standards, and procedures; participate in audits and support remediation actions.
- Lead as OT security SME on capital projects and system upgrades (segmentation, firewalls, DMZs, remote access, vendor connectivity).
- Support other OT security duties as assigned.
What you’ll work with
- OT networks and ICS platforms (SCADA, DCS, PLCs, historians), mixed IT/OT environments, and cross-functional teams across Manufacturing/Operations, Enterprise IT/SOC, Quality, Compliance, and external vendors/system integrators.
- Monitoring platforms such as Nozomi Guardian (preferred), Claroty, Dragos, Tenable.ot or similar, plus SIEM/SOAR integrations (e.g., Splunk/ELK).
Minimum Qualification Requirements
- Bachelor’s degree in Information Technology, Computer Science, Engineering, or related field required.
- 8+ years of relevant experience within OT related roles, including 3+ years directly in OT cybersecurity (industrial control systems, manufacturing environments).
- Any combination of education and experience, which would provide an equivalent background to deliver against role expectations.
Preferred Requirements
- Master’s degree in a relevant field
- Relevant certifications preferred (GICSP)
- Experience with Nozomi platform
- Experience with ServiceNow or comparable ITSM platforms is a plus.
- Experience in a manufacturing or life science/biotech environment.
- Experience in scripting/automation (Python) is a plus.
What you’ll bring to the table
- Deep knowledge of ICS architectures (Purdue Model), segmentation/DMZs, secure remote/vendor access, and OT constraints (availability, deterministic operations, patch windows, change control).
- Fluency with ICS protocols (Modbus, DNP3, PROFINET, EtherNet/IP, OPC UA/DA) and historians (OSIsoft/AVEVA PI).
- Advanced networking, firewalls, IDS/IPS, and packet analysis; strong incident response skills for OT contexts.
- Experience with Windows Server/Active Directory, Linux, virtualization in OT, and resilient backup/restore approaches.
- Familiarity with GxP and Good Documentation Practices; validation, change control, and audit readiness in regulated manufacturing.
- Clear, concise communication and stakeholder engagement; the ability to lead cross-functional workstreams and mentor others.
Please upload your CV and cover letter as soon as possible as we screen candidates on a continuous basis.
As part of any recruitment process, FUJIFILM Biotechnologies collects and processes personal data relating to job applicants. The organisation is committed to being transparent about how it collects and uses that data and to meeting its data protection obligations and may share this as part of the global recruitment process with hiring managers in Europe and the United States.
FUJIFILM Biotechnologies is an industry-leading Biologics Contract Development and Manufacturing Organization (CDMO) with locations in Hillerød, Denmark; Teesside, United Kingdom; RTP, North Carolina; Holly Springs, North Carolina; and College Station, Texas. We use our skills, dedication, and ambition to enable impact for the world’s most innovative biotech and biopharma companies reimagining healthcare’s potential. We work across the entire lifecycle of our customers’ products – enabling success throughout. Every cure, vaccine, biologic, and advancement we contribute to starts with our people and our passion. We fuel one another’s passion, help accelerate progress, expand capabilities, strengthen innovation, and improve processes to improve lives.
The culture is key if you ask our employees and besides a competitive salary and bonus package, we offer health insurance, massage and physiotherapy, health check, fitness center and hybrid working. Our facility also has a canteen arrangement incl. Friday brunch and monthly afternoon cake, just as we have a “bell ringing” tradition when reaching important milestones.
To all agencies: Please, no phone calls or emails to any employee of FUJIFILM about this requisition. All resumes submitted by search firms/employment agencies to any employee at FUJIFILM via-email, the internet or in any form and/or method will be deemed the sole property of FUJIFILM, unless such search firms/employment agencies were engaged by FUJIFILM for this requisition and a valid agreement with FUJIFILM is in place. In the event a candidate who was submitted outside of the FUJIFILM agency engagement process is hired, no fee or payment of any kind will be paid.