FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Principal OT Product Security Architect
KION Group. Provide technical leadership to ensure Dematic products and solutions are secure by design and protect customer supply chain operations.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in OT Cybersecurity Architecture, including secure design principles, risk-based remediation, and compliance with standards such as IEC 62443 and NIST. Capable of leading technical design reviews and integrating cybersecurity practices across product lifecycles while collaborating effectively with cross-functional teams.
Highest-signal resume keywords
OT Cybersecurity ArchitectureIEC 62443 ComplianceVulnerability ManagementPenetration TestingNetwork Security
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
CybersecurityOT/ICS SecurityNetwork SecuritySystems EngineeringIndustrial AutomationRoboticsSCADASecure Remote AccessThreat ModelingRisk-Based Remediation
Soft Skills
Strong CommunicationTechnical WritingStakeholder ManagementCollaborative WorkInfluencing Technical Decisions
Tools & Technologies
WindowsLinuxCloud EnvironmentsPythonPowerShellFirewallsVPNsIndustrial NetworksPLCHMI
Certifications & Qualifications
CISSPGICSPGRIDGCIPSecurity+Network+ISA/IEC 62443 (IC32/IC33)
Industry Keywords
Cybersecurity StandardsOT EnvironmentsSupply Chain SecuritySecurity ArchitectureCustomer SOC/SIEM/MDR Integration
Tech Stack
Tools & technologiesCloudCyber SecurityFirewallsLinuxPython
About the role
Key responsibilities & impact- Provide technical leadership to ensure Dematic products and solutions are secure by design and protect customer supply chain operations.
- Define and maintain OT cybersecurity architecture, requirements, standards, and reference architectures for Dematic products and solutions.
- Lead security architecture and technical design reviews across OT, software, controls, networking, and cloud environments.
- Define secure network architectures, including segmentation, zones/conduits, firewalls, industrial DMZs, secure remote access, and OT-to-cloud connectivity.
- Integrate secure-by-design and DevSecOps principles into product and system development lifecycles.
- Define cybersecurity requirements for products, systems, software, embedded components, and customer deployments.
- Lead or support threat modeling, attack-surface assessments, vulnerability assessments, penetration testing, and security architecture assessments.
- Establish risk-based approaches for OT vulnerability remediation, including compensating controls where patching may impact safety, availability, reliability, or operations.
- Define requirements for OT security monitoring and platforms and their integration with customer SOC/SIEM/MDR environments.
- Translate applicable cybersecurity standards and regulations into technical requirements, including IEC 62443, NIST CSF, NIST SP 800-82, ISO 27001, and EU Cyber Resilience Act (CRA).
- Support product certification, conformity assessments, audits, customer security reviews, and cybersecurity evidence development.
- Perform and support OT cybersecurity assessments of Dematic and customer environments and provide practical remediation strategies.
- Partner with Engineering, Product Security, Infrastructure, and Operations teams to develop secure architectures throughout the product lifecycle.
- Provide technical expertise during OT cybersecurity incidents and support secure recovery and resilience strategies.
- Mentor cybersecurity, software, controls, and engineering teams on OT cybersecurity architecture and secure design practices.
- Evaluate emerging OT cybersecurity technologies and contribute to Dematic's long-term OT cybersecurity architecture and capability roadmap.
- Provide strategic and technically informed security guidance to product development, execution, sales, and support organizations.
- Collaborate with technology leadership and engineering teams to define and implement the Product Security organization's vision and strategy.
Requirements
What you’ll need- Bachelor's or Master's degree in Cybersecurity, Computer Science, Computer Engineering, Electrical Engineering, Information Technology, or related field, or equivalent experience.
- 8+ years of cybersecurity, OT/ICS security, product security, network security, systems engineering, or related experience, with demonstrated experience designing or assessing OT cybersecurity architectures.
- Experience with industrial automation, robotics, warehouse automation, manufacturing, control systems, or other OT environments.
- Strong understanding of OT/ICS architecture, industrial networks, PLCs, HMIs, SCADA, robotics, segmentation, firewalls, VPNs, and secure remote access.
- Experience applying cybersecurity principles across complex hardware, software, and integrated systems.
- Knowledge of vulnerability management, penetration testing, threat modeling, security monitoring, and risk-based remediation in OT environments.
- Working knowledge of networking, Windows/Linux, cloud environments, and scripting/automation such as Python or PowerShell.
- Knowledge of IEC 62443, NIST CSF, NIST SP 800-82, ISO 27001, and/or applicable regulatory requirements such as the EU CRA.
- Strong ability to translate cybersecurity risks and regulatory requirements into practical architecture, engineering requirements, and controls.
- Strong communication, technical writing, consulting, and stakeholder management skills.
- Ability to influence technical decisions across engineering and business teams without direct authority.
- Preference for and ability to thrive in highly collaborative work environments.
- Passionate and quick learner.
- Dedicated, highly motivated, energetic and relentless pursuer of quality and successful outcomes that benefit the broader team, organization, and community.
- Preferred certifications: CISSP, GICSP, GRID, GCIP, Security+, Network+, ISA/IEC 62443 (IC32/IC33), or equivalent.
- Ability to travel occasionally to customer sites and Dematic facilities.
- Individual contributor with the ability to support the team in a lead role.
- Applicants must be authorized to work in the U.S. without the need for current or future sponsorship.
Benefits
Comp & perks- Career Development
- Competitive Compensation and Benefits
- Pay Transparency
- Global Opportunities
- Ability to travel occasionally to customer sites and Dematic facilities