{bc}
workday

OT Cybersecurity Compliance Lead – EMEA Projects and Systems

KION Group
Banbury, GBR
Full-time
Senior · 5+ years experience
Hybrid
EUR 54000-80850 yearly / year
Discovered 2 weeks ago
ISA/IEC 62443PLCSCADA
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

ISA/IEC 62443PLCSCADA
Smart Apply

Full Job Posting

We offer:

Career Development

Competitive Compensation And Benefits

Pay Transparency

Global Opportunities

Learn More Here: http://www.dematic.com/en-gb/about/careers/

The base pay range for this role, at the time of posting, is estimated to be the following should this role be filled in the respective country:

Italy: €55,125 - €80,850 (Compensation will be aligned with the applicable National Collective Labour Agreement, namely the CBA , Metalmeccanico Industria)

Lithuania: €54,000 - €79,200

Final compensation will be determined by various factors such as work location, education, experience, knowledge, and skills.

What you'll be responsible for

Regulatory Compliance (Cyber Resilience Act & Machinery Regulation): Translate the EU Cyber Resilience Act and Machinery Regulation (EU) 2023/1230 cybersecurity requirements into practical, auditable engineering and project requirements for OT systems. Maintain readiness for the regulatory milestones (CRA vulnerability/incident reporting from September 2026 and full application December 2027; Machinery Regulation from January 2027). Demonstrate system-level conformity where both regimes apply, reusing product-level assurance and closing the remaining integration gaps.

Translate the EU Cyber Resilience Act and Machinery Regulation (EU) 2023/1230 cybersecurity requirements into practical, auditable engineering and project requirements for OT systems.

Maintain readiness for the regulatory milestones (CRA vulnerability/incident reporting from September 2026 and full application December 2027; Machinery Regulation from January 2027).

Demonstrate system-level conformity where both regimes apply, reusing product-level assurance and closing the remaining integration gaps.

Secure-by-Design across the Project Lifecycle: Embed OT cybersecurity into the project lifecycle as gated, repeatable activities from design and engineering through FAT/SAT, commissioning and handover. Author and review security requirements, architecture and risk assessments for bids and live projects, and advise project and solution teams. Produce handover security documentation and the operations and maintenance security baseline inherited by the customer and Dematic Service.

Embed OT cybersecurity into the project lifecycle as gated, repeatable activities from design and engineering through FAT/SAT, commissioning and handover.

Author and review security requirements, architecture and risk assessments for bids and live projects, and advise project and solution teams.

Produce handover security documentation and the operations and maintenance security baseline inherited by the customer and Dematic Service.

OT Systems & Standards (IEC 62443): Apply ISA/IEC 62443 across OT systems – zones and conduits, network segmentation, secure remote access, hardening, patch and backup strategy. Define reference architectures, hardening standards and reusable security building blocks so projects start from a compliant baseline.

Apply ISA/IEC 62443 across OT systems – zones and conduits, network segmentation, secure remote access, hardening, patch and backup strategy.

Define reference architectures, hardening standards and reusable security building blocks so projects start from a compliant baseline.

Risk, Assurance and Testing: Conduct OT-specific risk assessments, security testing and assurance reviews; track findings and mitigations to closure across projects and the installed base. Support OT security incident readiness and response for delivered systems, in coordination with IT Security and the customer.​

Conduct OT-specific risk assessments, security testing and assurance reviews; track findings and mitigations to closure across projects and the installed base.

Support OT security incident readiness and response for delivered systems, in coordination with IT Security and the customer.​

Stakeholder Collaboration: Act as the OT cybersecurity point of contact for project, engineering, quality, legal/compliance and customer stakeholders. Provide guidance and training to project teams on OT security requirements and expectations.

Act as the OT cybersecurity point of contact for project, engineering, quality, legal/compliance and customer stakeholders.

Provide guidance and training to project teams on OT security requirements and expectations.

Continuous Improvement: Capture lessons learned and feed them back into standards, reference designs and training. Help build Dematic's OT cybersecurity capability so it scales with the project pipeline.

Capture lessons learned and feed them back into standards, reference designs and training.

Help build Dematic's OT cybersecurity capability so it scales with the project pipeline.

Compliance: Ensure compliance with relevant industry standards, regulations and company policies. Participate in internal and external audits as required.

Ensure compliance with relevant industry standards, regulations and company policies.

Participate in internal and external audits as required.

What we're looking for

Bachelor's degree in Engineering, Automation, Computer Science, Cybersecurity, or a related field (or equivalent practical experience).

Minimum of 5 years of relevant experience in OT / ICS cybersecurity or industrial automation, ideally in a systems-integration, intralogistics, manufacturing or OEM environment.

Working knowledge of ISA/IEC 62443 and OT/ICS security fundamentals (network segmentation, hardening, secure remote access, OT/IT interface).

Familiarity with the EU Cyber Resilience Act and Machinery Regulation (EU) 2023/1230 (and the legacy Machinery Directive 2006/42/EC); awareness of NIS2.

Familiarity with material handling systems, automation solutions, industrial control technology (PLC, SCADA, industrial networks) and supply chain logistics.

Proven ability to write and produce technical and compliance reports.

Experience embedding cybersecurity into the project and engineering lifecycle.

Ability to oversee internal and external security and compliance audits.

Strong analytical, problem-solving, and communication skills.

Ability to work independently and manage multiple projects in a fast-paced environment.

Ability to influence and collaborate with cross-functional teams in an international and matrix organization.

Fluency in English (additional European languages are a plus).

ISA/IEC 62443 certification (e.g. Cybersecurity Fundamentals, Risk Assessment or Design Specialist), GICSP, or an equivalent OT-security credential is an advantage.

Willingness to travel internationally as required to support the role, up to 25% of the time.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at KION Group