Apply now »

Global OT Security Architect

Date:  May 5, 2024
Location: 

Sesto San Giovanni, Milan, IT

Additional Location: 
Function:  IT
Seniority Level:  Mid-Senior level
Employment type:  Permanent
Workplace Type:  Hybrid
Company:  Davide Campari Milano N.V.

Want to be a crowd-stopper rather than a crowd-pleaser? Become a Camparista

 

At this point, you may not know exactly what it takes to be a Camparista , but you have the makings to be one of us. We’re the independent minded and passionate achievers in the spirits industry, innovating the iconic.

 

Be Part of Our Signature Mix

Campari Group OneIT

 

Campari Group is the 6th biggest spirits company worldwide with 2.7€ billion sales, more than 4.000 employees and a direct presence in more than 20 countries globally. Campari OneIT is at a key development stage moving from a back-office function to pivot into a business partnering function, leading the technology agenda across the business with the objective to drive our business growth for the years to come. This represents an extremely exciting time to join Campari OneIT and Campari Group.

 

Campari OneIT has the ambition to be the “most respected IT organization within the global spirits business”.

 

 

Role Context and Mission:

 

The Global IT Cyber Security - OT Security Architect is a key role in the Global IT team reporting to the Global IT Manager, Cyber Security, located in Campari Group Corporate headquarter.

 

The Global IT Cyber Security - OT Security Architect is responsible for designing, implementing and maintaining the security architecture of the operational technology (OT) systems and networks that support the critical infrastructure and industrial operations. The post holder will work closely with the OT engineers, IT Security & Network teams, and business stakeholders to ensure that the OT security solutions meet the operational, regulatory and business requirements, while adhering to the best practices and standards in the industry.

 

The role will also support in driving strategic decisions and continuous improvements to our OT security controls and technical leadership.

 

 

Key Responsibilites: 

 

The Global IT Cyber Security - OT Security Architect shall be responsible for responsible for designing, implementing, and maintaining security solutions for the operational technology (OT) environment across the Group's sites and plants. The OT Security Architect will work closely with the Global IT Cyber Security Manager, the IT Infrastructure Manager, and the Supply Chain Business Partners to ensure that the OT security strategy and architecture are aligned with the business objectives and the IT security policies and standards.

 

· Develop and maintain the OT security architecture framework, policies, standards, and guidelines for the OT systems and networks.

· Conduct OT security risk assessments and audits and provide recommendations and remediation plans for the OT security issues and gaps.

· Design and implement OT security solutions, such as firewalls, intrusion detection and prevention systems, encryption, authentication, and access control mechanisms, for the OT systems and networks.

· Provide OT security awareness and training to the OT engineers, IT security teams, and business stakeholders, and promote the OT security culture and best practices.

· Research and evaluate the emerging OT security trends, threats, and technologies, and provide recommendations and guidance for the OT security improvement and innovation.

 

What you bring:

 

· 8+ years of experience in OT security or related fields, such as OT engineering, IT security, or cybersecurity.

· 10+ years proven experience working in Information Technology role

· Proven track record of designing and implementing OT security solutions in complex and critical environments, such as manufacturing, energy, or transportation.

· Strong knowledge of OT security standards and frameworks, such as IEC 62443, NIST SP 800-82, and ISA/IEC 62443.

· Strong knowledge of OT systems and networks, such as ICS, SCADA, and DCS, and their protocols, such as Modbus, DNP3, and OPC.

· Strong knowledge of IT security principles and practices, such as network security, cryptography, and incident response.

· Experience writing high quality documentation and reports

· Bachelor's degree in Business Administration, Management Information Systems, Project Management, Computer Science or related discipline, or equivalent work experience

· Industry certification such as IEC 62443, NIST SP 800-82, and ISA/IEC 62443

· Certified SCADA Security Architect (CSSA)

· Global Industrial Cyber Security Professional (GICSP)

· Certified Information Systems Security Professional (CISSP)

 

Who you are:

 

Leadership:

· Demonstrable integrity, empathy and emotional intelligence

· Ability to define a strategy, set direction and then mobilize the commitment of team individuals

· Shares innovative ideas and consistently demonstrates openness to the opinions and views of others

· Acts as a mentor and coach towards others, driving a growth mindset and learning culture

 

Working Style:

· Primarily a relationship builder that builds formal and informal professional networks, maintains and extends networks within, across and external to organizational boundaries.

· Obtains and shares information, ideas and problems, cross collaboration ability

· Is forward looking and future oriented

· Mobilizes others to support change

· Excellent analytical, strategic conceptual thinking and consulting skills

· Challenges conventional thinking and traditional ways of operating and invites stakeholders to identify issues and opportunities.

 

Communication skills:

· Ability to communicate digital concepts and technologies to business leaders

· Ability to conduct planning sessions

· Ability to influence others by communicating ideas or positions in a persuasive manner that builds support, agreement or commitment

· Able to exert strong influencing and negotiation skills

· Builds a trust-based relationship with key stakeholders. Uses a formal and informal network to gather information.

 

Additonal Requirements: 

 

· English language fluency is a must and additional languages are an advantage.

Our commitment to Diversity & Inclusion:

At Campari Group we believe in building more value together, thus we see diversity in all forms as a source of enrichment. Our employment policies and practices ensure that we are committed to providing equal employment opportunities in all aspects of employment without regard to any individual’s race, religion, creed, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, sexual orientation, gender identity or characteristics or expression, political affiliation or activity, age, veteran status, citizenship, or any other characteristic protected by law.

 

Note to applicants:

Your application will be assessed based on your abilities, expertise, general knowledge and experience, not because of any confidential, proprietary or trade secret information you may possess. You must not disclose to Campari Group any such information. In the event that you are asked a question that cannot be answered without disclosure of any confidential, proprietary or trade secret information (including from a current or prior employer or their vendors or customers), you must decline to answer the question.

 

Notice to third party agencies:

Please refrain from cold-calling or emailing our executive leadership team or the HR community directly. The Talent Acquisition department manages centralized recruiting operations globally, including the selection and management of external suppliers. Currently, our preferred supplier list is at full capacity. To ensure we have your information on file for future consideration, we kindly request that you complete the online form provided here.

Apply now »