Skip to main content
Viatris

Manager – Manufacturing Security

Viatris United States Full-time 1 hour ago
Technology & IT

$78,000 - $152,000 USD yearly

The primary purpose of the Manager, Manufacturing Security, is to deliver and mature cybersecurity capabilities across an assigned portfolio of Viatris manufacturing sites and operational technology environments. The role partners with manufacturing stakeholders and Global Security to translate established cybersecurity requirements into practical solutions, projects, and implementation plans that reflect site priorities, technology environments, and operational constraints. The role leads the implementation and integration of cybersecurity controls within manufacturing environments and works closely with site stakeholders to drive adoption and sustainable operation. The role supports the transition of mature capabilities to appropriate operational teams while retaining responsibility for selected manufacturing security services where required.

Key responsibilities for this role include:

  • Develop strong working relationships with assigned manufacturing sites and maintain an understanding of site priorities, culture, technology environments, operational processes, and planned initiatives.
  • Translate established cybersecurity requirements into site-level implementation plans, identifying activities, dependencies, resources, sequencing, and stakeholder engagement required for delivery.
  • Lead the implementation and integration of cybersecurity controls across assigned manufacturing and operational technology environments.
  • Manage cybersecurity projects and delivery activities across assigned sites, coordinating technical resources, site stakeholders, vendors, Cybersecurity teams, and other delivery partners.
  • Develop and maintain site cybersecurity delivery roadmaps aligned with manufacturing priorities, technology lifecycle activities, planned investments, and operational constraints.
  • Assess site readiness and identify gaps in OT network architecture, implementation dependencies, and technical constraints.
  • Coordinate remediation plans with Manufacturing, Engineering, IT, Global Security, and other stakeholders to address cybersecurity implementation gaps.
  • Conduct cybersecurity reviews of manufacturing technology projects and engineering plans to ensure established security requirements are incorporated into implementation.
  • Drive maturation and adoption of implemented cybersecurity capabilities through processes, documentation, metrics, support models, and stakeholder expectations.
  • Coordinate transition of mature cybersecurity capabilities to appropriate operational teams, including documentation, knowledge transfer, support processes, and escalation paths.
  • Operate and continuously improve selected manufacturing cybersecurity capabilities and services where ongoing ownership remains with the Manufacturing Security team.
  • Communicate site priorities, implementation challenges, technology changes, and actionable cybersecurity recommendations to manufacturing and Cybersecurity stakeholders.
  • Develop cybersecurity countermeasures and risk mitigation strategies appropriate to technology and business requirements.
  • Maintain stakeholder communication channels and cross-team relationships required for successful cybersecurity delivery.
  • Support configuration and change management practices for security capabilities throughout implementation and transition.
  • Perform or support risk and vulnerability assessments to inform delivery priorities and remediation activities.
  • Create and maintain technical documentation necessary to support sustainable operation and knowledge transfer.

The minimum qualifications for this role are:

  • Minimum of a Bachelor's degree required. Master’s degree preferred.
  • Specialization in MIS, IT, Engineering, Cybersecurity, or related field, however, a combination of experience and/or education will be taken into consideration. 
  • 5 years’ experience in IT, Cybersecurity, Manufacturing Technology, or Operational Technology required.
  • CISSP, CISM, GICSP, ISA/IEC 62443 or equivalent relevant certification preferred.
  • Knowledge of cybersecurity principles and practices.
  • Knowledge of risk management processes.
  • Knowledge of change management processes.
  • Knowledge of OT cybersecurity compliance requirements and best practices.
  • Knowledge of control system environment risks, threats, and vulnerabilities.
  • Knowledge of Purdue Model levels and control system network architectures.
  • Knowledge of operational priorities and life cycle management principles and practices.
  • Knowledge of OT assets, protocols, and asset management principles.
  • Skill in communicating complex concepts to technical and business stakeholders. 
  • Skill in collaborating with others across organizational and technical boundaries. 
  • Skill in creating technical documentation. 
  • Skill in translating operational requirements into security controls. 
  • Skill in performing risk-based gap analysis. 
  • Skill in identifying gaps in control system network and connectivity architecture. 
  • Skill in designing and specifying OT systems. 
  • Skill in interpreting OT network drawings and performing zone/conduit requirement analysis. 
  • Skill in reviewing access control lists and firewall rules. 
Apply now
United States
Remote
Full-time
$78,000 - $152,000 USD yearly
1 hour ago

Share this job