OT Specialist
Descrizione dell'offerta
Role Description
The OT specialist is responsible for coordinating cybersecurity and operational technology (OT) activities within the Romano di Lombardia site and the other 4 production sites in Italia. Therefore, requires the availability to travel to remote locations.
This includes securing OT systems, managing cyber risks, and complying with Mondi's OT Security Policies. The role requires close collaboration with IT, engineering, operations, and external vendors, and requires strong technical and operational skills.
Key Responsibilities
- Provides front line information about the security anomalies, or suspicious behaviour of OT Systems to OT Coordinator.
- Reports security incidents, significant threats, vulnerabilities and exposures of OT Systems to OT Coordinator.
- Implement approved Cyber Security Policies, Standards and Guidelines. In case of doubts, consults with the OT Coordinator for support.
- Monitor users’ adherence to Cyber Security policies, Standards and Guidelines.
- Develops, verifies the existence of documentation and maintains it in an up-to-date version. Responsible for documentation in the area of backup, media handling, system recovery, network management, asset inventory, etc. in cooperation with OT vendor.
- Enforces and follows physical security rules, in terms of removable media.
- Establish and review security baseline configuration standards for operating systems, applications and network devices.
- Monitor third party and vendor's access and activities in the OT environment.
- Evaluate logs of access and attempts to access.
- Evaluate possibility of cryptography and encryption usage. Configuring where feasible and required.
- Maintain an up-to-date list of OT assets.
- Quarterly verification of OT assets on which antivirus signatures cannot be regularly updated.
- Conduct periodically walkarounds and seek if there are no suspicious devices (Shadow OT devices) like modems etc. Shadow OT devices must be reported to OT Coordinator immediately.
- Assist in performing risk analysis, security reviews or penetration testing on OT systems.
- Provide recommendations for the risk mitigation strategy.
Qualifications
- Bachelor's degree in Computer Science, Engineering or related discipline.
- At least 3 years of experience in OT/IT security or industrial automation.
- Familiarity with cybersecurity standards and frameworks (e.g. IEC 62443, ISO 27001, NIS2).
- Excellent communication and coordination skills with multidisciplinary teams.
- Good communication skills in English and Italian.
Benefits
- Coaching
- Cafeteria
- Events for employees
- Learning & Development
- Parking
- Public transportation nearby
Equal Opportunity Statement
La nostra forza risiede nella diversità e, per questa ragione, ci impegnamo a creare un team che rifletta questo valore nel mondo in cui operiamo. Incoraggiamo le candidature di gruppi tradizionalmente sottorappresentati tra cui: donne, minoranze, persone LGBTQI+ e persone con disabilità. Anche se non soddisfi tutti i requisiti richiesti, vogliamo comunque sentirti. Crediamo nel tuo potenziale e ci impegnamo nel sostenerti mentre cresci e impari in Mondi.
Per ulteriori informazioni, contatta Barbara Dama via email.
#J-18808-Ljbffr