The Senior Manager – IT/OT Security will be responsible for the end-to-end security posture of KDD's technology and operational environments, including:
Security Architecture & Engineering
- Develop and execute KDD's cybersecurity architecture and multi-year security roadmap across IT and OT environments.
- Design, implement, validate, and continuously enhance security controls across identity, endpoints, email, cloud, data protection, networks, and manufacturing systems.
- Establish security standards, hardening baselines, and secure design principles across enterprise platforms.
- Integrate security requirements into projects, system implementations, and business transformation initiatives.
Security Operations & Incident Response
- Lead Security Operations, including oversight of Managed SOC/MDR services and security monitoring capabilities.
- Manage cyber threat detection, incident response, digital investigations, and remediation activities.
- Drive vulnerability management, penetration testing, and security assessments across the organization.
- Conduct cybersecurity exercises, simulations, and incident response readiness programs.
Operational Technology (OT) Security
- Strengthen cybersecurity controls across manufacturing, production, packaging, and utility environments.
- Lead OT security initiatives including asset visibility, network segmentation, secure remote access, and monitoring.
- Drive remediation programs aligned with ISA/IEC 62443 and industry best practices.
Governance, Risk & Compliance
- Maintain and enhance information security policies, standards, frameworks, and controls.
- Manage enterprise cyber risk, compliance initiatives, third-party security assessments, and audit activities.
- Ensure alignment with international security frameworks and applicable regulatory requirements.
- Oversee business continuity and disaster recovery security requirements.
Leadership & Stakeholder Management
- Lead and develop the cybersecurity team while fostering a high-performance security culture.
- Provide regular security posture reporting and strategic recommendations to senior leadership.
- Manage security budgets, vendor relationships, contracts, and technology investments.
- Collaborate closely with Infrastructure, Applications, Data & AI, Engineering, Production, Legal, HR, and external partners.
Requirements
- Bachelor's degree in computer science, Engineering, Information Security, or a related field.
- 10+ years of cybersecurity experience, including leadership of enterprise security functions.
- Strong hands-on expertise with Microsoft security technologies including Microsoft Defender XDR, Entra ID, Conditional Access, Purview, DLP, and Microsoft 365 Security.
- Proven experience managing Security Operations, Incident Response, Vulnerability Management, and Cyber Risk programs.
- CISSP or CISM certification required.
- Experience in manufacturing, FMCG, industrial, or OT/ICS environments is highly desirable