Senior Manager OT Security Engineer
Listed on 2026-03-02
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security, IT Consultant
Reynolds American is evolving into a global multi-category business. Our purpose is to create A Better Tomorrow™ by Building a Smokeless World.
To achieve our ambition, we are looking for colleagues who are ready to join us on this journey. Tomorrow can’t wait, let’s shape it together!
REYNOLDS AMERICAN has an exciting opportunity for a Senior Manager OT Security Engineer in Winston-Salem, NC.
Report to the Director DBS OT Security and partnering with the broader Digital Business Solutions (DBS) organization. The Security engineer is knowledgeable of IT standards including ISO 27001 as well as leading OT Security frameworks to include IEC 62443 and NIST CSF and leading products used in OT Security solutions. This role requires driving our OT strategy to meet not only the industry standards but continually adapting BAT sites to keep secure.
The Security manager is responsible for designing, coordinating, implementing IT/OT/IoT security services with defined deliverables to fulfill contract commitments to the highest degree of value. This requires an innovative mindset coupled with thought leadership to drive quality of IT/OT/IoT offerings across all different verticals and geographies. Strong presentation, communication and influencing skills. In this role you are responsible for delivering value through quality deliverables of the IT/OT/IoT security services portfolio to enable the Cybersecurity organization to achieve best-in‑class protection.
key responsibilities will include:
- Experience in industrial environments in a professional services firm in a security consulting role.
- Shaping the OT Security Strategy to ensure alignment with the rapidly evolving external and internal environments
- Experience working with, protecting and administering critical industrial network infrastructures, with demonstrable experience working with automation vendors such as ABB, Siemens, Rockwell, Beckhoff, Honeywell, Foxboro, Emerson, Yokogawa etc.
- Experience working with firewalls such as Fortinet, Cisco, Palo Alto, Juniper
- Risk Assessment and Mitigation:
Conduct risk assessments specific to OT environments to identify potential threats, vulnerabilities, and risks. Develop and implement strategies to mitigate these risks and ensure the security of critical infrastructure. - Security Standards and Compliance:
Ensure compliance with relevant security standards and regulations specific to OT, such as NIST SP 800-82, IEC 62443, or other industry-specific guidelines. Stay updated with evolving compliance requirements and ensure alignment with organizational policies and procedures. - Incident Response and Management:
Develop incident response plans and procedures including OT environments. Coordinate and lead incident response efforts during security incidents, including containment, investigation, recovery, and lessons learned. - Collaboration and Communication:
Collaborate with cross‑functional teams, including OT engineers, IT teams, and operational staff, to integrate security measures into OT systems. Communicate complex security concepts and requirements effectively to technical and non‑technical stakeholders.
- Degree in Computer Science or equivalent experience.
- Experience in industrial environments within a security consulting role.
- Hands‑on experience with industrial network infrastructures and major automation vendors (ABB, Siemens, Rockwell, Beckhoff, Honeywell, Foxboro, Emerson, Yokogawa).
- Understanding of IC S/SCADA systems, OT protocols (Modbus, DNP3, OPC, Profibus), and industrial control environments.
- Knowledge of IT/OT convergence and the unique security challenges of integrating both domains.
- Strong understanding of OT security standards, including IEC 62443 and NIST SP 800‑82.
- Expertise in designing secure OT architectures and applying security controls to existing infrastructures.
- Strong network security background, including firewalls, IDPS, VPNs, secure communication, and remote access.
- Self‑motivated, results‑driven, and able to work collaboratively across teams.
- Relevant certifications such as CISSP are considered beneficial.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).