Principal Architect, Manufacturing Security
Beckman Coulter · 2 Locations
Job description
Bring more to life. At Danaher, our work saves lives. And each of us plays a part. Fueled by our culture of continuous improvement, we turn ideas into impact – innovating at the speed of life. Our 60,000+ associates work across the globe at more than 15 unique businesses within life sciences, diagnostics, and biotechnology. Are you ready to accelerate your potential and make a real difference? At Danaher, you can build an incredible career at a leading science and technology company, where we’re committed to hiring and developing from within. You’ll thrive in a culture of belonging where you and your unique viewpoint matter. Learn about the Danaher Business System which makes everything possible. The Principal Architect, Manufacturing Security is responsible for defining and owning Danaher's enterprise OT security architecture across its global manufacturing, lab, and R&D portfolio. This role sets the technical direction for network segmentation, IT/OT boundary design, DMZ architecture, and secure remote access across 15+ operating companies and 160+ sites worldwide. This position offers a rare opportunity to shape the cybersecurity posture of one of the most complex multi-OpCo industrial environments in the global life sciences and diagnostics industry. This position is part of the Corporate Information Security and will be located as Remote in Europe. In this role, you will have the opportunity to: Own and evolve the enterprise OT security architecture blueprint for Danaher's global manufacturing portfolio — including network segmentation standards, tiered security zone frameworks (ISA-95/Purdue), IT/OT boundary controls, DMZ patterns, and BMS isolation strategy across 15+ operating companies Lead the design and portfolio-wide adoption of secure remote access architecture aligned to the remote access platform — retiring legacy VPN and direct-vendor connections, and extending zero-trust network access to OT OEMs, contractors, and remote support vendors across all operating companies Partner with the Manufacturing Security Lead and information security leadership to develop OT cybersecurity policies, architecture governance standards, and control frameworks that translate into OpCo-level implementation plans — ensuring consistency across critical sites and the broader portfolio Drive the Architecture Review Board (ARB) process for OT security capabilities including micro-segmentation, Remote Access OT extension, OT monitoring tools, and industrial firewall platforms — validating technical designs before deployment and enforcing architectural standards across the portfolio Provide expert OT security advisory to OpCo CIOs, site IT leads, and plant engineers — including architecture consultation for high-risk sites and architectural oversight for the segmentation remediation program Provide guidelines and standards to align to good security controls in the enablement of digital manufacturing to The essential requirements of the job include: Deep expertise in OT/ICS network architecture including Purdue Model/ISA-95 zone segmentation, industrial DMZ design, firewall policy for OT protocols (Modbus, Profinet, EtherNet/IP, OPC-UA, BACnet), and secure remote access architecture for multi-site manufacturing environments Hands-on experience designing and validating network segmentation implementations across complex, multi-site OT environments — including PLCs, DCS, SCADA, BMS, HMI, and historian systems — in life sciences, pharmaceutical, or similarly regulated manufacturing Strong command of OT-specific cybersecurity frameworks including IEC 62443, NIST SP 800-82, CIS Controls for ICS, and CISA/NSA OT security guidance — with demonstrated experience applying these standards in a federated, multi-OpCo enterprise Demonstrated experience with zero-trust network access (ZTNA) and SASE architectures (Zscaler or equivalent) in OT environments, including integration with industrial remote access protocols, vendor management workflows, and identity governance 12+ years of experience in OT/ICS security, network architecture, or industrial cybersecurity, with at least 5 years in a principal architect, distinguished engineer, or equivalent senior IC capacity within a complex multi-site manufacturing environment It would be a plus if you also possess previous experience in: Experience operating as a technical authority in a federated enterprise model — advising multiple operating companies with distinct OT environments, independent IT governance structures, and different regulatory environments simultaneously. Familiarity with industrial micro-segmentation and OT visibility platforms (Elisity, Claroty, Dragos, Nozomi Networks, Armis) and a track record of presenting complex OT architecture decisions to C-suite and board-level audiences, including CISO updates and risk committee briefings. Travel, Motor Vehicle Record & Physical/Environment Requirements:~10% travel regionally and internationally Application We continuously assess candidates and invite them for interviews, so please don’t hesitate to write and send in the application. The recruitment will be completed as soon as a suitable candidate is found. Join our winning team today. Together, we’ll accelerate the real-life impact of tomorrow’s science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life. For more information, visit www.danaher.com.
Verified and listed by ActiveJobs. Applications are made directly on Beckman Coulter's own career page — we never sit in the middle.