Cyber and Digital Security Expert - OT and IoT
EUR 55.000 - 75.000
Cyber and Digital Security Expert - OT and IoT
We are looking for a Cyber and Digital Security Expert - OT and IoT to join our IT Security and Compliance team.
Position Snapshot
* Location: Barcelona
* Type of Contract: Permanent
* Stream: IT Security & Compliance
* Type of work: Hybrid
* Work Language: Fluent Business English
The role
In this position, you will establish and maintain security products, platforms, and solutions to mitigate IS / IT risks across the Nestlé Group, ensuring that information assets are protected. You will identify, evaluate, and report on information security risks, ensuring compliance with regulatory requirements and supporting the enterprise's risk posture. You should be a visionary leader with strong business management skills and knowledge of information security technologies. Collaboration with IS / IT and business units to implement security practices aligning with policies and standards is essential. You will act as a security business partner for the Product Groups and stay updated on emerging security threats, technologies, and trends.
What you’ll do
* Ensure new products, platforms, and solutions are implemented 'Secure & Compliant by Design' for ICS or Enterprise IoT solutions.
* Secure manufacturing and building facilities' IoT & OT solutions.
* Provide strategic risk guidance for IT projects and product management, including technical controls evaluation for IoT or IIoT solutions.
* Ensure Consumer IoT solutions comply with laws, regulations, and policies to minimize risks and audit findings.
* Coordinate with security, compliance, legal, and HR teams as needed.
* Ensure consistent application of policies across product groups, including privacy, risk management, and business continuity.
* Work with Enterprise Architects and Security Specialists to implement adequate security solutions across IT products and platforms.
* Develop security architecture and solutions documentation.
We offer you
More than just a job, we prioritize people and your growth:
* Competitive salary, social benefits, pension plans, and flexible remuneration options.
* Ongoing training and career development opportunities.
* Hybrid work environment with modern facilities, including a pet-friendly campus with amenities.
* Recreation activities and volunteering opportunities.
Minimum Qualifications
* Bachelor's Degree in Computer Science, System Analysis, or related field, or equivalent experience.
* 7+ years in risk management, information security, or related roles.
* Experience with cybersecurity in manufacturing environments and Industry 4.0 solutions.
* Proven ability to develop security policies and execute security programs.
* Experience with ICS security monitoring and architecture frameworks like Purdue model.
* Knowledge of standards like IEC 62443-2, ISO 27001, ITIL, COBIT, and NIST.
Bonus Points if you :
* Hold professional security certifications such as GICSP, CISSP, CCSP, or similar.
We support your personal growth with tailored development solutions.
Application process :
* Apply via our job portal.
* Submit your CV.
* We review applications and contact suitable candidates.
* Participate in interviews with HR, the hiring team, and stakeholders.
* Receive feedback and a job offer.
* Complete location checks and pre-onboarding.
Nestlé is the world's largest food and beverage company, with brands like KitKat, Nescafé, Maggi, and Purina. We are about 275,000 employees strong, committed to enhancing quality of life and fostering a healthier future. Our values emphasize respect for all and diversity.
Visit us at
We welcome applicants from all backgrounds, including gender, age, ethnicity, nationality, sexual orientation, social background, religion, and disability.
J-18808-Ljbffr
#J-18808-Ljbffr