Senior Manager - Cybersecurity OT Manufacturing & Distribution at Medtronic Plc
JOB DESCRIPTION
Sr. Manager Cybersecurity OT Manufacturing & Distribution
At Medtronic, we bring bold ideas forward with speed and decisiveness to put patients first in everything we do. In-person exchanges are invaluable to our work. We're working onsite 4 days a week as part of our commitment to fostering a culture of professional growth and cross-functional collaboration as we work together to engineer the extraordinary. The preferred working location for this role is the Medtronic facility located in Mounds View, Minnesota; however, the individual may also work remotely within the US or onsite at another US-based Medtronic facility.
In this pivotal role as Sr. Manager Cybersecurity OT Manufacturing & Distribution, you will lead the operational technology (OT) cybersecurity strategy and execution for Medtronic manufacturing and distribution environments. This leader is accountable for translating enterprise cybersecurity objectives into operational plans, standards, and business outcomes across multiple job areas, while protecting critical manufacturing operations, distribution capabilities, and patient-impacting processes.
This role requires broad management and leadership capability, deep functional and operational expertise in OT cybersecurity, and mastery within a technical discipline with broad understanding of adjacent areas including engineering, manufacturing operations, infrastructure, network security, incident response, risk management, and regulatory compliance. The Sr. Manager must influence across functions, drive alignment among stakeholders with differing priorities, and lead teams through complex, ambiguous, and high-impact operational security challenges.
We seek leaders with a clear vision, bold and inclusive thinkers who can generate innovative ideas and drive our best solutions forward, benefiting our patients, business partners, and customers.
Responsibilities include:
- Lead the development, communication, and execution of the OT cybersecurity strategy for manufacturing and distribution environments, ensuring linkage to Medtronic's enterprise strategy, business objectives, and risk priorities.
- Translate strategy into operational plans, roadmaps, standards, and measurable business outcomes across multiple OT security job areas and site operations.
- Recommend strategies, goals, priorities, and resource plans for the OT cybersecurity function, balancing business continuity, resilience, compliance, and risk reduction.
- Partner with senior leaders across manufacturing, engineering, quality, supply chain, and enterprise cybersecurity to integrate OT security into business and operational decisions.
- Lead, coach, and develop experienced professionals, site security champions, and/or people or program leaders; set clear performance expectations and build organizational capability.
- Drive talent planning, succession, engagement, performance management, and professional development for the OT cybersecurity team.
- Authorize and support hiring, promotion, reward, and other people decisions within the function, consistent with business needs and Medtronic policies.
- Direct OT risk assessments, threat modeling, and vulnerability analysis for manufacturing and distribution environments, including identification of complex or systemic risk patterns.
- Establish, implement, and continuously improve OT cybersecurity policies, standards, controls, and governance mechanisms aligned to business needs and industry expectations.
- Initiate programs and projects based on identified business, operational, and tactical needs to improve cyber resilience, consistency, and compliance across sites.
- Provide technical leadership for secure OT architecture, network segmentation, remote access, asset protection, monitoring, and secure integration between IT and OT environments.
- Evaluate, prioritize, and drive adoption of security technologies, operational capabilities, and process improvements that significantly improve OT security effectiveness and scalability.
- Develop new objectives, operating procedures, standards, and cross-site practices that address complex, undefined security challenges and enable knowledge sharing and best practices across the business area.
- Lead OT cyber incident readiness and response, including investigation, containment, eradication, recovery, lessons learned, and executive communications.
- Coordinate with enterprise cyber defense, manufacturing operations, site leadership, legal, quality, and other partners during significant incidents or operational disruptions.
- Ensure incident response plans, playbooks, and recovery strategies are maintained, tested, and continuously improved for critical OT processes.
MUST HAVE (Minimum Qualifications)
- 7+ years of experience with a bachelor's degree or 5+ years of experience with an advanced degree
- 5+ years of managerial experience
NICE TO HAVE (Preferred Qualifications)
- Minimum of 10 years of relevant cybersecurity experience with a bachelor's degree, or 8 years of relevant experience with an advanced degree.
- Minimum of 7+ years of managerial experience leading teams of experienced professionals and/or people or program leaders
- Previous Medtronic experience.
- Experience leading cybersecurity programs in ICS, OT, manufacturing, and/or distribution environments.
- Demonstrated success developing department or business-area strategies and translating them into roadmaps, standards, business plans, and measurable outcomes.
- Experience leading cross-functional programs involving engineering, operations, quality, supply chain, enterprise IT, and cybersecurity stakeholders.
- Demonstrated ability to solve complex, difficult, and undefined problems using data gathering, analysis, investigation, and structured decision-making.
- Experience influencing across functions and businesses, balancing divergent objectives, and briefing senior or executive leadership on operational and strategic initiatives.
- Experience managing budgets, resource plans, vendors, and external partners in support of OT cybersecurity objectives.
- Relevant certifications such as CISSP, CISM, CISA, GICSP, GRID, or equivalent.
- Knowledge of OT security frameworks, standards, and regulations including NIST 800-82, IEC 62443, ISA/IEC concepts, and applicable manufacturing control expectations.
- Strong technical leadership, people leadership, communication, stakeholder management, and program execution skills.
- Ability to establish new objectives, operating policies, standards, and processes that improve security and operational resilience.
- Ability to drive innovation, best-practice adoption, and knowledge sharing across a business area.