McKesson Senior Manager, Information Security OT in Munster, Ireland
McKesson is in the business of better health and we touch the lives of patients in virtually every aspect of healthcare. We partner with payors, hospitals, physician offices, pharmacies, pharmaceutical companies and others across the spectrum of care to build healthier organizations that deliver better care to patients in every setting. We believe in the importance of strong, vital organizations because we know that patients can only be healthy when our system is healthy.
Every single McKesson employee contributes to our mission—by joining McKesson you act as a catalyst in a chain of events that helps millions of people all over the globe. Talented, compassionate people are the future of our company—and of healthcare. At McKesson, you’ll collaborate on the products and solutions that help us carry out our mission to improve lives and advance healthcare. Working here is your opportunity to shape an industry that’s vital to us all.
We understand the importance of a system that works together. Your expertise, drive and passion can help us improve everything we touch, from providers to payors to pharmacies. Join our team of leaders to begin a rewarding career.
Wherever you contribute here at McKesson, you will have the ability to make a real impact in the lives of others.
McKesson is looking for a Senior Manager, Industrial Controls Systems Security to help implement and manage a new security program within the Global Information Security and Risk Management function (ISRM). The manager will work with the Director OT Security on cyber-risk mitigation activities at McKesson’s distribution centers within a specific business unit and/or geographical region and expanding outwards to various other solutions and services within the McKesson portfolio.
Flexibility regarding travel estimated to be 50% - international
The Senior Manager, OT Security, is responsible to help implement and manage security policies, standards, and hardening guidelines for Network, infrastructure, Industrial Control Systems (ICS), and Operational Technology (OT). The manager will assess current protection level of the network, infrastructure and Industrial Control Systems and the compliance of these assets related to McKesson policies, industry standards, customer expectations, threat intelligence, and applicable legislation. (S)he will support projects, assess the effectiveness of the security of the network, infrastructure and OT/ICS environments, and will, together with involved stakeholders, and the Director OT Security, implement and manage a solution strategy for detected security problems upon this scope. Focus will be on protection and security of the following.
Network devices such as (not limited to):routers, switches, firewalls, DHCP and DNS
Distribution centers (e.g. network access,network, and DC segmentation)
The Industrial Control systems and theapplicable infrastructure
Support and conduct audits upon the abovescope
Provide support of solution implementation inthe field of Operational Technology (OT) Security.
Understand and document security policies, standards,support implementation of hardening guidelines for network, infrastructure, andOT networks.
The OT Security Manager will supportcompliance of OT assets towards Client policies, standards, and applicablelegislation.
The OT Security Manager will supportprojects, assist the Director OT Security in assessing the effectiveness of thesecurity of the network, infrastructure, and OT environments.
Support Business Continuity and DisasterRecovery processes
4 years information security experience, including 2 years in a managerial role
4 years in Information Security, orequivalent technical project management and/or auditing experience
Proven ability to effectively lead multipletechnical projects on-time and within budget
Strong ability to influence and negotiate,as well as to effectively prioritize and execute despite competing priorities anduncertainty
A goal-driven and solution-orientedmindset, with the ability to exercise good professional judgment
Strong desire to learn and advance inOperational Technology and Information Security
Additional Knowledge & Skills:
Fluent in written and verbal Englishlanguage, including well-developed technical communication skills
3 years OT / ICS experience
Solid experience in Operational Technology(OT) and industrial environments, particularly in health care relatedmanufacturing facilities and distribution centers
Diverse technical expertise in InformationSecurity, Information Technology, and networking
Experience in risk assessment, audit, andIT security assessments
Familiar with compliance regulations, IT,security frameworks, and standards (i.e. NIST 800, ISO/IEC 27002, IEC 62443,HIPAA, PCI, SOX, HITRUST)
4-year degree in computer science or related field, or equivalent experience
CISA, CISSP, PMP, or other relevant professional designations preferred
General Office Demands
Organization: McKesson Corporate
Title: Senior Manager, Information Security OT
Requisition ID: 18006381