{"id":1181042,"url":"https://alion.io/job/cencora-lead-engineer-operational-technology-network-security","title":"Lead Engineer – Operational Technology Network Security","company":{"id":1040788,"name":"Cencora","domain":"cencora.com","url":"https://alion.io/company/cencora","size_band":"5000+","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"B","score":75,"open_postings":87,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":22,"computed_at":"2026-09-25T05:45:01Z"}},"role":"Security","role_family":"Security","seniority":"lead","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Conshohocken, United States","United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":118000,"max_usd":258000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":182},"experience_years_min":6,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Defense in Depth","optional":false},{"name":"ISO 27001","optional":false},{"name":"JavaScript","optional":false},{"name":"Microsoft Defender","optional":false},{"name":"Microsoft Office","optional":false},{"name":"NIST CSF","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"SQL","optional":false},{"name":"Threat Modeling","optional":false},{"name":"VPN","optional":false},{"name":"Zero Trust","optional":false}],"status":"live","first_seen_at":"2026-09-24T14:05:18Z","employer_posted_date":"2026-09-24","last_verified_at":"2026-09-26T01:47:29Z","board_verified":true,"closed_at":null,"days_open":1,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":1},"description":"Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!\nJob Details\nSummary:\nThe Lead Engineer - Operational Technology Network Security is responsible for designing, implementing, maintaining, and continuously improving security controls that protect operational technology environments, industrial networks, distribution center systems, and connected devices. This role serves as a subject matter expert for OT network segmentation, secure architecture, threat detection, vulnerability management, incident response, and compliance across enterprise operational environments. The position partners closely with Information Security, Infrastructure, Network Engineering, Distribution Center Operations, Facilities, Engineering, and business leaders to ensure OT environments are resilient, compliant, and aligned with enterprise security standards.\nPrimary Responsibilities:\nLeads the design, implementation, and ongoing maintenance of security controls across operational technology networks, distribution center environments, industrial control systems, building automation systems, IoT devices, and connected operational platforms.\n\nDevelops, refines, and implements OT security policies, procedures, standards, and reference architectures across multiple industrial, network, cloud, and application environments to meet internal and external compliance responsibilities.\n\nOversees maintenance of service-level agreements and control performance expectations to ensure OT network security services, monitoring capabilities, and response activities are operating effectively.\n\nPartners with business, IT, engineering, facilities, and operations leaders to communicate OT security risks, evaluate business impact, and respond to requests for technical guidance, assistance, and information.\n\nCoordinates with network engineers, infrastructure teams, systems administrators, and site operations teams to ensure OT servers, network devices, industrial systems, and security devices conform to enterprise security standards and are operating as designed.\n\nReviews technical and functional design documents and provides security architecture guidance for OT networks, network segmentation, remote access, identity and access management, secure connectivity, and data flows between IT and OT environments.\n\nBuilds, maintains, and implements cybersecurity, network security, data security, and cloud-integrated security solutions that protect physical and intangible company assets.\n\nServes as a subject matter expert for OT network security, including Purdue Model architecture, network segmentation, secure remote access, firewall policy, industrial protocol considerations, asset visibility, and compensating controls for legacy systems.\n\nMonitors, analyzes, and communicates emerging cyber threats, vulnerabilities, exploits, and adversary techniques relevant to OT environments, distribution centers, network infrastructure, and connected operational technologies.\n\nProvides technical support to network administrators and systems administrators, monitors and maintains current infrastructure, improves system performance, and automates security administration where appropriate.\n\nResponds to security alerts involving OT or network environments, escalates critical incidents to appropriate support teams, and participates in incident response exercises, tabletop exercises, and remediation efforts.\n\nAnalyzes security metrics, operational control data, and KPIs to generate insights for executive and technical leadership review.\n\nProvides security briefings and technical recommendations to advise stakeholders on critical issues that may affect enterprise operations, distribution center availability, network resilience, or regulatory compliance.\n\nConsults with business and technical teams on the security impact of proposed technology, configuration, process, or architectural changes within OT and industrial network environments.\n\nCollaborates with product, engineering, operations, and information systems teams to ensure security requirements are embedded in technology lifecycle activities, including design, deployment, maintenance, and decommissioning.\n\nProvides technical guidance, coaching, and mentorship to Engineers I/II/III and other team members in executing tasks and responsibilities related to information security and OT network security.\n\nSupports audits, assessments, and compliance activities related to OT security, network security, cyber risk, information security standards, and applicable regulatory or customer requirements.\n\nEducation, Skillsets and Knowledge Qualifications:\nEducation:\nBachelor’s Degree in Computer Science, Information Technology or any other related discipline or equivalent related experience.\n\nPreferred Certifications:\nGlobal Industrial Cyber Security Professional (GICSP)\n\nGIAC Response & Industrial Defense (GRID)\n\nISA/IEC 62443 Cybersecurity Certificate or related ISA/IEC 62443 certifications\n\nCertification in Information Security Strategy Management (CISM)\n\nCertified Information Systems Security Professional (CISSP)\n\nCompTIA Security + Certification\n\nCisco Certified Network Designations (CCNA, CCNP, CCIE)\n\nWork Experience:\n6+ years of directly-related or relevant experience, preferably in information security.\n\nBehavioral Skills:\nConflict Resolution\n\nCreativity & Innovation\n\nDecision Making\n\nPlanning\n\nPresentation Skills\n\nTechnical Skills:\nOperational technology and industrial network security\n\nNetwork architecture, routing, switching, firewalling, VPN, IDS/IPS, proxies, and secure remote access\n\nOT network segmentation, Purdue Model architecture, zones and conduits, zero trust, and defense-in-depth\n\nIndustrial cybersecurity frameworks and standards, including ISA/IEC 62443, NIST SP 800-82, NIST CSF, ISO 27001, PCI, and SOX where applicable\n\nIndustrial protocols and environments such as Modbus, BACnet, OPC, Ethernet/IP, PROFINET, SCADA, PLCs, HMIs, and building automation systems\n\nThreat modeling, root cause analysis, vulnerability management, patch risk assessment, compensating controls, and exception management\n\nIdentity and access management for privileged and remote access in OT environments\n\nIncident response, cyber operations, threat hunting, monitoring, and logging for hybrid IT/OT environments\n\nCloud-connected OT and IoT/IIoT security considerations\n\nSecurity governance, compliance assessments, risk acceptance processes, and third-party risk reviews\n\nBusiness continuity, disaster recovery, and resilience considerations for operational environments\n\nTools Knowledge:\nMicrosoft Office Suite\n\nSecurity Tools - SIEM, EDR, Email Security Gateway, SOAR, Firewall, Anti-virus, Firewalls, VPN IDS/IPS, AV, proxies, etc.\n\nOT and industrial security monitoring platforms such as Armis, Nozomi Networks, Claroty, Dragos, Microsoft Defender for IoT, or equivalent technologies\n\nFirewall and network platforms such as Palo Alto Networks, Fortinet, Cisco, Check Point, or equivalent technologies\n\nTicketing, workflow, documentation, and collaboration tools\n\nScripting or query languages such as Python, PowerShell, SQL, KQL, JavaScript, HTML/CSS, or equivalent tools used for automation, reporting, and analysis\n\nWhat Cencora offers\nWe provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members’ ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora\nFull timeEqual Employment Opportunity\nCencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.\nThe company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.\nCencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email . We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned\nAffiliated Companies\nAffiliated Companies: AmerisourceBergen Services Corporation","description_format":"text","description_chars":9610,"description_truncated":false,"requirements":{"experience_years_min":6,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Parental leave","Professional development"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Network Security","Biotechnology","Information Security","Pharmaceutical Distribution"],"lifecycle":[{"event":"open","at":"2026-09-24T14:05:18Z"}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":0,"expected_fill_days":22,"reasons":["conf:1","stale_co","velocity","win:early","comp:brand"],"computed_at":"2026-09-25T05:45:01Z"},"pay":null,"html_url":"https://alion.io/job/cencora-lead-engineer-operational-technology-network-security","json_url":"https://alion.io/job/cencora-lead-engineer-operational-technology-network-security.json","meta":{"generated_at":"2026-09-26T03:31:15Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3752,"day_limit":5000,"remaining_today":1248,"minute_limit":60,"resets_at":"2026-09-27T00:00:00Z"}}}