Logo for Danaher Corporation

Principal Architect, Manufacturing Security

Role overview

Qualifications

  • Deep expertise in OT/ICS network architecture including Purdue Model/ISA-95 zone segmentation
  • Hands-on experience designing and validating network segmentation implementations across complex, multi-site OT environments
  • Strong command of OT-specific cybersecurity frameworks including IEC 62443, NIST SP 800-82, CIS Controls for ICS
  • 12+ years of experience in OT/ICS security, network architecture, or industrial cybersecurity

Responsibilities

  • Own and evolve the enterprise OT security architecture blueprint for Danaher's global manufacturing portfolio
  • Lead the design and portfolio-wide adoption of secure remote access architecture aligned to the remote access platform
  • Partner with the Manufacturing Security Lead and information security leadership to develop OT cybersecurity policies
  • Drive the Architecture Review Board (ARB) process for OT security capabilities

Key facts

  • Remote from: Denmark
  • Full time
  • Expert & Leadership (>10 years)
  • English

Other skills

  • Governance

About the company

Danaher Corporation logo

Danaher Corporation

Medical Devices & Equipment

Danaher is a leading global life sciences and diagnostics innovator, committed to accelerating the power of science and technology to improve human health. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life. Our global teams are pioneering what’s next across Life Sciences, Diagnostics, Biotechnology and beyond. For more information, visit www.danaher.com.

Company details

Company typeXLarge
IndustryMedical Devices & Equipment
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

 Bring more to life. 

 

At Danaher, our work saves lives. And each of us plays a part. Fueled by our culture of continuous improvement, we turn ideas into impact – innovating at the speed of life.  

 

Our 60,000+ associates work across the globe at more than 15 unique businesses within life sciences, diagnostics, and biotechnology.   

 

Are you ready to accelerate your potential and make a real difference? At Danaher, you can build an incredible career at a leading science and technology company, where we’re committed to hiring and developing from within. You’ll thrive in a culture of belonging where you and your unique viewpoint matter. 

Learn about the Danaher Business System which makes everything possible.

The Principal Architect, Manufacturing Security is responsible for defining and owning Danaher's enterprise OT security architecture across its global manufacturing, lab, and R&D portfolio. This role sets the technical direction for network segmentation, IT/OT boundary design, DMZ architecture, and secure remote access across 15+ operating companies and 160+ sites worldwide. This position offers a rare opportunity to shape the cybersecurity posture of one of the most complex multi-OpCo industrial environments in the global life sciences and diagnostics industry. 

This position is part of the Corporate Information Security and will be located as Remote in Europe.

 

In this role, you will have the opportunity to: 

  • Own and evolve the enterprise OT security architecture blueprint for Danaher's global manufacturing portfolio — including network segmentation standards, tiered security zone frameworks (ISA-95/Purdue), IT/OT boundary controls, DMZ patterns, and BMS isolation strategy across 15+ operating companies 

  • Lead the design and portfolio-wide adoption of secure remote access architecture aligned to the remote access platform — retiring legacy VPN and direct-vendor connections, and extending zero-trust network access to OT OEMs, contractors, and remote support vendors across all operating companies 

  • Partner with the Manufacturing Security Lead and information security leadership to develop OT cybersecurity policies, architecture governance standards, and control frameworks that translate into OpCo-level implementation plans — ensuring consistency across critical sites and the broader portfolio 

  • Drive the Architecture Review Board (ARB) process for OT security capabilities including micro-segmentation, Remote Access OT extension, OT monitoring tools, and industrial firewall platforms — validating technical designs before deployment and enforcing architectural standards across the portfolio 

  • Provide expert OT security advisory to OpCo CIOs, site IT leads, and plant engineers — including architecture consultation for high-risk sites  and architectural oversight for the segmentation remediation program 

  • Provide guidelines and standards to align to good security controls  in the enablement of digital manufacturing to  

 

The essential requirements of the job include:  

  • Deep expertise in OT/ICS network architecture including Purdue Model/ISA-95 zone segmentation, industrial DMZ design, firewall policy for OT protocols (Modbus, Profinet, EtherNet/IP, OPC-UA, BACnet), and secure remote access architecture for multi-site manufacturing environments 

  • Hands-on experience designing and validating network segmentation implementations across complex, multi-site OT environments — including PLCs, DCS, SCADA, BMS, HMI, and historian systems — in life sciences, pharmaceutical, or similarly regulated manufacturing 

  • Strong command of OT-specific cybersecurity frameworks including IEC 62443, NIST SP 800-82, CIS Controls for ICS, and CISA/NSA OT security guidance — with demonstrated experience applying these standards in a federated, multi-OpCo enterprise 

  • Demonstrated experience with zero-trust network access (ZTNA) and SASE architectures (Zscaler or equivalent) in OT environments, including integration with industrial remote access protocols, vendor management workflows, and identity governance 

  • 12+ years of experience in OT/ICS security, network architecture, or industrial cybersecurity, with at least 5 years in a principal architect, distinguished engineer, or equivalent senior IC capacity within a complex multi-site manufacturing environment 

  

It would be a plus if you also possess previous experience in: 

  •  Experience operating as a technical authority in a federated enterprise model — advising multiple operating companies with distinct OT environments, independent IT governance structures, and different regulatory environments simultaneously. 

  • Familiarity with industrial micro-segmentation and OT visibility platforms (Elisity, Claroty, Dragos, Nozomi Networks, Armis) and a track record of presenting complex OT architecture decisions to C-suite and board-level audiences, including CISO updates and risk committee briefings.   

   

Travel, Motor Vehicle Record & Physical/Environment Requirements:

  • ~10% travel regionally and internationally

Application

We continuously assess candidates and invite them for interviews, so please don’t hesitate to write and send in the application. The recruitment will be completed as soon as a suitable candidate is found.

Join our winning team today. Together, we’ll accelerate the real-life impact of tomorrow’s science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.

For more information, visit www.danaher.com.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Related jobs

Other jobs at Danaher Corporation

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.