Job description Site Name: UK - Hertfordshire - Stevenage, GSK HQ, USA - Pennsylvania - Upper Providence Posted Date: Dec 10 2024 We create a place where people can grow, be their best, be safe, and feel welcome, valued and included. We offer a competitive salary, an annual bonus based on company performance, healthcare and wellbeing programmes, pension plan membership, and shares and savings programme. We embrace modern work practises; our Performance with Choice programme offers a hybrid working model, empowering you to find the optimal balance between remote and in-office work. Discover more about our company wide benefits and life at GSK on our webpage Life at GSK | GSK R&D Operational Technology (OT) Security Architect Within R&D Digital & Tech we are looking for an Operational Technology (OT) Security Architect who will be responsible for designing secure laboratory architecture. This role provides support to other technical roles in the business lines assessing the risk of proposed design and evaluation OT security expectations. The OT Security Architect designs secure lab architectures for R&D environments and can assess the risk of proposed designs and evaluate OT security exceptions. They will design effective security measures tailored to R&D systems to minimize risk and incidents to OT as well as continuously adapt and evolve technical security strategy to the evolving threat landscape. The OT Security Architect will have ownership and responsibility for securing the systems and networks that control R&D laboratory equipment, instrumentation, and computing assets. The OT Security Architect will design, implement and support in overseeing security strategies related to the security of R&D laboratory environments. The OT Security Architect will need to be able to work across Departments outside of R&D including the global cyber security office and technology function. Job Purpose In this role you will Cyber Threat Intelligence: Analyze potential attack vectors and vulnerabilities specific to R&D OT systems and environments and map out possible mitigation strategies. Exceptions Management: Identify, handle and resolve anomalies or deviations from expected behaviour in business processes, systems or application aligned to GSK standards and policies in relation to operational technology. Network Reference Architecture: Develop end-to-end security architectures for OT environments that are resilient to cyber threats while meeting operational needs. This may include segmentation, secure communications, and access control. Control Implementation: Design and enforce controls to protect OT devices and systems against cyber threats. Risk Management: Support regular risk assessments to identify threats, vulnerabilities and control gaps in OT systems and ensure mitigation plans are in place. Incident Management: Learn from technology-related incidents to strengthen the design of OT systems and environments. Configuration Management: Support the implementation of cybersecurity measures specific to operational technology environments and maintain up-to-date configurations for devices. Performance: Support adherence to service level agreements with stakeholders and external vendors ensuring uptime and performance of critical operational technology systems. Quality, Risk & Compliance: Responsible for ensuring operational technology is compliant with internal security and risk management policies and practices, as well as external regulatory and statutory requirements e.g. GxP and that Tech continuity plans are in place for all critical areas. People Management: Will work in collaboration with the broader Digital and Technology team as well as supporting teams such as Cyber Security Office, Global Technology, Data Governance & Risk Management, Engineering, Global Supply Chain to deliver business value to defined timelines. Why you? Basic Qualifications: We are looking for professionals with these required skills to achieve our goals: Bachelor’s Degree - Technical Degree e.g. Engineering, Information Technology. Ability to manage and guide a team of Business Line OT Leads. Knowledge and experience in the implementation of security architecture frameworks Expertise in ensuring R&D adherence to OT security policies and standards. Skill in driving initiatives that support security, innovation, and efficiency within the R&D environment. Knowledge and assessment of emerging technical trends. Self-confident/assertive/dynamic/motivated behavior & being able to work on multiple tasks/projects in parallel with supervision. Preferred Qualifications: If you have the following characteristics, it would be a plus: Master’s Degree – Cyber Security or Information Security. Working knowledge of operational technology within laboratory environments. Hold a certification in CISSP. Pro-active and future thinking and acting. Strong facilitation, communication, and interpersonal skills. Closing Date for applications: 23/12/2024 Please take a copy of the Job Description, as this will not be available post closure of the advert. When applying for this role, please use the ‘cover letter’ of the online application or your CV to describe how you meet the competencies for this role, as outlined in the job requirements above. The information that you have provided in your cover letter and CV will be used to assess your application. QEL Why GSK? Uniting science, technology and talent to get ahead of disease together. GSK is a global biopharma company with a special purpose – to unite science, technology and talent to get ahead of disease together – so we can positively impact the health of billions of people and deliver stronger, more sustainable shareholder returns – as an organisation where people can thrive. We prevent and treat disease with vaccines, specialty and general medicines. We focus on the science of the immune system and the use of new platform and data technologies, investing in four core therapeutic areas (infectious diseases, HIV, respiratory/ immunology and oncology). Our success absolutely depends on our people. While getting ahead of disease together is about our ambition for patients and shareholders, it’s also about making GSK a place where people can thrive. We want GSK to be a place where people feel inspired, encouraged and challenged to be the best they can be. A place where they can be themselves – feeling welcome, valued, and included. Where they can keep growing and look after their wellbeing. So, if you share our ambition, join us at this exciting moment in our journey to get Ahead Together. As an Equal Opportunity Employer, we are open to all talent. In the US, we also adhere to Affirmative Action principles. This ensures that all qualified applicants will receive equal consideration for employment without regard to neurodiversity, race/ethnicity, colour, national origin, religion, gender, pregnancy, marital status, sexual orientation, gender identity/expression, age, disability, genetic information, military service, covered/protected veteran status or any other federal, state or local protected class(US only). We believe in an agile working culture for all our roles. If flexibility is important to you, we encourage you to explore with our hiring team what the opportunities are. Should you require any adjustments to our process to assist you in demonstrating your strengths and capabilities contact us on Ukdiversity.recruitmentgsk.com or 0808 234 4391. Please note should your enquiry not relate to adjustments, we will not be able to support you through these channels. However, we have created a UK Recruitment FAQ guide. Click the link and scroll to the Careers Section where you will find answers to multiple questions we receive. As you apply, we will ask you to share some personal information which is entirely voluntary. We want to have an opportunity to consider a diverse pool of qualified candidates and this information will assist us in meeting that objective and in understanding how well we are doing against our inclusion and diversity ambitions. We would really appreciate it if you could take a few moments to complete it. Rest assured, Hiring Managers do not have access to this information and we will treat your information confidentially. Important notice to Employment businesses/ Agencies GSK does not accept referrals from employment businesses and/or employment agencies in respect of the vacancies posted on this site. All employment businesses/agencies are required to contact GSK's commercial and general procurement/human resources department to obtain prior written authorization before referring any candidates to GSK. The obtaining of prior written authorization is a condition precedent to any agreement (verbal or written) between the employment business/ agency and GSK. In the absence of such written authorization being obtained any actions undertaken by the employment business/agency shall be deemed to have been performed without the consent or contractual agreement of GSK. GSK shall therefore not be liable for any fees arising from such actions or any fees arising from any referrals by employment businesses/agencies in respect of the vacancies posted on this site. Please note that if you are a US Licensed Healthcare Professional or Healthcare Professional as defined by the laws of the state issuing your license, GSK may be required to capture and report expenses GSK incurs, on your behalf, in the event you are afforded an interview for employment. This capture of applicable transfers of value is necessary to ensure GSK’s compliance to all federal and state US Transparency requirements. For more information, please visit GSK’s Transparency Reporting For the Record site.