US|EN
Select your region & language
Our content and services may vary by location.
US|EN
Back
ID: POS09028

Senior OT Product Security Architect – Cyber Resilience Act (m/w/d)

Pharma & Biotech
Asap
6 months
Großraum Kassel
Freelance
K-Recruiting GmbH
Contact:

Printhan Gunasekaram

+49 89 1890998-603

Printhan.Gunasekaram@k-recruiting.com

Senior OT Product Security Architect – Cyber Resilience Act (m/w/d)

 

Tasks:

  • Provide conceptual consulting and implementation guidance for the Cyber Resilience Act (CRA) Essential Product Requirements within existing product software in the Bioprocess Solutions environment

  • Translate regulatory cybersecurity requirements into concrete, implementable architectural and product-level security requirements for software applications and embedded systems

  • Define secure architecture principles, design patterns, and reference architectures for Windows- and Linux-based on-premise software products

  • Develop technical concepts for secure authentication & authorization, identity management, secure interfaces, secret and key management, and secure software update mechanisms

  • Conduct security architecture reviews, risk assessments, and support security testing activities (e.g., penetration testing)

  • Ensure alignment with Secure Software Development Lifecycle (SSDLC) principles in close collaboration with Development, OT, IT, and DevOps teams

  • Coordinate security-related activities within a cross-functional project setup

 

Qualification:

  • Several years of experience as a Security Architect in product software, embedded systems, industrial automation, or OT environments

  • Strong knowledge of the Cyber Resilience Act (CRA) and relevant standards such as IEC 62443

  • Experience designing secure architectures for Windows- and Linux-based on-premise applications

  • Hands-on expertise in secure coding and design principles, PKI, certificate and key management, secure interfaces, and industrial protocol security

  • Experience in plant engineering, laboratory equipment, industrial systems, or bioprocess environments

  • Solid understanding of Secure Software Development Lifecycle (SSDLC) and DevOps principles

  • Fluent English (spoken and written); German is a plus

  • Nice to have:

    • Experience in the biopharmaceutical or regulated industry

    • Knowledge of threat modeling methodologies (e.g., STRIDE)

 

Requirements: 

Start: 01.03.2026, latest 01.04.2026

Duration: 6-9 months

Capacity: 5 days per week

Location: greater Kassel area; 50+% remote

 

Have we peaked your interest? Let's go
Contact
Printhan Gunasekaram
+49 89 1890998-603
Printhan.Gunasekaram@k-recruiting.com