Jobs and Careers
AM

Principal Engineer - Operational Technology Network Security

AmerisourceBergen
Conshohocken, United Statesfull_timeVerifiedPosted 27 May 2026

About the role

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!

Job Details

The Principal Engineer, provides strategic and technical leadership for securing Cencora’s operational technology, industrial control systems, distribution center technologies, building automation systems, warehouse automation environments, and other network-connected OT assets. This role designs, implements, and governs secure OT network architectures that support resilient operations, reduce cyber risk, and align with enterprise security standards, regulatory expectations, and business continuity requirements.

The Principal Engineer serves as a subject matter expert for OT network segmentation, secure remote access, industrial network monitoring, vulnerability management, incident response, and security control implementation across complex hybrid environments. The role partners closely with Information Security, Infrastructure, Network Engineering, Facilities, Distribution Operations, Engineering, vendors, and business leaders to ensure security controls are practical, sustainable, and aligned to operational needs.

Primary Responsibilities:

  • Provides technical leadership for OT network security strategy, architecture, standards, and roadmap development across operational environments, including distribution centers, automation platforms, industrial control systems, IoT/IoT devices, facilities systems, and supporting network infrastructure.

  • Designs and leads implementation of secure OT network architectures using principles such as Purdue Model segmentation, zero trust, defense-in-depth, secure zones and conduits, least privilege, and controlled connectivity between IT, OT, cloud, and vendor-managed environments.

  • Plans and leads upgrades to OT network security measures and tools to protect operational systems, networks, and connected assets while minimizing disruption to safety, quality, availability, and business operations.

  • Analyzes trends, threat intelligence, vulnerabilities, regulatory expectations, and changes in the OT and industrial cybersecurity landscape; advises leadership on organizational risk and recommends mitigation strategies.

  • Develops, refines, and implements OT security policies, standards, procedures, reference architectures, and technical patterns aligned to frameworks such as ISA/IEC 62443, NIST SP 800-82, NIST Cybersecurity Framework, ISO 27001, and applicable compliance requirements.

  • Leads OT network segmentation initiatives, including firewall rule governance, access control, network access control, secure routing, remote access hardening, jump host architecture, micro-segmentation, and monitoring of traffic between IT and OT environments.

  • Partners with network administrators, system administrators, facilities teams, automation engineers, and third-party vendors to ensure OT networks, servers, endpoints, controllers, network devices, and security technologies conform to approved security standards.

  • Provides technical guidance for OT asset discovery, inventory management, vulnerability management, configuration baselines, patch risk assessment, compensating controls, and lifecycle planning for systems with operational or vendor constraints.

  • Contributes to response activities for OT security incidents, including triage, investigation, containment, eradication, recovery, root cause analysis, lessons learned, and coordination with enterprise incident response teams and third-party responders.

  • Formulates methodologies to monitor, detect, analyze, and respond to OT network security events; supports the integration of OT telemetry into SIEM, SOAR, network detection and response, vulnerability management, and enterprise cyber operations processes.

  • Provides technical oversight for security controls in the acquisition, design, development, change management, and deployment lifecycle for OT systems, warehouse automation technologies, network-connected equipment, and third-party-managed platforms.

  • Reviews technical and functional design document

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

AmerisourceBergen

View company profile →