Sr Engineering Manager – Operational Technology Security

Roundel

Brooklyn Park (MN)

Hybrid

USD 132,000 - 238,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Target's OT security team seeks a senior engineering leader to build and run a high‑performing OT security platform. You will guide a team of engineers, set coding standards, and own end‑to‑end deployment, operation, and improvement of OT security capabilities across critical facilities.

You’ll partner with Security Architecture, Network Security, and site teams to translate ISA/IEC 62443 requirements into roadmaps, drive multi‑quarter initiatives, and mentor staff toward technical excellence

Qualifications

  • 4-year degree or equivalent work experience.
  • 8+ years in technology with OT security engineering expertise.
  • 3+ years managing engineering teams with delivery in OT security.
  • Experience hiring and growing senior engineering talent.
  • Ability to translate requirements into prioritized roadmaps.
  • Strong cross-functional collaboration and communication.

Responsibilities

  • Lead, build, and develop a team of Lead Engineers for OT security.
  • Set engineering culture, code quality, testing, on-call hygiene.
  • Own end-to-end OT security platforms deployment and operation.
  • Own vulnerability and exposure management of OT findings.
  • Deliver multi-quarter roadmaps and collaborate with cross-functional partners.
  • Provide white-glove engineering support for highest-risk OT findings.

Skills

OT security engineering
Engineering leadership
Team management
ISA/IEC 62443
Endpoint security
Vulnerability management
Automation
Python or Go
Terraform / IaC
Cross-functional collaboration

Education

Bachelors degree or equivalent in a technical field

Tools

Claroty
Nozomi
Dragos
Armis
Tenable OT

Job description

The pay range is $132,000.00 - $238,000.00 Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves.Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation.Find competitive benefits from financial and education to well-being and beyond at https://corporate.target.com/careers/benefits.

About us:

Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here. Target is one of the world's most recognized brands and one of America's leading retailers. But behind the brand our guests love, is a culture of continual innovation and right now, we are up to big things! Target's security team is a place where innovation happens daily. Interested in a culture that combines ongoing learning, engineering excellence, and stellar outcomes? We are too– that's why we work here. Join our team to improve Target's security and move the business forward.

Expect to:
  • Lead, build, and develop a team of Lead Engineers responsible for the day-to-day implementation and operation of Target's OT security capabilities.
  • Establish good stakeholder communication, work closely with partner teams, and help drive requirements while being a strong advocate of safe, efficient, and secure engineering practices in OT environments.
  • Build and manage a team of high performing engineers and provide leadership, coaching, motivation and recommend staffing levels, operating procedures, tools, and systems for the team.
  • Provide career development and performance management to a team of engineers.
  • Set the engineering culture and bar for the team — code quality, testing, review, on-call hygiene, postmortems, change safety, and operational excellence in environments where downtime has direct business impact.
  • Own the end-to-end engineering, deployment, configuration, and ongoing operation of Target's OT security platforms — including OT asset visibility and exposure platforms and the data pipelines that move OT signal into enterprise systems.
  • Operate these platforms as production systems: own their availability, performance, observability, coverage, data quality, upgrade cadence, and incident response, with clear service objectives and on-call coverage.
  • Own OT vulnerability and exposure management: intake, normalization, correlation, deduplication, enrichment, and risk prioritization of OT findings — using operational consequence, asset criticality, exploitability, exposure, compensating controls, vendor supportability, and maintenance windows rather than CVSS alone.
  • Own secure-configuration assurance for in-scope OT: develop hardening patterns, use OT security platforms and other available evidence to identify deviations, prioritize gaps, and validate remediation.
  • Own the endpoint security workstream for OT: eligibility, compatibility testing, pilots, deployment, health monitoring, rollback, exception handling, and compensating-control recommendations.
  • Provide white-glove engineering support for the highest-risk OT findings, while equipping OT Infrastructure, site teams, system owners, and vendors to execute most changes through their normal operational processes.
  • Own the OT security data pipeline: APIs, connectors, schemas, transformation, enrichment, reconciliation, routing, and monitoring that move OT Security platform data and related signal into the appropriate enterprise dashboards, ticketing systems, and remediation workflows with clear ownership attribution and SLAs.
  • Partner with Network Security on OT network segmentation and with IAM / Vendor Risk on vendor-access controls. Provide asset, traffic-flow, exposure, and operational-context data to inform engineering.
  • Translate ISA/IEC 62443-aligned requirements into a prioritized engineering roadmap, and deliver against it predictably.
  • Drive multi-quarter initiatives end-to-end: from problem framing and scoping, through design, build, rollout, adoption, and steady-state operation.
  • Make pragmatic build-vs-buy decisions and own the lifecycle of the OT security tools the team operates: vendor relationship, evaluations/POCs, contract input, capability adoption, and sunsetting.
  • Drive adoption of the team's controls across in-scope OT environments, including onboarding, exception/governance workflows, and enablement of OT Infrastructure and site teams.
  • Treat the OT security control plane as a product: invest in automation, self-service, and platform thinking so controls scale with Target's OT footprint.
  • Continuously reduce toil for both your team and Target's OT engineering organization — fewer one-off tickets, more paved roads, better defaults, faster feedback into the remediation lifecycle.
  • Provide security engineering consultation on new or materially changed in-scope OT solutions — including product/vendor evaluations, design reviews, endpoint compatibility assessments, hardening requirements, vulnerability-management expectations, telemetry requirements, and integration planning.
  • Represent the team's work clearly to senior leadership: roadmap, risk reduction, operational health, and tradeoffs — in language tuned to the audience.

Core responsibilities are described within this job description. Job duties may change at any time due to business needs.

About you:
  • 4-year degree OR equivalent work experience
  • 8+ years of hands‑on experience in technology, with deep experience in OT and security engineering and the adjacent disciplines that make OT security work — asset visibility, vulnerability and exposure management, endpoint security, data engineering/automation, and integration with enterprise remediation and governance workflows
  • 3+ years managing engineering teams with a strong track record of delivery in a platform, infrastructure, software development, or security engineering in an OT context
  • Experience hiring, growing, and retaining senior engineering talent, and building or evolving team operating models
  • You lead engineers, not just programs: you've owned the full stack of engineering management — hiring, performance, career growth, on‑call culture, code review standards, postmortems, and operational excellence
  • Demonstrated track record of running production platforms with clear service objectives, on‑call coverage, change management, and continuous‑improvement loops in environments where availability, safety, and continuity of operations are non‑negotiable
  • Experience driving multi‑quarter roadmaps end‑to‑end — from problem framing through rollout, adoption, and steady‑state operation — and delivering predictably against them
  • Comfortable making and defending pragmatic build‑vs‑buy decisions, owning vendor relationships and tool lifecycles, and knowing when to invest in custom engineering vs. lean on a platform
  • Demonstrated experience leading teams that operate OT and/orICS security platforms at scale — such as ClarotyXDome, Nozomi, Dragos, Armis, Tenable OT, or comparable OT asset visibility and exposure platforms
  • Hands‑on familiarity with ISA/IEC 62443 (and adjacent frameworks such as NISTCSF, NISTSP800‑82) — enough to align the team's controls to them, without being the policy author
  • Experience deploying and operating endpoint security agents on OT‑adjacent or constrained endpoints (e.g. EDR agents), including eligibility, compatibility testing, health monitoring, and exception handling
  • Experience building and operating findings pipelines that integrate security signal into enterprise remediation/governance platforms (e.g. shipping asset, vulnerability, secure‑configuration, and endpoint findings to centralized dashboards with ownership attribution and SLAs)
  • Proven history of effectively utilizing a variety of security tools and technologies across diverse environments. The ideal candidate will not be limited to specific vendors or solutions but will possess the technical depth to comprehend and implement end‑to‑end solutions that align with the reference security architecture's requirements
  • Automation‑first engineering mindset, with hands‑fluent in at least one general‑purpose language (e.g., Python, Go) and a track record of building reusable platforms and paved roads instead of one‑off scripts
  • Working knowledge of infrastructure as code (Terraform and equivalent) and CI/CD, and comfort integrating security tooling with modern engineering workflows
  • Strong understanding of distribution‑center automation, industrial control systems, or vendor‑managed OT environments
  • Experience with, or exposure to, adjacent OT‑relevant disciplines — including OT network segmentation, vendor‑access controls, and OT backup and recovery
  • Strong cross‑functional partner: comfortable working closely with partners across Security Architecture, BISO, Network Security, OT infrastructure, and site teams to align requirements, rollout plans, and operational ownership
  • Effective at representing your team's work, risks, and tradeoffs to senior leadership, and equally effective explaining the same content to staff engineers in detail
  • Good understanding of security management workflows in large enterprise organizations and complex environments, and of the current OT threat landscape and the challenges most organizations are facing
  • Excellent written and verbal communication skills with strong presentation abilities
  • Demonstrated curiosity, bias for action, and a genuine builder's mindset — you want to ship the platform, not just describe it

This position will operate as a Hybrid/Flex for Your Day work arrangement based on Target's needs. A Hybrid/Flex for Your Day work arrangement means the team member's core role will need to be performed both onsite at the Target HQ MN location the role is assigned to and virtually, depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target.

Benefits Eligibility

Please paste this url into your preferred browser to learn about benefits eligibility for this role: https://tgt.biz/BenefitsForYou_E

Americans with Disabilities Act (ADA)

In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to candidate.accommodations@HRHelp.Target.com. Non‑accommodation‑related requests, such as application follow‑ups or technical issues, will not be addressed through this channel.

Our Benefits

We care about and invest in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. Find competitive benefits from financial and education to well‑being and beyond at https://corporate.target.com/careers/benefits.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Engineering Manager – Operational Technology Security
Sr Engineering Manager – Operational Technology Security

Relha LLC • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Employee discounts
+2
Principal Engineer - Operational Technology Security
Principal Engineer - Operational Technology Security

Target • Brooklyn Park (MN)

Hybrid
USD 168,000 - 303,000
Lead Engineer - Cloud Security (Software Developer)
Lead Engineer - Cloud Security (Software Developer)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Lead Engineer - AI Security
Lead Engineer - AI Security

1114 Target Enterprise Inc • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Remote or Hybrid work
Lead Engineer - AI Security
Lead Engineer - AI Security

Roundel • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Remote or Hybrid work
Lead Engineer - Cloud Security (Cloud Security Platform & CSPM)
Lead Engineer - Cloud Security (Cloud Security Platform & CSPM)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Director of Engineering - Cloud Security
Director of Engineering - Cloud Security

Target • Brooklyn Park (MN)

Hybrid
USD 168,000 - 303,000
Health benefits
401(k)
Employee discount
+5
Senior Engineer - Target.com Web Enablement
Senior Engineer - Target.com Web Enablement

Roundel • Brooklyn Park (MN)

Hybrid
USD 98,000 - 176,000
Health benefits
401(k)
Paid time off
+1
Lead Engineer AI Security – Security Architecture(Remote Or Hybrid)
Lead Engineer AI Security – Security Architecture(Remote Or Hybrid)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Life insurance
+4
Lead Engineer - Email and Data Protection (Cybersecurity)
Lead Engineer - Email and Data Protection (Cybersecurity)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Paid time off