Industrial Cyber Security Product Owner

Liebherr
Madrid, Spain
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Configuration Management Databases Cyber Security Network Topologies Software Vulnerability Management

Job description

We are seeking an ICS Product Owner to own the OT Asset Discovery & Registration (ADR) service from end to end. This means running the RFP, selecting tooling and integrators, leading a multi-site global deployment programme across 40+ production sites, and then building the long-term service that keeps the asset inventory accurate, current, and operationally valuable to Liebherr’s production companies.

You will work directly with the Head of Industrial Cyber Security, the ICS Security Architects, regional ICS Specialists, and will be the primary interface with Global delivery partners and division IT teams and production engineers during deployment.

The working location for this position will be in Madrid city, where we operate a hybrid model, requiring at least 40% of the working time on-site.

Creating passion: your responsibilities

OT Asset Discovery & Registration - Programme Delivery

  • Own and deliver the OT ADR programme from RFP to full group-wide deployment: tooling selection, integrator evaluation, commercial governance, and phased rollout across 40+ production sites.
  • Lead the RFP process: define technical requirements, evaluate passive and active discovery solutions, and drive vendor selection
  • Govern MSA delivery partners throughout the programme: set scope, enforce delivery standards, manage dependencies, and ensure site deployment quality and results.
  • Coordinate site access, network provisioning, and local IT engagement across production divisions for each deployment wave.
  • Manage the programme plan, milestones, risks, and stakeholder reporting to the Head of ICS and Liebherr’s Leadership.

OT Asset Discovery & Registration - Service Ownership

  • Own the OT Asset Discovery & Registration service end-to-end once deployed: service definition, SLAs, governance model, and continuous improvement roadmap.
  • Build the change detection capability.
  • Own the OT CMDB data model and asset taxonomy.
  • Act as the primary interface with the Global SOC for OT telemetry: ensure asset data and network context is structured, current, and actionable for SOC analysts and OT detection use cases.
  • Collaborate with GRC to define vulnerability management workflows for OT assets
  • Track and report service KPIs: asset coverage percentage, CMDB accuracy, change detection latency, and SOC integration.

Divisional Engagement & Cross-Domain Collaboration

  • Establish and maintain strong working relationships with division IT teams and site production IT across all deployment waves: translate ICS requirements into workable site engagement plans.
  • Work closely with the ICS Security Architect to ensure service architecture decisions remain consistent with Liebherr’s requirements and IEC 62443 standards.
  • Collaborate with the Global SOC on OT monitoring readiness: telemetry feeds, alert tuning, and OT-specific detection use case activation as site deployments complete.
  • Provide technical guidance and runbooks for regional ICS Specialists supporting site-level deployment and ongoing service maintenance.

Requirements

  • 5+ years of experience in OT/ICS security, industrial IT, or operational technology programme delivery.
  • Hands-on experience with OT asset discovery and network visibility tooling: Claroty, Dragos, Nozomi, Armis, or equivalent platforms.
  • Experience delivering complex, multi-site technology programmes: RFP and vendor selection, deployment governance, MSA partner management, and phased rollout coordination.
  • Understanding of OT network environments: industrial protocols, network topologies, IT/OT boundary architectures, and operational constraints.
  • Experience owning a technology service beyond initial deployment: process design, change management, SLA governance, and stakeholder adoption in large organizations.
  • Ability to manage multiple concurrent workstreams and hold external delivery partners accountable to defined outcomes.
  • Clear, structured communicator: able to write governance documentation, present programme status to senior stakeholders, and explain technical constraints to non-technical production managers.
  • Willingness and ability to travel to Liebherr sites worldwide up to 25% of the time (majority of sites are in Central Europe).

Benefits & conditions

  • Competitive compensation and benefits package that recognizes your expertise.
  • Flexible and hybrid working model.
  • Creative freedom and responsibility to shape processes and solutions in our global transformation.
  • Continuous learning and development with tailored training and certification opportunities.
  • Meal vouchers.
  • Life and accident insurance.
  • Option to include a premium private health insurance package as part of the flexible remuneration.
  • A safe, stable and international workplace within a trusted family business that invests in people.

About the company

At Liebherr, we believe people are at the heart of our success. As part of our international team, you’ll enjoy a secure role in a family-owned company that values innovation, collaboration, and long-term career growth, Liebherr is a family-run technology company that is not only one of the largest construction machinery manufacturers in the world, but also offers high-quality, user-oriented products and services in many other areas. The Group employs nearly 50,000 people in more than 140 companies on all continents.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on es.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:58 min

Prioritizing security over rapid feature delivery

Jakub Andrzejewski · WWC 2023

3:01 min

Comparing structured distributed hash tables with unstructured network topologies

Ishan Tiwari · WWC 2021

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all