Info Security Manager
PepsiCo
Overview The global Supply Chain/Operational Technology (SC/OT) R&D Cyber Lead – Manager - position within the global Cybersecurity OT Cyber function delivers the security program, assesses risk posture, and oversees security compliance and remediation for Research and Development facilities in all PepsiCo Geographies. The following are key role expectations: This is a role requiring executive presence and a detailed understanding of how to adapt and align a global foundational security program to a multi-sector security framework that includes R&D facilities in established and emerging business markets. The role is multi-dimensional requiring extensive security and business integration experience with proven capability in both technical skills and cultural awareness to identify, solve, monitor, and report key cybersecurity risk management components across the organization. The position will report to the US-based Global Cybersecurity Supply Chain/OT BISO within the PepsiCo Cybersecurity group and have no direct reports. Responsibilities Establish leadership relevance with the global Research and Development (R&D) leadership and geographies by ensuring visibility and alignment to the global cyber security program/framework within PepsiCo and the information security industry. It’s imperative that this role mirror scope and processes that complement other similar InfoSec roles and yet must have a fundamental understanding of the complexities, uniqueness, and utility of the Operational Technology deployed at R&D facilities within the scope of the Cyber OT program. Define, coordinate, and implement projects and/or mechanisms that establish synergies among the various sector security manager teams to drive the global security program. Develop and execute a roadmap with initiatives and enhancements to complement the business model, mitigate security vulnerabilities, and grow security capabilities to remain current with the ever-expanding threat landscape. Drive analysis and remediation of security breaches and identified vulnerabilities on a timely basis. Harvest, harmonize, and manage scorecards, metrics, and reporting capabilities to assess R&D facilities' security postures and support the global information security group analytics and insights team with complete, accurate, and timely information. Ensure consistent application of the InfoSec Policy/Standards Exception process with risk assessments to provide remediation and exception duration guidance. Drive consistency and continuity in process and procedures with security Standards Exceptions for localization as required by regional laws and/or special circumstances. Manage forensic analysis, investigations, and requirements from the global security Incident Response team that include, among other functions, Audit/Legal/HR. Collaborate with global security coordinators and Controllers function to ensure SOX and other key controls (i.e., OT RCM) are established and maintained effective within span of control. Assist in deployment of global security initiatives within the Sectors impacting R&D facilities. Partner with other OT Cyber Leads to ensure consistency and effectiveness in global approaches, processes, and procedures for alignment with overall corporate cybersecurity strategy. Partner with business Sector Supply Chain Operational Technology Leads to manage stakeholder relationships and prioritize cybersecurity in projects, capabilities, and culture change initiatives. Design, coordinate, and facilitate OT Cyber workshops and tabletop exercises for global R&D organizations to provide supply chain leadership (LG1-LG5) with visibility to global program and global R&D specific cyber benchmarking, maturity, metrics, and posture relative to their plant landscape. Compensation and Benefits: The expected compensation range for this position is between $118,700 - $198,800. Location, confirmed job-related skills, experience, and education will be considered in setting actual starting salary. Your recruiter can share more about the specific salary range during the hiring process. Bonus based on performance and eligibility target payout is 15% of annual salary paid out annually. Paid time off subject to eligibility, including paid parental leave, vacation, sick, and bereavement. In addition to salary, PepsiCo offers a comprehensive benefits package to support our employees and their families, subject to elections and eligibility: Medical, Dental, Vision, Disability, Health, and Dependent Care Reimbursement Accounts, Employee Assistance Program (EAP), Insurance (Accident, Group Legal, Life), Defined Contribution Retirement Plan. Qualifications 10+ years’ with the following experiences: Cybersecurity, Operational Technology experience, multi-national projects/experiences, program governance, project management, IT and/or ICS Engineering, and CPG Business knowledge. Certifications: CISA, CISM, CISSP, IEC/ISA-62443 are desirable. Familiarity with IT governance processes (ALM, etc). Information Security Risk Management. Operational Technology at Plants and/or Research and Development sites. Executive Presence. Multi-national cultural sensitivity and adaptability. Excellent communication skills. Experience in identifying best approach and options from multiple solutions involving ambiguity and conflicting priorities to enable security within the business. Self-starter who demonstrates leadership skills and takes initiative. Willing/"can do" attitude to drive for results. Ability to manage multiple priorities and work across multiple organizations, Regions, Sectors, and teams. EEO Statement Our Company will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Fair Credit Reporting Act, and all other applicable laws, including but not limited to, San Francisco Police Code Sections 4901-4919, commonly referred to as the San Francisco Fair Chance Ordinance; and Chapter XVII, Article 9 of the Los Angeles Municipal Code, commonly referred to as the Fair Chance Initiative for Hiring Ordinance. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status. PepsiCo is an Equal Opportunity Employer: Female / Minority / Disability / Protected Veteran / Sexual Orientation / Gender Identity. If you'd like more information about your EEO rights as an applicant under the law, please download the available EEO is the Law & EEO is the Law Supplement documents. View PepsiCo EEO Policy. Please view our Pay Transparency Statement.
Confirm your E-mail: Send Email
All Jobs from PepsiCo