At a Glance
- Tasks: Design and implement cutting-edge network security solutions for IT and OT environments.
- Company: Join Elanco, a global leader in animal health with a diverse and inclusive culture.
- Benefits: Competitive salary, career growth opportunities, and a chance to make a real impact.
- Other info: Opportunity for overseas travel and collaboration across time zones.
- Why this job: Be part of a team that enhances animal health while advancing your technical skills.
- Qualifications: 5+ years in network security, experience with Palo Alto firewalls, and strong communication skills.
The predicted salary is between 36000 - 60000 £ per year.
At Elanco, we pride ourselves on fostering a diverse and inclusive work environment. We believe that diversity is the driving force behind innovation, creativity, and overall business success. Here, you’ll be part of a company that values and champions new ways of thinking, work with dynamic individuals, and acquire new skills and experiences that will propel your career to new heights.
We are seeking a Senior Network Security Engineer (OT) to assist us in designing and implementing firewall and network access control (NAC) technology solutions across IT and OT networks. The Senior Network Security Engineer will contribute to delivering various technical products in collaboration with other engineers, architects, and operational support teams. The Senior Network Security Engineer will be part of the team responsible for developing and supporting Elanco’s Network Security Platform. The team collaborates closely with technical service owners, architects, and the operations team to continuously raise the reliability bar for our services while guiding the adoption of Elanco’s network and security platform. The team provides direction for implementing modern technologies and a zero-trust strategy throughout all stages of the service development life cycle.
Your Responsibilities:
- Partner with InfoSec and Network Architecture to define and evolve enterprise firewall, NAC, and segmentation architecture across corporate and manufacturing environments.
- Lead design, implementation, and lifecycle management of Palo Alto firewall policies, zone-based segmentation, and security services, including secure north-south and east-west controls.
- Design and enforce segmentation strategies aligned to Purdue Model principles in manufacturing networks, balancing cybersecurity, availability, safety, and regulatory requirements.
- Apply security controls with awareness of industrial protocols such as Modbus/TCP, EtherNet/IP (CIP), PROFINET, OPC/OPC-UA, DNP3, and BACnet, accounting for legacy systems and deterministic traffic flows.
- Own medium- to high-complexity firewall and NAC initiatives from design through operational handover, including structured documentation and runbooks.
- Design and implement Network Security Policy Management (NSPM) solutions to support rule lifecycle governance, risk analysis, attestation, and compliance validation.
- Drive policy lifecycle management across firewalls and NAC, including rule review, optimization, consolidation, and risk reduction.
- Conduct and influence network security design reviews in collaboration with InfoSec, TechOps, and site IT/OT stakeholders.
- Ensure all solutions are secure-by-design and compliant with IT Security, Privacy, Quality, and regulatory standards (including GxP where applicable).
- Continuously assess and improve the overall network security posture through threat-informed adjustments and evaluate the capability of emerging capabilities.
- Provide senior-level technical leadership, mentorship, and cross-functional security consultancy.
What you need to Succeed (minimum qualifications):
- 5+ years of network security engineering experience, including hands-on design and administration of Palo Alto Networks next-generation firewalls.
- Experience with Palo Alto Panorama, logging infrastructure, Global Protect VPN, licensing, and related cloud-delivered security services.
- Proven experience designing and implementing segmentation strategies in enterprise and manufacturing/OT-heavy environments.
- Experience in engineering or administering a Network Access Control platform (e.g., Forescout CounterACT), including visibility, classification, and enforcement workflows.
- Experience designing and implementing an NSPM solution for firewall rule governance, compliance validation, and lifecycle management.
- Understanding of industrial control system (ICS) environments and common OT protocols (Modbus, EtherNet/IP, PROFINET, OPC/UA, DNP3, BACnet).
- Experience maturing network security controls, procedures, and policy governance processes.
- Working knowledge of routing and switching fundamentals to support firewall integration (e.g., OSPF, Cisco switching).
- Understanding of Zero Trust principles, micro-segmentation, application identity, and distributed enforcement models.
- Demonstrated ability to analyze large firewall rulesets and identify optimization, consolidation, and risk reduction opportunities.
- Strong written and verbal communication skills with experience producing high- and low-level designs, diagrams, and operational documentation.
What will give you a competitive edge (preferred qualifications):
- Experience deploying and integrating Palo Alto VM-Series firewalls within Azure or GCP cloud environments.
- Experience working in manufacturing, OT, or other regulated environments with an understanding of industrial systems and operational constraints.
- Experience with Forescout CounterACT or other enterprise NAC platforms in complex environments.
- Experience with NSPM tools such as AlgoSec or Tufin.
- Experience with Meraki MX security policy design and cloud-managed security platforms.
- Experience collaborating with vendors, third parties, and MSPs in regulated or production environments.
- Exposure to Agile delivery models and cross-functional security project execution.
- Relevant certifications such as Palo Alto Networks (PCNSE), Cisco CCNP Security, CISSP, or equivalent.
Education Requirements:
- Bachelor’s Degree or commensurate industry experience.
Other Information:
- Working across time zones to support the global business may be required.
- Overseas travel might be required.
Elanco is an EEO/Affirmative Action Employer and does not discriminate on the basis of age, race, color, religion, gender, sexual orientation, gender identity, gender expression, national origin, protected veteran status, disability or any other legally protected status.
Senior Network Security Engineer - OT employer: Elanco Tiergesundheit AG
Elanco is an exceptional employer that champions diversity and innovation, creating a vibrant work culture where employees can thrive. As a Senior Network Security Engineer, you will have the opportunity to work with cutting-edge technologies in a collaborative environment, while benefiting from continuous professional development and a commitment to making a positive impact on animal health and welfare. Join us in our mission to enrich lives through food and companionship, and be part of a team that values your contributions and supports your growth.
StudySmarter Expert Advice🤫
We think this is how you could land Senior Network Security Engineer - OT
✨Tip Number 1
Network, network, network! Get out there and connect with professionals in the field. Attend industry events, webinars, or even local meetups. You never know who might have a lead on your dream job!
✨Tip Number 2
Don’t just apply blindly! Tailor your approach for each role. Research Elanco’s values and culture, and make sure to highlight how your skills align with their mission. Show them you’re not just another applicant.
✨Tip Number 3
Prepare for interviews like it’s a big exam. Brush up on your technical knowledge, especially around Palo Alto firewalls and network security principles. Practice common interview questions and be ready to discuss your past projects in detail.
✨Tip Number 4
Follow up after your interviews! A quick thank-you email can go a long way. It shows your enthusiasm for the position and keeps you fresh in their minds. Plus, it’s a great chance to reiterate why you’re the perfect fit!
We think you need these skills to ace Senior Network Security Engineer - OT
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter for the Senior Network Security Engineer role. Highlight your experience with Palo Alto firewalls and network access control, as these are key aspects of the job. We want to see how your skills align with what we're looking for!
Showcase Your Experience:When detailing your work history, focus on specific projects where you've designed or implemented security solutions. Use examples that demonstrate your understanding of industrial protocols and segmentation strategies. This will help us see your hands-on experience in action!
Be Clear and Concise:Keep your application straightforward and to the point. Use bullet points for easy reading and make sure to avoid jargon unless it's relevant. We appreciate clarity, so make it easy for us to understand your qualifications and achievements.
Apply Through Our Website:We encourage you to submit your application directly through our website. This ensures that your application is seen by the right people and helps us keep track of all candidates. Plus, it’s super easy to do!
How to prepare for a job interview at Elanco Tiergesundheit AG
✨Know Your Tech Inside Out
Make sure you’re well-versed in the technologies mentioned in the job description, especially Palo Alto firewalls and NAC platforms. Brush up on your knowledge of industrial protocols like Modbus and EtherNet/IP, as these will likely come up during technical discussions.
✨Showcase Your Problem-Solving Skills
Prepare to discuss specific challenges you've faced in network security and how you tackled them. Use the STAR method (Situation, Task, Action, Result) to structure your answers, highlighting your ability to design and implement effective security solutions.
✨Understand Elanco's Mission
Familiarise yourself with Elanco’s vision and values, particularly their commitment to animal health and innovation. Be ready to explain how your skills and experiences align with their mission of making animals’ lives better, which can set you apart from other candidates.
✨Ask Insightful Questions
Prepare thoughtful questions that demonstrate your interest in the role and the company. Inquire about their current network security challenges or how they envision the future of their security architecture. This shows you’re not just interested in the job, but also in contributing to their success.