Dematic
OT Cybersecurity Compliance Lead – EMEA Projects and Systems

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Dematic OT Cybersecurity Compliance Lead
Dematic is a global leader in intelligent intralogistics and automated material handling solutions, delivering large-scale warehouse automation systems for some of the world’s leading brands. For decades, we’ve been redefining supply chains through innovation and cutting-edge automation technologies.
We are looking for an OT Cybersecurity Compliance Lead who will be responsible for driving the cybersecurity of the operational technology (OT) systems delivered within the EMEA region. This covers Dematic systems throughout their lifecycle – from solution design and engineering to commissioning, handover and ongoing operation. You will work closely with project teams, solution engineering, customers and suppliers to embed security by design, manage cyber risk, and ensure that delivered automation systems meet customer requirements, company standards and applicable regulations.
As the OT Cybersecurity Compliance Lead, you will drive, monitor and report on the compliance of OT systems with the EU Cyber Resilience Act and the Machinery Regulation (EU) 2023/1230, and apply ISA/IEC 62443 across projects in order to prevent, mitigate and / or detect cyber risks to delivered systems. You will be responsible for system-level security architecture, assurance and documentation within dedicated projects – a scope distinct from corporate IT security and from product-level cybersecurity, which are owned by separate functions.
We offer:
- Career Development
- Competitive Compensation And Benefits
- Pay Transparency
- Global Opportunities
The base pay range for this role, at the time of posting, is estimated to be the following should this role be filled in the respective country:
- Italy: €55,125 - €80,850 (Compensation will be aligned with the applicable National Collective Labour Agreement, namely the CBA, Metalmeccanico Industria)
- Lithuania: €54,000 - €79,200
Final compensation will be determined by various factors such as work location, education, experience, knowledge, and skills.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Tasks and Qualifications:
What you'll be responsible for:
Regulatory Compliance (Cyber Resilience Act & Machinery Regulation):
- Translate the EU Cyber Resilience Act and Machinery Regulation (EU) 2023/1230 cybersecurity requirements into practical, auditable engineering and project requirements for OT systems.
- Maintain readiness for the regulatory milestones (CRA vulnerability/incident reporting from September 2026 and full application December 2027; Machinery Regulation from January 2027).
- Demonstrate system-level conformity where both regimes apply, reusing product-level assurance and closing the remaining integration gaps.
Secure-by-Design across the Project Lifecycle:
- Embed OT cybersecurity into the project lifecycle as gated, repeatable activities from design and engineering through FAT/SAT, commissioning and handover.
- Author and review security requirements, architecture and risk assessments for bids and live projects, and advise project and solution teams.
- Produce handover security documentation and the operations and maintenance security baseline inherited by the customer and Dematic Service.
OT Systems & Standards (IEC 62443):
- Apply ISA/IEC 62443 across OT systems – zones and conduits, network segmentation, secure remote access, hardening, patch and backup strategy.
- Define reference architectures, hardening standards and reusable security building blocks so projects start from a compliant baseline.
Risk, Assurance and Testing:
- Conduct OT-specific risk assessments, security testing and assurance reviews; track findings and mitigations to closure across projects and the installed base.
- Support OT security incident readiness and response for delivered systems, in coordination with IT Security and the customer.
Stakeholder Collaboration:
- Act as the OT cybersecurity point of contact for project, engineering, quality, legal/compliance and customer stakeholders.
- Provide guidance and training to project teams on OT security requirements and expectations.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Continuous Improvement:
- Capture lessons learned and feed them back into standards, reference designs and training.
- Help build Dematic's OT cybersecurity capability so it scales with the project pipeline.
Compliance:
- Ensure compliance with relevant industry standards, regulations and company policies.
- Participate in internal and external audits as required.
What we're looking for:
- Bachelor's degree in Engineering, Automation, Computer Science, Cybersecurity, or a related field (or equivalent practical experience).
- Minimum of 5 years of relevant experience in OT / ICS cybersecurity or industrial automation, ideally in a systems-integration, intralogistics, manufacturing or OEM environment.
- Working knowledge of ISA/IEC 62443 and OT/ICS security fundamentals (network segmentation, hardening, secure remote access, OT/IT interface).
- Familiarity with the EU Cyber Resilience Act and Machinery Regulation (EU) 2023/1230 (and the legacy Machinery Directive 2006/42/EC); awareness of NIS2.
- Familiarity with material handling systems, automation solutions, industrial control technology (PLC, SCADA, industrial networks) and supply chain logistics.
- Proven ability to write and produce technical and compliance reports.
- Experience embedding cybersecurity into the project and engineering lifecycle.
- Ability to oversee internal and external security and compliance audits.
- Strong analytical, problem-solving, and communication skills.
- Ability to work independently and manage multiple projects in a fast-paced environment.
- Ability to influence and collaborate with cross-functional teams in an international and matrix organization.
- Fluency in English (additional European languages are a plus).
- ISA/IEC 62443 certification (e.g. Cybersecurity Fundamentals, Risk Assessment or Design Specialist), GICSP, or an equivalent OT-security credential is an advantage.
- Willingness to travel internationally as required to support the role, up to 25% of the time.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location