About this role
Job title: OT Security Domain Manager
About the Role We are seeking an OT Security Domain Manager to lead Operational Technology security across Amer Sports' global supply chain. You will embed security into operations, projects, and growth initiatives, and act as the key link between Supply Chain, Cyber Security, site leadership, and business stakeholders to shape roadmaps and coordinate large-scale security programs. This role offers strategic influence across multiple sites with opportunities to significantly reduce cyber risk while maintaining production continuity.
What You'll Do
- Provide business-domain OT security oversight across all assigned sites and serve as the primary interface between Supply Chain, Business Owners, Site Managers, Global OT Security Lead, local OT Security Site Leads, the central CSRM and Enterprise Risk Management functions, and Group IT.
- Plan, prioritize, and drive consistent implementation of OT security across the domain (roadmap, milestones, ownership, follow-up).
- Manage multi-site OT security initiatives as a program (scope, timeline, dependencies, risks and issues, stakeholder communications) to ensure consistent execution across locations.
- Maintain and coordinate the business-domain OT security architecture view and rollout planning, aligned with Cyber Security, Enterprise Architecture, and the Global OT Security Lead.
- Coordinate and guide local OT Security Site Leads; track control implementation, local risk transparency, and remediation progress across assigned sites.
- Translate OT security requirements and residual risks into business priorities and investment proposals; support cross-site planning and prioritization.
- Ensure OT security requirements are integrated from the initial design phase of large-scale build projects and embedded throughout the project lifecycle.
- Manage the OT security interface with OEMs, system integrators, and third-party service providers, ensuring security requirements are defined, contracted, and verified for new and existing OT estates.
- Ensure domain OT security activities align with applicable security standards and regulatory obligations (e.g. IEC 62443, NIS2, ISO 27001) and support related audit and assurance activities.
- Drive domain-level OT asset visibility, risk classification, exception tracking, and maturity reporting in alignment with the global OT security framework.
- Provide domain-level reporting on security posture, roadmap progress, and key risks; escalate blockers and decisions as needed.
- Collaborate with the SOC / OT SOC Specialist and relevant teams to ensure OT context is considered in monitoring, incident response, and lessons learned.