McCormick & Company · 5 days ago
OT Vulnerability Management Lead (HYBRID)
McCormick & Company is a leader in herbs, spices, seasonings, and condiments, and they are seeking an OT Vulnerability Management Lead to join their Cybersecurity Threat Management team. This role will be responsible for developing and leading the OT Vulnerability Management program, ensuring the identification, assessment, and mitigation of vulnerabilities across operational environments.
Responsibilities
Refine and execute a strategic OT Vulnerability Management strategy aligned with McCormick’s cyber threat management objectives and frameworks like NIST CSF and IEC 62443
Integrate threat intelligence and apply risk-based frameworks like CVSS, CMSS, EPSS to prioritize vulnerabilities based on McCormick’s operating environment
Oversee and improve vulnerability discovery processes across operational environments
Collaborate with IT, Cybersecurity, and operational remediation teams to ensure timely risk reduction across McCormick environments
Develop and track vulnerability management metrics to provide insights for technical teams and leadership
Drive continuous improvement in OT security posture by engaging with internal teams, service providers, and industry partners
Qualification
Required
Bachelor's degree in cybersecurity, computer science, information security, related degree, or equivalent hand-on experience gained through industry, military, or government service in OT security roles
GICSP, GRID, CISM, CISSP, OSCP or other relevant security professional certifications
Minimum 8 years' professional experience working in OT security, vulnerability management, cybersecurity or information technology
Minimum 2 years' experience in a senior technical role or leadership role
Proven ability to translate complex OT vulnerability topics into business risk for executive stakeholders
Experience managing large-scale security projects and leveraging automation for vulnerability tracking and reporting
Extensive experience with OT security principles, ICS, SCADA, PLCs, HMIs, and Industrial protocols
Hands on experience leading vulnerability assessments, risk analysis, and remediation strategies in OT environments
Experience with tools like Tenable OT, Claroty, Nozomi, or Verve
Understanding of OT threats and malware families and related ICS adversary tactics
Familiarity with industry regulations and security frameworks like NIST 800-82, IEC 62443, and Purdue Model architecture
Experience with OT patching processes, compensating controls, and asset lifecycle management
Benefits
401k
Health insurance
Paid time off
Competitive compensation
Career growth opportunities
Flexibility and Support for Diverse Life Stages and Choices
Wellbeing programs including Physical, Mental and Financial wellness
Tuition assistance
Comprehensive health plans covering medical, vision, dental, life and disability benefits
Family-friendly benefits such as paid parental leave, fertility benefits, Employee Assistance Program, and caregiver support
Retirement and investment programs including 401(k) and profit-sharing plans
Company
McCormick & Company
McCormick manufactures, markets and distributes spices, seasoning mixes, condiments & other flavorful products to the entire food industry.
Funding
Current Stage
Public CompanyTotal Funding
$2BKey Investors
Bank of America
2025-05-13Post Ipo Debt· $2B
1978-01-13IPO
Leadership Team
Recent News
2026-01-03
GlobeNewswire
2025-12-12
Company data provided by crunchbase