Lead Engineer - Operational Technology Security
Pay range: $132,000 – $238,000. Pay is based on several factors including labor markets, education, work experience, and certifications.
Benefits
Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include:
- Medical, vision, and dental insurance
- Life insurance
- 401(k) retirement plan
- Employee discount
- Short-term and long-term disability
- Paid sick leave
- Paid national holidays
- Paid vacation
For more details, visit Target’s benefits page.
About Us
Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Cybersecurity at Target is on a mission to secure the systems, tools, and processes that team members and guests interact with every day. We drive industry-leading technologies in support of every angle of the business and help ensure that Target operates smoothly, securely, and reliably from the inside out.
About the Role
As a Lead Security Engineer for Operational Technology (OT), you will help design, build, and scale security solutions to secure Target’s operational technology across supply chain, stores, and corporate offices. You will leverage your security and risk management experience to work across Target technology and business teams, implementing security requirements, assessing risk, and developing mitigation strategies. You will also act as a leader within the organization, mentoring team members in security concepts and engineering best practices.
Responsibilities
- Design, build, and scale security solutions for Operational Technology (OT) environments.
- Work across technology and business teams to implement security requirements, assess risk, and develop mitigation strategies.
- Leverage deep engineering expertise to influence peers and partner teams, driving security solutions that enable "secure-by-default" practices.
- Mentor team members in security concepts and engineering best practices.
- Own enterprise-wide security projects or programs, including building project plans, identifying stakeholders, and addressing roadblocks.
Requirements
- Bachelor’s degree in information security, computer science, or related field; or equivalent experience.
- 5+ years of engineering experience in one or more information security domains (e.g., vulnerability management, threat intelligence, application security, incident response, risk management).
- 2+ years of engineering experience in Operational Technology (OT) or Internet-of-Things (IoT) security.
- 2+ years of engineering experience in network architecture, network design, or network segmentation.
- Experience defining security requirements, managing findings, and mitigating risk across multiple business lines, applications, and stakeholders.
Preferred Qualifications
- Master’s degree in information security, computer science, or related field; or equivalent experience.
- Experience designing, developing, and scaling "secure-by-default" security solutions (e.g., auto-patching, credential rotation).
- Demonstrated ability to align business needs with security requirements to manage threats and risks effectively.
- Executive-level communication skills, both verbal and written, to articulate technical topics to diverse stakeholders.
- Experience with both on-prem (e.g., bare metal servers, firewalls) and cloud-based (e.g., GCP, AWS, Azure) infrastructure.
- Experience leveraging AI tools (e.g., Claude, ChatGPT) to improve security tooling or operations.
- Experience with OT security standards such as ISA/IEC 62443 or NIST SP 800-82 Rev 3.
- Experience with common security tooling (e.g., SIEM, DLP, IDS, IPS).
- Experience with common security frameworks (e.g., NIST, ISO/IEC 27001, PCI-DSS).
- Relevant security industry certifications (e.g., CISSP, CISM, OSCP).
Schedule
This position operates as a Hybrid/Flex for Your Day work arrangement, meaning the role requires both onsite work at Target’s HQ in Minnesota and virtual work, depending on the day’s tasks. Work duties cannot be performed outside of the primary work location unless otherwise prescribed by Target.