Analyst II, Information Security (Operational Technology)

Posted 2 hours ago
Arrowhead Pharmaceuticals

Arrowhead Pharmaceuticals, Inc. (Nasdaq ARWR) is a commercial stage biopharmaceutical company that develops medicines that treat intractable diseases by silencing the genes that cause them. Using a broad portfolio of RNA chemistries and efficient modes of delivery, Arrowhead therapies trigger the RNA interference mechanism to induce rapid, deep, and durable knockdown of target genes. RNA interference, or RNAi, is a mechanism present in living cells that inhibits the expression of a specific gene, thereby affecting the production of a specific protein. Arrowhead’s RNAi-based therapeutics leverage this natural pathway of gene silencing.

Arrowhead is focused on developing innovative drugs for diseases with a genetic basis, typically characterized by the overproduction of one or more proteins that are involved with disease. The depth and versatility of our RNAi technologies enables us to potentially address conditions in virtually any therapeutic area and pursue disease targets that are not otherwise addressable by small molecules and biologics. Arrowhead is leading the field in bringing the promise of RNAi to address diseases outside of the liver, and our clinical pipeline includes disease targets in the liver and lung with a promising pipeline of preclinical candidates.

Arrowhead’s corporate headquarters is in Pasadena, CA with research and development teams in Madison, WI & San Diego, CA, and a state of the art manufacturing facility in Verona, WI.  Our employees are nimble, science-driven innovators who are collaborating to bring new therapies to patients in need. 

The Position

The Information Security Analyst II will join a team responsible for protecting both Operational Technology and Information Technology environments. This role combines enterprise security administration, and manufacturing security to ensure security, reliability and compliance of both business and production systems. The analyst is responsible for securing industrial control systems, manufacturing execution systems, distributed control systems, SCADA platforms, PLC-based automation systems, other manufacturing technologies, and enterprise endpoint environments. This role requires a self-directed professional who can manage security technologies, drive remediation efforts and partner with stakeholders.

Responsibilities

  • Operational Technology
    • Support cybersecurity initiatives for manufacturing and laboratory environments, including ICS, MES, DCS, SCADA, PLC, and connected operational systems.
    • Assist with OT asset inventory, vulnerability identification, risk assessment, and remediation planning.
    • Partner with Engineering and Manufacturing teams to implement security controls within production environments.
    • Participate in network segmentation, secure remote access, and industrial security architecture initiatives.
    • Support cybersecurity assessments of manufacturing technologies and third-party vendor solutions.
    • Monitor emerging threats impacting pharmaceutical manufacturing and industrial control environments.

 

  • Enterprise Security
    • Design, implement, and maintain secure baselines, hardening standards, and compliance policies.
    • Monitor endpoint security posture and coordinate remediation of identified risks and vulnerabilities.
    • Evaluate and implement security controls to improve overall security posture.
    • Support threat detection, incident response, investigation, and remediation activities.
    • Perform security assessments and risk analysis of systems, applications, and infrastructure.
    • Develop and maintain security documentation, procedures, standards, and technical guidance.

Requirements

  • Bachelor's degree in Information Security, Information Technology, Computer Science, Industrial Engineering or a related field, or equivalent combination of education and experience.
  • 3+ years of experience in Information Security, System Administration, Help Desk, or similar roles directly supporting OT, ICS, SCADA, or manufacturing environments.
  • Working knowledge of Purdue Enterprise Reference Architecture.
  • Familiarity with ISA/IEC 62443, NIST SP 800-82, NIST CSF 2.0, and CISA guidance for the critical manufacturing sector.
  • Ability to independently manage priorities and drive initiatives to completion.
  • Experience implementing endpoint security controls, system hardening, and configuration management practices.
  • Understanding of vulnerability management, incident response, and security monitoring processes.
  • Knowledge of Windows operating systems, Active Directory, Entra ID, and enterprise networking fundamentals.

Preferred

  • Cybersecurity experience in OT, Industrial Control Systems, or manufacturing environment.
  • Experience with Dragos OT, Claroty Platform, Nozomi Networks, Defender for IoT, Fortinet OT Security, Tenable OT, Forescout Vistaro, Armis Centrix, etc. security.
  • Certifications relevant to security and compliance.
  • Hands-on experience with an OT-native detection platform.
  • Knowledge of industrial networking technologies.
  • Experience with historians and batch systems.
  • Prior participation in a regulatory inspection.

Wisconsin pay range {{:}} $80,000 USD - $100,000 USD

California pay range {{:}} $88,000 USD - $110,000 USD

Arrowhead provides competitive salaries and an excellent benefit package.   

Candidates must have current, valid authorization to work in the country where this role is located.

California Applicant Privacy Policy

Login to Apply Now

Recommended Jobs

Software Security Analyst

Posted 1 hour ago

Security Analyst

Posted 1 hour ago

Senior Cyber Threat Analyst

Posted 1 hour ago