0Endpoint Security Engineer - OT (f/m/x)
ZEISS | Germany | 81xxx, 73xxx, 80xxx Oberkochen (Baden-Württemberg), München | Permanent position | Full time | Published since: 07.08.2026 on stepstone.de

Endpoint Security Engineer - OT (f/m/x)

Branch: Electrical engineering Branch: Electrical engineering


Step out of your comfort zone, excel and redefine the limits of what is possible. That's just what our employees are doing every single day – in order to set the pace through our innovations and enable outstanding achievements. After all, behind every successful company are many great fascinating people. In a spacious modern setting full of opportunities for further development, ZEISS employees work in a place where expert knowledge and team spirit reign supreme. All of this is supported by a special ownership structure and the long-term goal of the Carl Zeiss Foundation: to bring science and society into the future together. Join us today. Inspire people tomorrow. Diversity is a part of ZEISS. We look forward to receiving your application silence of gender, nationality, ethnic and social origin, religion, philosophy of life, disability, age, sexual orientation or identity. Apply now! It takes less than 10 minutes. .

Your tasks • Your profile • What we offer

Welcome to ZEISS – a company that combines innovation and responsibility! Our corporate functions are various and make a decisive contribution to the orientation strategic and sustainable success of ZEISS

Your role Deploy, configure and operate TXOne Stellar, Malware Check Stations (MCS) and related OT endpoint security components across global manufacturing sites

Maintain and Continuing Enhanced Security Baselines for OT endpoints including legacy OS, resource constrained devices, and production critical clients

Integrate OT endpoint telemetry, health checks and alerts into central monitoring, dashboards and ITSM systems; automate routine tasks (packaging, updates, remediation)

Investigate, troubleshoot and resolve OT endpoint security incidents; perform root-cause analysis and definition measures

Ensure policy consistency, allow/deny list management, signature tuning and stable operation in production environments

Collaborate with internal OT/ stakeholders, production teams, and external integration partners to support rollout, upgrades and lifecycle management

Maintain service documentation (runbooks, architecture diagrams, SOPs) and support compliance, audit readiness and continuous improvement initiatives

Contribute to the overall OT security roadmap and alignment with Defender/XDR initiatives

Hands-on experience with TXOne Stellar, Portable Inspectors, Malware Check Stations, and similar OT focused endpoint security solutions

Strong understanding of OT environments, including legacy systems operating, network segmentation, production constraints, and safety considerations

Good knowledge of endpoint security fundamentals: AV/EDR, application control/whitelisting, removable media governance, policy and signature tuning

Scripting/automation experience (PowerShell, Python or similar) for telemetry, packaging, and operational efficiency

Familiarity with Microsoft Defender ecosystem (MDE, XDR) and ITSM processes (Incident, Problem, Change)

Strong troubleshooting skills and the ability to work effectively with production teams and external providers

Excellent communication skills in English, with the ability to interact across global teams

Working experience in multinational manufacturing or regulated environments

Security-related background checks may be conducted as part of the hiring process. At an advanced police stage of the application process, a clearance certificate must be submitted. .

Location

ava ZEISS
Oberkochen (Baden-Württemberg), München
Germany

The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.

For more information read the original ad

Permanent link to this ad

Ad Id