Job Description
Role Overview :
We are looking for a Senior Engineer with 12+ years of experience in automotive or embedded systems, with at least 10 years specifically in automotive cyber security.
Key Responsibilities :
- Responsible for product cybersecurity, owning the delivery of all cybersecurity work-products and acting as the primary point of contact.
- Serve as the customer representative for all cybersecurity topics related to the product.
- Collaborate with technology teams to ensure cybersecurity objectives are met through effective security architecture and implementation.
- Support development of cybersecurity concepts (TARA), requirements, and risk analysis in alignment with ISO/SAE-21434.
- Work closely with Program and Technology teams for planning, implementing and monitoring the product's cybersecurity posture.
- Participate in cybersecurity reviews, audits, and compliance activities for global standards (ISO/SAE-21434, GB 44495).
- Manage all work products outlined in the project Safety Plan and Cybersecurity Plan.
- Oversee the creation, review, and approval of work products across all product lifecycle phases.
- Coordinate with internal development teams and global automotive customers to ensure full compliance with functional safety, cybersecurity, and reliability standards.
- Lead project and task planning, progress tracking, and reporting.
- Drive continuous improvement in cybersecurity processes, tools, and methodologies.
Technical Requirements :
- Strong knowledge of embedded systems, real-time operating systems (RTOS), and automotive software architectures.
- Highly proficient in ISO/SAE-21434 implementation, CVE, and CVSS.
- Proven track record in Threat Analysis and Risk Assessment (TARA) for complex automotive systems.
- Experience in securing automotive Infotainment / Telematics ECUs.
- Familiarity with global automotive cyber security standards (ISO/SAE-21434, UNECE R155, GB 44495).
- Proficient in embedded systems development with a focus on security architecture.
Preferred Skills :
- Familiarity with Access control management, secure boot, System isolation, ARM Trust Zone.
- Familiarity with AUTOSAR, QNX, and Linux-based automotive platforms.
- Hands-on experience with TARA tools (e.g. Ansys Medini).
- Exposure to penetration testing, vulnerability analysis, and secure coding practices.
- Knowledge of functional safety (ISO 26262) and its interaction with cyber security.
- Understanding of vehicle network protocols (CAN, Ethernet, SOME/IP) and their security implications.
- Experience in designing cybersecurity solutions for Linux or Android platforms (secure communication, secure boot, TEE / HSM, Sandboxing).
- Knowledge of cryptographic algorithms, OpenSSL, WolfSSL, NMAP, PCAP, Wireshark.
- Knowledge of CAN UDS and secure UDS.
Bonus Points :
- Certified or trained ISO/SAE 21434 professional.
- Experience working in agile automotive development environments.
- Experience working with Qualcomm chipsets.
- Good knowledge of Enterprise Architect.
Required Skills
automotive cyber securityembedded systemsreal-time operating systemsISO/SAE-21434CVECVSSThreat AnalysisRisk Assessmentautomotive Infotainment ECUsautomotive Telematics ECUsglobal automotive cyber security standardssecurity architecturecybersecurity reviewscompliance activitiesfunctional safetycybersecurity processescybersecurity toolscybersecurity methodologiesAccess control managementsecure bootSystem isolationARM Trust ZoneAUTOSARQNXLinuxTARA toolspenetration testingvulnerability analysissecure coding practicesISO 26262vehicle network protocolscryptographic algorithmsOpenSSL