Przepraszamy, ta oferta pracy jest już nieaktualna !

Cybersecurity Engineer Ref. No: 8395

For our client, an American automotive company and global product leader in providing innovative and sustainable e-mobility solutions for the automotive market, due to development of their New Technological Center (R&D) in Krakow, we are looking for Cybersecurity Engineer.
Join us! and be a part of automotive world’s transformation to clean energy and eMobility.

Region: Kraków, małopolskie


Requirements

  • 2+ years of experience in an embedded cybersecurity position or 4+ years in embedded systems development, preferably for ASPICE compliant projects
  • Understanding of multi-core embedded microcontrollers that use HTAs (hardware trust anchors) or HSMs (hardware security modules)
  • Understanding of cybersecurity-specific testing such as penetration and fuzz testing
  • Passionate and forward-thinking about cybersecurity and the needs of the ever-changing automotive industry
  • Good understanding of formal risk assessment and management, knowledge of NIST SP-800-30 and ISO IEC 31010
  • Experience in the automotive or transportation domain
  • Experience with requirements engineering, ability to navigate through multiple customer specifications as well as published standards and policies (UNECE WP.29 R155 CSMS, R156 SUMS, ISO/SAE 21434)
  • Familiarity with cryptography and cybersecurity concepts such as defense in depth, access control models, memory protection, secure boot, Secure Coding, public key infrastructure (PKI)
  • Ability to work easily with Office software suite and engineering software (prior experience with simulation or analysis tools like Ansys Medini Analyze, for instance)
  • Strong communication and analytical skills
  • Ability to work independently, take ownership of project deliverables, go above and beyond the task at hand
  • Fluency in English is required
  • Occasional travel, domestic and international


Responsibilities

  • Conduct the cybersecurity activities for a given project with a collaborative team that takes into consideration customer specifications, the cybersecurity process, and brings their own experience into what is needed
  • Interface with customers on technical cybersecurity requirements and issues
  • Create a cybersecurity assurance case per project and the related documentation that provides the argument for the achieved degree of cybersecurity on their project
  • Perform cybersecurity risk assessments and threat modeling within a product scope
  • Analyze and determine safety, financial, operational, and privacy issues identified in a risk analysis
  • Where there are safety impacts, work with the Functional Safety (ISO 26262) team to find solutions that do not compromise safety or security
  • Suggest countermeasures appropriate to the project given the technical constraints or operational limitations
  • Create and maintain a knowledge database of typical assets, threats, and attack paths for our product portfolio to leverage re-use
  • Create and maintain solutions to manage cybersecurity risks
  • Drive cybersecurity solution development and provide technical support for hardware and software teams
  • Engage with suppliers to evaluate cybersecurity capabilities and track reported vulnerabilities
  • Evaluate new tools (Threat Analysis tool, Software Bill of Material tool, etc.)
  • Be part of vulnerability monitoring and incident response teams
  • Follow and contribute to the secure development lifecycle at Company
  • Network and maintain a high level of industry knowledge (e.g., participation in Auto-ISAC events, SAE workshops)
  • Help promote a safety and security culture
  • Support the roll-out of processes and procedures compliant with the latest cybersecurity standards and regulations
  • Assist in training and raising awareness, organizing events


We offer

  • Working with innovators, independent thinkers, talented employees towards the vision of a clean and energy-efficient world
  • Meaningful work and amazing technology in a unique environment
  • Modern office and high-tech lab space
  • Hybrid working model (2 days per week remote work)
  • Flexible working hours
  • Private Medicover medical care for the employee and his/ her family
  • Co-financing for the sport card Multisport
  • Possibility to join the PZU insurance
  • Co-financing for holidays
  • Hard and soft trainings, language courses