Roles and Responsibility
- Automotive cybersecurity (threat modeling, risk assessment, vulnerability management)
- Evaluate multiple vulnerability sources (OEM reports, suppliers)
- Perform initial triage to assess severity, exploitability, and vehicle impact
- Validate relevance of reported vulnerabilities to vehicle platforms, ECUs, and software components
- Eliminate false positives and duplicates through technical analysis
- Coordinate with engineering, suppliers, incident response teams and support the developing departments and our suppliers in finding corrective measures.
- Maintain traceability and documentation across the vulnerability lifecycle
- Present the results in the Car Security Board.
- Draft lessons learned to continuously improve our products and processes.
Must To Have
- Knowledge on Standards & regulations: ISO/SAE 21434, UNECE R155/R156 & General Data Protection Regulation
- Secure SDLC
- Process knowledge of event/incident response management
- Vehicle Architecture
- Good analytical & resolution skills
Good To Have
Certifications preferred:
- Automotive Cybersecurity Engineer (from TV )
- Automotive SPICE (Cybersecurity Proficiency)
- ISO/SAE 21434 (Road Vehicles Cybersecurity)