- Analyze internal and Customer specifications.
- Participate in Customer discussions and meetings.
- Product security concept/architecture development withing the given frames and state of the art.
- Risk evaluation/assessment pre and postproduction of the product.
- Coordinating security topics with SW System and Validation & Verification teams.
- Collaborate with product/solutions departments to identify and/or develop secure solutions.
- Feasibility analysis and risk assessment of proposed solutions/fixes in an embedded system environment
- Networking with Architects/Experts community towards Cyber Security implementation
- Consulting for Security aspects in design and process issues throughout the product design development and postlaunch phases
- Conducting research and development activities to further support company and departmental initiatives
- Interfacing and collaborating with crossfunctional teams to organize Security Boot camps org wide to improve cyber security mindset ratio.
- Be part of the security groups center of competence. Contributing with security knowhow and related process and technical improvements.
Qualifications :
Must have:
- Experience in the security aspects of multiple platforms operating systems software communications and network protocols
- Feasibility analysis and risk assessment of proposed solutions/fixes in an embedded system environment
- Embedded systems architecture understanding to perform a detailed analysis of software and hardware features to secure embedded devices.
- Experience with cross team feature management (tracking consulting and evaluating security features).
- Ability to prepare detailed plan and following/guiding teams through different standards and processes concerning security.
- Experience with management level reporting and feature tracking.
Nice to have:
- SW development experience in embedded C/C
- Expertise in Secure System Architecture for Products and Solutions (Hardware & Software)
- Knowledge of system life cycle management principles including software security and usability
- Well aware of Vulnerability assessment static/dynamic code analysis fuzzing penetration testing cryptographic algorithms and implementation or security research
- Aware of Penetration Testing Hardware Embedded Systems Operating Systems Network Equipment Wireless Mobile Databases Hacking and/or reverse engineering
- Tools Proxies Port Scanners Vulnerability Scanners Exploit Frameworks (ex: Burp Nessus Nmap Metasploit)
- Development environments for embedded systems crosscompilation debug tools ICE JTAG etc.
- Trust Zone Trusted Computing Group Trusted Platform Module Trusted Execution Environment
- Knowledge on AUTOSAR/AUTOSAR security modules
Additional Information :
What we offer:
Flexibility flexible working time and options to work from home
Career Development personalized training programs and professional qualifications development opportunities and programs as well as foreign language courses
Worklife Balance 25 days paid annual leave additional day off on your birthday
Wellness Sports card Private health insurance and life insurance
Engaging Social Activities regular teambuilding activities sporting events and celebrations
Stateoftheart Tech Labs Image Quality Lab Bench Rooms and Test Labs Test Cars and eBikes etc
Modern Office gaming and relax areas fresh fruit and drinks free parking
Additional Allowance and Discounts food vouchers lunch grant transportation allowance
The personal data you provide to us is processed by Robert Bosch EOOD within your application in the recruiting process. Your personal data is shared exclusively and only to employees of the Bosch Group and the candidate data retention period is 6 months. You have the right to obtain information about the processing of your personal data. In addition you have the right to correct to block and to delete it in accordance to the legal regulations. To enforce your rights you only need to contact us. Remark: If you request to block or to delete your data your application can no longer be considered.
. 6 . . . . : .
Remote Work :
No
Employment Type :
Fulltime