Automotive Cybersecurity Engineer
Cyber Instincts AB
- Stockholm
- Permanent
- Heltid
- Analyze and review security architectures, designs, and controls.
- Perform Threat Analysis and Risk Assessments (TARA) on the component/item/vehicle level as well as on backend systems.
- Create and review Cybersecurity Plans, Item Definitions, Cybersecurity Concepts.
- Write cybersecurity requirements for product features and functions.
- Analyse product cybersecurity requirements, technical specifications, and system architecture diagrams to develop test cases.
- Verify and validate cybersecurity requirements.
- Perform cybersecurity joint reviews with suppliers.
- Prepare issue reports for identified security vulnerabilities and follow-up with suppliers.
- You have at least 3 years of experience in the automotive industry within the product development/systems engineering area.
- You have good knowledge of automotive embedded EE (Electrical/Electronics) components/systems and software.
- You have good knowledge of Unified Diagnostics Services, ECU Software Architecture, AUTOSAR.
- You have experience in the cybersecurity field and good knowledge of one or more cybersecurity controls used to protect embedded systems (SecureBoot, Code Signing, SecOC, etc.)
- You have solid skills in threat modelling, risk analysis, attack paths, etc.
- You have good knowledge of the ISO21434 standard and the UNECE R155 regulation.
- Understanding/familiarity with one or more cloud platforms (AWS, Azure, GCP).
- You have a relevant education/qualification in a STEM (Science, Technology, Engineering, and Mathematics) academic discipline. (It can be degree or non-degree(diploma) qualifications. Other non-IT disciplines (Business/Management, Law, Finance, etc) shall be considered if relevant skills/experience can be demonstrated.)
- You have a good understanding of SW development lifecycle methodologies (Agile, Waterfall, etc.)
- You are innovative and have good problem-solving skills.
- You are a team player and have effective communication and documentation skills.
- Good software development skills in Python, Linux scripting, etc.
- You are familiar with one or more security tools, frameworks, or exploit frameworks (e.g., Kali Linux, mobSF, Ghidra, etc).