Key Responsibilities 61 Conduct the cybersecurity activities for a given project with a collaborative team that takes into consideration customer specifications, the cybersecurity process and bring their own experience into what is needed 61 Interface with customer on technical cybersecurity requirements and issues 61 Create a cybersecurity assurance case per project and the related documentation that provides the argument for the achieved degree of cybersecurity on their project 61 Perform cybersecurity risk assessments and threat modelling within a product scope 61 Analyse and determine safety, financial, operational and privacy issues identified in a risk analysis 61 Where there are safety impacts, work with the Functional Safety (ISO 26262) team to find solutions that do not compromise safety or security 61 Suggest countermeasures appropriate to the project given the technical constraints or operational limitations 61 Create and maintain a knowledge database of typical assets, threats and attack paths for our product portfolio to leverage re-use 61 Create and maintain solutions to manage cybersecurity risks 61 Drive cybersecurity solution development and provide technical support for hardware/software and test teams 61 Engage with suppliers to evaluate cybersecurity capabilities and track reported vulnerabilities 61 Evaluate new tools (Threat Analysis tool, Software Bill of Material tool, etc.) 61 Follow and contribute to the secure development lifecycle at BorgWarner 61 Support the roll-out of processes and procedures compliant with latest cybersecurity standards and regulations
Key Competencies 61 2+ years of experience in an embedded cybersecurity position or in an embedded systems development, preferably for ASPICE compliant projects 61 Understanding of multi-core embedded microcontrollers that use HTAs (hardware trust anchors) or HSMs (hardware security modules) 61 Understanding of cybersecurity specific testing such as penetration and fuzz testing 61 Passionate and forward-thinking about cybersecurity and the needs of the ever-changing automotive industry 61 Good understanding of formal risk assessment and management, knowledge of NIST SP-800-30 and ISO IEC 31010 61 Experience in the automotive or transportation domain 61 Experience with requirements engineering, ability to navigate through multiple customer specifications as well as published standards and policies (GB 44495, UNECE WP.29 R155 CSMS, R156 SUMS, ISO/SAE 21434) 61 Ability to work easily with Office software suite and engineering software (prior experience with simulation or analysis tools like Ansys Medini Analyze for instance). 61 Strong communication and analytical skills 61 Ability to work independently, take ownership of project deliverables, go above and beyond the task at hand Fluency in English is required.