Attiva gli avvisi di lavoro via e-mail!

29/09/2025 Cybersecurity Expert

Vodafone Automotive

Bardi

In loco

EUR 60.000 - 80.000

Tempo pieno

2 giorni fa
Candidati tra i primi

Descrizione del lavoro

A leading automotive technology company in Bardi, Italy, is seeking a seasoned cybersecurity professional to ensure compliance with automotive cybersecurity standards. You will be responsible for defining security architecture, performing risk assessments, and overseeing security testing efforts. The ideal candidate will have a degree in Computer or Electronics Engineering, 8-10 years of experience, and a strong command of security protocols and methodologies.

Competenze

  • 8–10 years in embedded/automotive cybersecurity roles.
  • Hands-on expertise with Secure Boot, HSM/TPM, and cryptographic libraries.
  • Familiarity with DevSecOps processes and testing tools.

Mansioni

  • Perform Threat Analysis and Risk Assessment.
  • Define security architecture and configuration.
  • Lead security testing and vulnerability management.

Conoscenze

Security architectures
Applied cryptography
Standards & regulations mastery
Security testing
Soft skills

Formazione

Degree in Computer or Electronics Engineering

Strumenti

Secure Boot
HSM / TPM
Linux
Descrizione del lavoro
Overview

Role purpose : Ensure the TCU is conceived and developed according to a security-by-design approach, fully compliant with automotive cybersecurity standards (ISO 21434, UNECE R155 / R156). The role drives security architecture definition, influencing early system and software decisions to safeguard data, communication channels, and the boot path.

Responsibilities
  • TARA & Mitigation – Perform and maintain Threat Analysis and Risk Assessment, converting risks into actionable security requirements.
  • Security architecture definition – Configure Secure Boot, integrate HSM, set firewall rules and Secure Storage in close partnership with System and Software Architects.
  • Secure protocol & cryptography integration – Support TLS, IPsec, MACsec; advise on crypto libraries (wolfSSL, PKCS#11) and crypto hardware.
  • Key & trust management – Implement root-of-trust, manage X.509 certificates, authenticated OTA and firmware rollback protection.
  • Documentation & compliance – Author Cybersecurity Concept, Security Case; prepare for audits / certifications (UNECE R155 / R156).
  • Security testing & vulnerability management – Lead pen-testing, fuzzing, SBOM-based vulnerability mitigation within a DevSecOps framework.
Core competencies, knowledge and experience
  • Standards & regulations : Mastery of ISO / SAE 21434, UNECE R155 / R156, AUTOSAR Security.
  • Security architectures : Secure Boot, HSM / TPM, Secure Element, key provisioning strategies.
  • Applied cryptography : TLS / IPsec protocols, certificate management, side-channel defenses.
  • HW / SW integration : Close work with Linux, AUTOSAR developers and hardware teams.
  • Security testing : Pen-testing, fuzzing, embedded vulnerability scanning.
  • Soft skills : Clear communication, technical negotiation, cross-functional teamwork.
Must have technical / professional qualifications
  • Degree in Computer or Electronics Engineering (or equivalent).
  • 8–10 years in embedded / automotive cybersecurity roles.
  • Hands-on expertise with Secure Boot, HSM / TPM, embedded crypto libraries.
  • Fluent English for technical documentation and international audits.
  • Familiarity with DevSecOps processes, SBOM, pen-test and fuzzing tools.
Ottieni la revisione del curriculum gratis e riservata.
oppure trascina qui un file PDF, DOC, DOCX, ODT o PAGES di non oltre 5 MB.