Attiva gli avvisi di lavoro via e-mail!

Cybersecurity Expert

Vodafone Automotive

Milano

In loco

EUR 65.000 - 85.000

Tempo pieno

Oggi
Candidati tra i primi

Descrizione del lavoro

A leading automotive technology firm is seeking an experienced cybersecurity engineer in Milan to ensure compliance with automotive cybersecurity standards. You will drive security architecture, perform risk assessments, and lead security testing. The ideal candidate has 8–10 years of experience in embedded systems and strong knowledge of ISO 21434. Fluency in English is required for technical documentation and audits.

Competenze

  • 8–10 years in embedded/automotive cybersecurity roles.
  • Hands-on expertise with Secure Boot and HSM/TPM.
  • Familiarity with DevSecOps processes and tools.

Mansioni

  • Perform and maintain Threat Analysis and Risk Assessment.
  • Configure Secure Boot, integrate HSM, and set firewall rules.
  • Lead pen-testing, fuzzing, and vulnerability management.

Conoscenze

ISO / SAE 21434 mastery
Cryptography knowledge
Pen-testing skills
Technical negotiation
Cross-functional teamwork

Formazione

Degree in Computer or Electronics Engineering

Strumenti

wolfSSL
PKCS#11
Descrizione del lavoro
Overview

Role purpose: Ensure the TCU is conceived and developed according to a security-by-design approach, fully compliant with automotive cybersecurity standards (ISO 21434, UNECE R155 / R156). The role drives security architecture definition, influencing early system and software decisions to safeguard data, communication channels, and the boot path.

Key accountabilities and decision ownership
  • TARA & Mitigation – Perform and maintain Threat Analysis and Risk Assessment, converting risks into actionable security requirements.
  • Security architecture definition – Configure Secure Boot, integrate HSM, set firewall rules and Secure Storage in close partnership with System and Software Architects.
  • Secure protocol & cryptography integration – Support TLS, IPsec, MACsec; advise on crypto libraries (wolfSSL, PKCS#11) and crypto hardware.
  • Key & trust management – Implement root-of-trust, manage X.509 certificates, authenticated OTA and firmware rollback protection.
  • Documentation & compliance – Author Cybersecurity Concept, Security Case; prepare for audits / certifications (UNECE R155 / R156).
  • Security testing & vulnerability management – Lead pen-testing, fuzzing, SBOM-based vulnerability mitigation within a DevSecOps framework.
Core competencies, knowledge and experience
  • Standards & regulations: Mastery of ISO / SAE 21434, UNECE R155 / R156, AUTOSAR Security.
  • Security architectures: Secure Boot, HSM / TPM, Secure Element, key provisioning strategies.
  • Applied cryptography: TLS / IPsec protocols, certificate management, side-channel defenses.
  • HW / SW integration: Close work with Linux, AUTOSAR developers and hardware teams.
  • Security testing: Pen-testing, fuzzing, embedded vulnerability scanning.
  • Soft skills: Clear communication, technical negotiation, cross-functional teamwork.
Must have technical / professional qualifications
  • Degree in Computer or Electronics Engineering (or equivalent).
  • 8–10 years in embedded / automotive cybersecurity roles.
  • Hands-on expertise with Secure Boot, HSM / TPM, embedded crypto libraries.
  • Fluent English for technical documentation and international audits.
  • Familiarity with DevSecOps processes, SBOM, pen-test and fuzzing tools.
Ottieni la revisione del curriculum gratis e riservata.
oppure trascina qui un file PDF, DOC, DOCX, ODT o PAGES di non oltre 5 MB.