Support the development of security testing within the Hardware in The Loop, (HiLs), test rigs supporting Product Engineering to develop further capability in this area
Governance and Assurance of the 1LoD Pen Testing Squad within DPP in line with Regulations and Vehicle Type Approval
Build and Run a Certified Forensic Pen Test Lab
Develop cutting edge Vulnerability and Pen Test Techniques which can be flowed into the 1LoD Pen Test Service and HiLS and ViLS functional testing
Work with Management to ensure information security risk findings are reviewed and solutions are implemented, and risks are properly managed
Monitor and measure company compliance with its Security Penetration Policies and Procedures as well as worldwide standards and laws to ensure organizational compliance
Lead and build an Automotive Certified Forensic Pen Test Lab
Development of common attacks and vulnerabilities to develop Penetration Testing scopes for ECUs, Vehicle and Connected Offboard Systems
Uses threat intelligence such as updated rules and Indicators of Compromise (IOCs) to pinpoint affected systems and revision of Penetration Testing scope
Your Profile
Key skills/knowledge/experience:
Proven Penetration Testing experience and track record of delivery in a field relevant to the role, eg In-Vehicle Network, (CAN, FLexray etc.), Embedded systems security, threats and attacks within Infotainment, Telematics, Power Train etc.
Good experience in EMBEDDED AUTOMOTIVE SECURITY PEN TESTING
Experience of security assessment and Penetration Testing Tools within Vehicle Electrical Architecture and external interfaces such as Bluetooth, WiFi, Mobile Communications, etc.
Technical understanding of Automotive cyber security controls at both ECU and Vehicle level
Previous experience of Autosar Architecture, RTE integration and SecOC
Knowledge of ASpice, ISO21434, R155, R156, R157
Good understanding of automotive communication busses (CAN and Ethernet mandatory, Flexray and LIN desirable)