Product Cyber Security Engineer
Role details
Job location
Tech stack
Job description
As a member of the Product Security Incident Response Team (PSIRT), this role is responsible for managing and coordinating security incident response activities related to Sensata products and services. Key responsibilities include ensuring timely detection, analysis, containment, and remediation of cybersecurity incidents. In addition, this role is responsible for detecting cyber threats and incidents involving customers or third-party partners to assess potential impacts on Sensata products. General Responsibilities
- Responsible for performing security assessments of company products that may include vulnerability and risk assessments, threat analysis and security code reviews to identify potential design and implementation vulnerabilities.
- Designs and develops security features for products including systems, applications and / or solutions.
- Responsible for Integrating new security features and updates into existing products and ensures the security of all products is maintained throughout the product lifecycle.
- Provides product security engineering recommendations and resolves integration and testing issues.
- Builds a standardized set of security product requirements and produces metrics to report performance against those requirements.
- Reviews and defines security diagnostics and tools to facilitate the analysis and reporting of security events.
- Detects and mitigates security risks, responds to product security incidents, and works with customers regarding product security related issues.
- Leads or participates in security architecture and design review meetings.
- Responsibility for detecting cyber threats and incidents involving customers or third-party partners to assess potential impacts on Sensata products.
Requirements
Do you have experience in Time management?, Do you have a Bachelor's degree?, * A university degree required (i.e. Bachelors degree) or equivalent relevant work experience.
- Must be a team player able to work in a fast-paced environment with demonstrated ability to handle multiple competing tasks and demands.
- Strong communication skills; oral, written and presentation.
- Strong organisation, planning and time management skills to achieve results.
- Strong personal and professional ethical values and integrity.
- Holds self-accountable to achieving goals and standards.
- Proficient in Microsoft Office programs (Outlook, Word, PowerPoint, and Excel).
- Strong interpersonal & collaboration skills to work effectively with all levels of the organisation including suppliers and/or external customers., * Bachelor's degree in Cybersecurity, Computer Science, Electrical Engineering, or related technical field
- 5+ years of experience in embedded/software/application security experience.
- 3+ years of experience in vulnerability management and incident response.
- Strong knowledge of ISO/SAE 21434, UNECE R155, Cyber Resilience Act, and secure development lifecycle principles.
- Hands-on experience with penetration testing, fuzzing, and vulnerability scanning tools.
- Knowledge of cryptographic methods, secure boot, secure update and key management systems., * Familiarity with industry-specific tools and methodologies for vulnerability management and incident response within the product sector.
- Knowledge of scripting languages such as Python, PowerShell, or Bash for automation and tool development is a plus.
- Attention to detail and passion for efficient data management and activity tracking.