- Essential Knowledge: Familiarity with the Cyber Security Management System (CSMS) process, including an overview of UN-R155 and UN-R156 regulations.
- Standards Awareness: Proficiency in ISO 21434 cybersecurity standards is mandatory.
Cybersecurity Controls:
- ECU and Network Security: Awareness of mitigations like Cyber Hygiene, Secure Boot, Signed Software, SecOC, Secure Diagnostics, Secure Debugging, etc.
- Offboard Security: Knowledge of security controls in SOTA, mobile communications, and cloud systems.
CSMS Process Expertise:
- Process Familiarity: Robust understanding of the CSMS process and ISO 21434.
- Core Experience: Hands-on experience with DIA/CIA, Cybersecurity Planning, Item Definition, and TARA.
Product Architecture Understanding:
- Technical Awareness: Proficient in network architecture, communication protocols, ECU hardware, and hardware security modules (HSMs).
Documentation and Communication:
- Clarity and Precision: Excellent documentation and communication skills to articulate findings and recommendations effectively to technical and non-technical stakeholders.