- Coordinate and manage the implementation of secure development lifecycle efforts.
- Drive new product development process audits and assessments for Cybersecurity deliverables.
- Participate in key projects as product security functional representative.
- Work with business units to inventory products and assist in prioritizing risk.
- Organize and manage product risk assessments, vulnerabilities management and threat modeling efforts.
- Create, organize and participate in cross functional and business unit communities to promote the adoption of secure development and product security best practices.
- Maintain artifacts and a central repository of communications and information for Emerson Product Security functions and teams.
- Assist with analyzing product security market and technology trends.
- Assist with training and development needs for various organizational functions specific to product security related roles and functions.
- Maintain familiarity with industry standards such as IEC 62443 (ISA99), IEC 29147, IEC 30111, ISO/IEC 27001, EU-CRA and NIST SP 800-218.
- Support the organizational Product Security Incident Response Team and vulnerability management activities.
- Establish and enhance robust relationships with business unit team members, organizational functions, and business partners.
Preferred candidate profile
- Experience in industrial control systems (ICS), embedded systems, or network security is preferred.
- Familiar with concepts such as secure development lifecycle, secure by design, and defense in depth.
- Familiar with Microsoft Office tools for effective communications and information management.
- Ability to organize, prepare and make compelling presentations.
- Self-motivated and able to work under tight timeline.
- Strong problem solving / interaction management skills.
- Strong organizational and collaboration skills.
Preferred Qualifications that Set You Apart:
- Masters degree or equivalent experience in electronics engineering or related field.
- Risk Management Framework and Processes experience.
- Experience with standards and risk management frameworks (e.g. IEC 62443, IEC 27001, NIST SP 800-218, COBIT, NIST).
- Knowledge of technology trends and current product security issues, including those specific to control systems and related products.
- Experience with project management and development processes.
- Experience working with recognized security related standards and technologies.
- Experience with software bills of material (SBOM).
- Experience with secure coding practices and code review processes.
- Prior experience in the industrial/ factory automation or control systems industry.