Senior Manager-Electrical & Electronics Engineering-PVBU Engineering-TMPV (Pune)

Senior Manager-Electrical & Electronics Engineering-PVBU Engineering-TMPV (Pune)

09 Sep
|
TataMotors
|
Pune

09 Sep

TataMotors

Pune

Purpose of the Role :

This role owns the end-to-end DevSecOps discipline within the Connected Cars Platform engineering organisation. The engineer designs, builds, and continuously improves the CI/CD/CT pipelines, security toolchains, and internal developer platforms that underpin software delivery for Software Defined Vehicle (SDV) programmes — from embedded ECU firmware to cloud backend services. Security is baked into the delivery wiring harness, not bolted on at gate review.

The primary accountability is threefold: keep the build-deploy-validate pipeline quick and provably secure; conduct systematic cybersecurity assessments of vehicle binaries, OTA packages, and cloud APIs; and author the Python-based internal tooling that automates repetitive security, compliance, and diagnostic workflows. The engineer works across embedded Linux, AAOS, and AWS stacks, and is the team's authority on SAST/DAST/SCA, binary hardening verification, and secure OTA chain-of-custody.

Job Responsibilities :

CI/CD/CT Pipeline Engineering :

•Design, build, and own the multi-stage CI/CD/CT pipeline spanning embedded firmware, AAOS application layers, and cloud microservices.

•Integrate static analysis (SAST), software composition analysis (SCA), and dynamic security testing (DAST) as mandatory pipeline gates — zero-compromise on security-failed builds.

•Implement continuous testing strategies including hardware-in-the-loop (HIL) triggers, emulator-based regression, and API contract tests in the same pipeline.

•Maintain pipeline-as-code (Jenkinsfile / GitHub Actions YAML) with version-controlled stage definitions; eliminate snowflake pipeline configurations.

•Automate binary signing, checksum verification, and OTA package manifest generation as pipeline artefacts.

•Optimise build times through caching strategies, incremental compilation, and distributed build infrastructure on AWS (CodeBuild / self-hosted runners on EKS).

•Instrument pipeline telemetry — build duration, failure rates, security gate pass-rates — and publish dashboards for engineering leadership.

Secure Software Development & Python Tooling :

•Develop and maintain the internal Python SDK and CLI toolset used by platform engineers for security scanning, certificate provisioning, log analysis, and test automation.

•Write secure, production-grade Python: type-annotated, unit-tested, linted (ruff/mypy), packaged as internal PyPI artefacts, and gated by the same CI pipeline.

•Build automation scripts for certificate lifecycle management (CSR generation, CRL checking, rotation triggers) integrated with the platform PKI.

•Implement tooling for automated CVE triage: pull NVD/OSV feeds, correlate against the platform SBOM, and raise Jira issues with severity and affected component metadata.

•Develop internal dashboards and reporting tools (FastAPI backends, Streamlit or React frontends) surfacing security posture metrics to engineering leads.

•Maintain a shared internal tooling repository with contribution guidelines, changelogs, and semantic versioning — treat it as a product, not a script dump.

Performance,



Quality & Compliance :

• Maintain SBOM (CycloneDX / SPDX) generation as a first-class pipeline artefact for every release build.

- Track and report ASPICE for Cybersecurity process compliance for the DevSecOps work products; support internal and external assessments.
- Define and enforce secure coding standards across the platform (MISRA C for embedded, OWASP ASVS for web/API layers).
- Conduct periodic security regression cycles before major OTA release windows; sign off that no newly introduced CVEs remain open at severity High or above.

Desired Candidate Profile :

• B.E. / B.Tech in Computer Science, Electronics & Communication, Information Technology, or equivalent discipline.
- Certifications in cybersecurity (CISSP, CEH, OSCP, CompTIA Security) are desirable.

Experience :

• Experience required 2 to 4 years in DevSecOps, platform engineering, or automotive cybersecurity roles.
- Demonstrated hands-on ownership of CI/CD pipelines (Jenkins, GitLab CI, GitHub Actions) in a product-grade embedded or automotive environment.
- Proven experience conducting binary security assessments and/or penetration testing on embedded firmware or automotive ECU targets.
- Experience in the SDV / connected vehicle domain is strongly preferred; automotive Tier-1 or OEM background is an advantage.

Technical Expertise – DevSecOps & Pipeline Engineering :

• Strong expertise in CI/CD/CT toolchains: Jenkins (Declarative/Scripted), GitHub Actions, GitLab CI, ArgoCD.
- Hands-on experience with SAST tools (Coverity, Semgrep, CodeQL), SCA (Black Duck, OWASP Dependency-Check), and DAST (OWASP ZAP, Burp Suite).
- Proficiency in containerised build environments: Docker, Kubernetes/EKS, Helm; experience with Yocto SDK containers.
- Understanding of Infrastructure-as-Code: Terraform or AWS CDK for pipeline infrastructure.
- Experience generating and consuming SBOMs in CycloneDX or SPDX format.

Technical Expertise – Cybersecurity & Binary Analysis :

• Deep expertise in automotive cybersecurity standards: ISO/SAE 21434, UNECE R155/R156.
- Hands-on experience with binary analysis tools: Binwalk, Ghidra, objdump, checksec, strings, LIEF.
- Experience with fuzz testing frameworks: AFL++, libFuzzer, Boofuzz for protocol-level fuzzing.
- Strong understanding of TARA methodology (STRIDE, PASTA, Attack Tree) and ability to produce vehicle-level risk assessments.
- Knowledge of secure boot, HSM operations, PKI/certificate lifecycle, and mTLS implementation in constrained embedded environments.
- Familiarity with AUTOSAR SecOC, Ethernet SOME/IP security, and DoIP.

Technical Expertise – Python & Internal Tooling :

• Production-grade Python development: type annotations, pytest, async I/O,



packaging (pyproject.toml / Poetry), internal PyPI distribution.
- Experience building REST APIs (FastAPI / Flask) and CLI tools (Click / Typer) for internal developer productivity.
- Familiarity with NVD / OSV vulnerability feeds, CVE correlation, and SBOM-driven dependency risk tooling.

•Scripting experience in Bash and familiarity with Groovy (Jenkins DSL); ability to read and debug Makefile and CMake build systems.

Technical Expertise – Cloud & Connectivity Security :

• Understanding of AWS security services: IAM, KMS, ACM, WAF, Security Hub, GuardDuty, CloudTrail.

- Experience with OAuth 2.0 / OIDC, API Gateway hardening, and IoT device authentication (AWS IoT Core, X.509 mutual auth).
- Familiarity with MQTT / AMQP security hardening and vehicle-to-cloud TLS 1.3 session management.
- Exposure to SOC / SIEM integration (Splunk, Elastic, AWS Security Lake) for automotive security event forwarding.

- Tata Motors is an Equal Opportunity Employer, committed to a fair and transparent hiring process. All recruitment decisions are based strictly on Merit, Role alignment, and Business requirements. It does not solicit or accept any form of payment or gratuity from candidates at any stage of the recruitment process. Any such request received should be considered fraudulent and reported immediately.

About Tata Motors:

Part of the USD 180 billion Tata group, Tata Motors Limited (BSE: 500570; NSE: TATAMOTORS), a USD 52 billion organization, is a leading global automobile manufacturer of cars, utility vehicles, pick-ups, trucks, and buses, offering an extensive range of integrated, smart, and e-mobility solutions. With ‘Connecting Aspirations’ at the core of its brand promise, Tata Motors is India’s market leader in commercial vehicles and ranks among the top three in the passenger vehicles market.

Tata Motors strives to bring new products that captivate the imagination of GenNext customers, fuelled by state-of-the-art design and R&D; centres located in India, the UK, the US, Italy, and South Korea. By focusing on engineering and tech- enabled automotive solutions catering to the future of mobility, the company’s innovation efforts are focused on developing pioneering technologies that are both sustainable and suited to the evolving market and customer aspirations. The company is pioneering India's Electric Vehicle (EV) transition and driving the shift towards sustainable mobility solutions by developing a tailored product strategy, leveraging the synergy between Group companies and playing an active role in liaising with the Government of India in developing the policy framework.

With operations in India, UK, South Korea, Thailand and Indonesia, Tata Motors markets its vehicles in Africa, the Middle East, Latin America, Southeast Asia, and the SAARC countries. As of March 31, 2025, Tata Motors’ operations include 93 consolidated subsidiaries, two joint operations, four joint ventures, and numerous equity-accounted associates, including their subsidiaries, over which the company exercises significant influence.

📌 Senior Manager-Electrical & Electronics Engineering-PVBU Engineering-TMPV (Pune)
🏢 TataMotors
📍 Pune

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior manager-electrical & electronics engineering-pvbu engineering-tmpv (pune) / pune

Subscribe to this job alert:

Get the latest job offers by email for: senior manager-electrical & electronics engineering-pvbu engineering-tmpv (pune) / pune