22 Sep
|
Harman International
|
Kalyani
22 Sep
Harman International
Kalyani
Job Summary
Introduction: A Career at HARMAN Automotive
We re a global, multi-disciplinary team that s putting the cutting-edge power of technology to work and transforming tomorrow. At HARMAN Automotive, we give you the keys to fast-track your career.
- Engineer audio systems and integrated technology platforms that augment the driving experience
- Combine ingenuity, in-depth research, and a spirit of collaboration with design and engineering excellence
- Advance in-vehicle infotainment, safety, efficiency, and enjoyment
Responsibilities
- Develop and maintain cybersecurity concepts, cybersecurity requirements, security architectures, interface specifications, and verification criteria for automotive products.
- Plan, facilitate, document, and maintain Threat Analysis and Risk Assessment activities, including asset identification, attack-path analysis, impact assessment, risk determination, cybersecurity goals, and risk-treatment decisions.
- Create, review, and maintain applicable ISO/SAE 21434 work products, ensuring bidirectional traceability between identified risks, cybersecurity goals, requirements, architecture decisions, implemented controls, verification evidence, and residual-risk decisions.
- Perform cybersecurity architecture reviews and provide actionable guidance to system, software, hardware, cloud, and validation teams.
- Define security controls for Android Automotive and Linux-based IVI systems, including secure boot, chain of trust, SELinux policy, application sandboxing, Trusted Execution Environment integration, Trusted Applications, key protection, and secure storage.
- Define and review cryptographic designs involving PKI, certificate and key lifecycle management, authentication, authorization, encryption, TLS/SSL, OpenSSL, JSSE, and secure communications.
- Define security controls for telematics and connected systems, including connectivity, diagnostics, vehicle-to-backend communication, OTA software updates, software authenticity, integrity validation, rollback protection, and secure update authorization.
- Support implementation of Cybersecurity Management System processes and product evidence needed for UNECE R155 compliance, cybersecurity audits, assessments, and Vehicle Type Approval activities.
- Support Software Update Management System processes and product evidence needed for UNECE R156 compliance, including software update governance, update traceability, integrity and authenticity controls, compatibility assessment, and update verification evidence.
- Contribute to cybersecurity case development by consolidating requirements, analyses, architecture decisions, test results, vulnerability information, open risks, assumptions, deviations, and residual-risk acceptance evidence.
- Support cybersecurity planning, cybersecurity interface agreements, supplier cybersecurity reviews, distributed-development coordination, and review of supplier-provided cybersecurity evidence.
- Define cybersecurity verification and validation strategies, including security requirements testing, robustness testing, vulnerability scanning, fuzz testing, penetration-testing support, and remediation verification.
- Assess vulnerabilities and coordinate their treatment through triage, applicability analysis, risk evaluation, remediation planning, security patch integration, verification, disclosure coordination, and post-production monitoring.
- Support incident-response readiness and product cybersecurity monitoring by defining logging, detection, escalation, investigation, containment, and evidence-retention expectations.
- Review backend and API security controls, including identity and access management, authentication, authorization, encryption, secrets management, secure API design, logging, monitoring, and cloud security fundamentals.
- Support alignment between automotive product cybersecurity activities and relevant ISO/IEC 27001 controls where product, development, operational, or backend environments intersect with the organizational information security management system.
- Prepare and present cybersecurity status, risks, assumptions, compliance gaps, remediation plans, and technical decisions to engineering and program stakeholders.
- Support internal and external cybersecurity assessments by providing objective evidence, responding to findings, and tracking corrective actions to closure.
- Promote security-by-design practices, reusable security patterns, secure engineering guidance, and lessons learned across automotive development teams.
What You Need to Be Successful
- Bachelor s degree in computer science, cybersecurity, electrical engineering, software engineering, telecommunications, or a related technical discipline.
- Professional experience in automotive cybersecurity, embedded security, product security, or security architecture. The required number of years is to be confirmed.
- Hands-on experience applying ISO/SAE 21434 within an automotive product lifecycle and producing or reviewing cybersecurity engineering work products.
- Practical experience conducting and documenting TARA activities and deriving cybersecurity goals, claims, requirements, and risk-treatment measures.
- Working knowledge of UNECE R155, CSMS expectations, audit evidence, and cybersecurity contributions to Vehicle Type Approval.
- Working knowledge of UNECE R156, SUMS expectations, and security considerations for automotive software update and OTA processes.
- Experience developing or reviewing cybersecurity concepts, system security architectures, cybersecurity requirements, design decisions, interface controls, and verification strategies.
- Strong understanding of embedded and connected-system security.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Architect - Cybersecurity (Kalyani)
🏢 Harman International
📍 Kalyani