Key Responsibilities
- - Ensure products comply with IEC 62443, EN 18031 (EU RED), and EU-CRA requirements.
- Define and roll out secure-by-design practices across firmware, hardware, wireless, and cloud integrations.
- Run threat modelling, risk assessments, and security architecture reviews for current and existing products.
- Plan and carry out penetration testing and vulnerability assessments on embedded and OT systems.
- Build security into the product lifecycle, including secure development, vulnerability management, and patching.
- Work with firmware, hardware, cloud, and product teams in an agile setup, from concept to release.
- Support certification and compliance audits, and prepare the required security documentation.
- Contribute to research and technology innovation initiatives.
- Build, lead, and mentor the product security team.
Required Skills
- - IEC 62443, EN 18031, EU-CRA, EU RED
- Secure-by-design, embedded and IoT security
- OT protocols: Modbus, DNP3, OPC, Profinet
- OT systems: PLC, DCS, RTU, SCADA
- Firmware, hardware, and wireless interface security
- Team leadership and team building
Good to Have
- - Threat modelling (STRIDE or similar)
- Penetration testing with OpenVAS and Metasploit
- IEC 62443 or CISSP certification
📌 Sr Product Security Engineer (Pune)
🏢 BTPL
📍 Pune