Key Responsibilities
- Ensure products comply with IEC 62443, EN 18031 (EU RED), and EU-CRA requirements.
Define and roll out secure-by-design practices across firmware, hardware, wireless, and cloud integrations.
Run threat modelling, risk assessments, and security architecture reviews for current and existing products.
Plan and carry out penetration testing and vulnerability assessments on embedded and OT systems.
Build security into the product lifecycle, including secure development, vulnerability management, and patching.
Work with firmware, hardware, cloud, and product teams in an agile setup, from concept to release.
Support certification and compliance audits, and prepare the required security documentation.
Contribute to research and technology innovation initiatives.
Build, lead, and mentor the product security team.
Required Skills
- IEC 62443, EN 18031, EU-CRA, EU RED
Secure-by-design, embedded and IoT security
OT protocols: Modbus, DNP3, OPC, Profinet
OT systems: PLC, DCS, RTU, SCADA
Firmware, hardware, and wireless interface security
Team leadership and team building
Valuable to Have
- Threat modelling (STRIDE or similar)
Penetration testing with OpenVAS and Metasploit
IEC 62443 or CISSP certification
📌 Sr Product Security Engineer Pune
🏢 BTPL
📍 Pune