Cyber Security Advisor
位置:
上海 (上海), 中国
类别:
技术
Req ID:
008FYS
工作描述
Cybersecurity Advisor – Connected Product
Job Description
The Cybersecurity Advisor supports the development of products and systems that are resilient against cyberattack. They manage risk and advise R&D teams. Digital Power is looking for a Cybersecurity Advisor, focused on protection relay offers, to be part of the Global Cybersecurity Chapter
What do you get to do in this position?
- Deploy Schneider’s SDL (Secure Development Lifecycle)
- Act as an expert facilitator on practices such as secure design, threat modeling, and vulnerability management
- Act as a point of contact for cybersecurity issues for a portfolio of offers
- Support product owners in specifying security requirements and bring expert knowledge of relevant CS standards and regulations
- Identify and communicate cybersecurity risks
- Support product teams with security best practices for design, automation, and tool selection
- Evaluate threats and vulnerabilities on offers
- Lead and coordinate cybersecurity-related initiates within the line of business
- Bring new approaches that make us more efficient and effective
- Support site, team, and offer cybersecurity certifications
- Form a network of experts inside and outside the line of business to engage as necessary on technical reviews, risk management and customer topics
Qualifications
- Degree in engineering, computer science, information systems, or equivalent experience
- Experience deploying secure development lifecycle practices to R&D teams
- Experience leading working groups and facilitating change
- Familiarity with data privacy concerns
- Experience with CI/CD and DevSecOps
- Demonstrated competence in vulnerability management and risk-based decision making
- Proficiency at communicating appropriately to different groups including customers and business stakeholders
- Technical background to understand PC, mobile, cloud, and embedded product architecture, communication protocols, and networking equipment
Desired
- Able to operate cybersecurity-related tools
- Experience with SE connected product offers (Relay, Meter, RTU)
- Product and system cybersecurity architecture design and review experience
- CSSLP Certification for secure lifecycle
- Other cybersecurity technical and management certifications
- Experience in Schneider Electric Digital Offer Certification Process
- Experience in SOC-2 / ISO 27001 / IEC-623433-4-X audits
时间表: 全职
请求编号: 008FYS