Skip to main content
Filter
#SA-ARG

Security Architect

location Poland,romania working time Full-time remote Remote

About the job

Argus consulting activities, including supporting OEMs and Tier 1s in building up and executing their cybersecurity processes, risk management, and security concepts. Activities include analyzing future designs, use cases, and architectures and identifying potential
security gaps, and suggesting appropriate solutions. Dive into the details of embedded system design, automotive networks, and architectures as well as operating system security in order to design cost-effective security strategies and implementations.

In your work, you’ll be part of a team that consults OEM’s and Tier#1 on how to raise the level of their cyber security. During this consultancy, you will be required to:

  • Perform Threat Analysis and risk assessment – TARA, mostly according to ISO-21434. Work with threat modeling tools and more.
  • Create and write security requirements.
  • Support organizations on their journey for compliance
  • Be part of a highly professional group.

Responsibilities

  • Review and analyze complex automotive systems – in-vehicle networks and components, embedded systems, OTA update systems, and more.
  • Review and analyze automotive communication protocols, security regulations and standards.
  • Track and analyze cybersecurity trends, and emerging technologies.
  • Perform security threat analysis and risk assessments, develop security concepts and security requirements for automotive systems and networks.
  • Design secure architectures and security controls.
  • Consult, present and work with OEMs and Tier-1 R&D teams on various security projects.
  • Create processes and procedures to support regulation; ISO-21434, UNR-155.

Requirements

  • Knowledge of communication protocols.
  • Knowledge of cryptographic algorithms and secure protocols.
  • Experience with analyzing complex systems from a cybersecurity perspective.
  • Familiarity with regulation processes.
  • Experience with threat analysis and risk assessment.
  • Excellent written and verbal communication in English
  • High self-learning abilities and a “get-things-done” attitude.

Advantages

  • Experience with embedded systems, from both an HW and SW perspective, including topics like microcontrollers, HSMs, secure boot, access control, exploit mitigation techniques, ect.
  • Knowledge and experience in the following standards/methods:
  • ISO 21434, UNECE R155, JASPAR
  • A-SPICE
  • Cyber Security Management Systems (CSMS) and related processes, e.g. ISO/IEC 27000:2018
  • Risk Management Frameworks, e.g. ISO 31000, NIST Cybersecurity Framework, NIST SP 800-30 Risk Management Guidelines
  • Experience in Audit methodologies – auditor/assessor credentials is a plus

What we can offer

• Additional 20 days of paid leave
• Remote work and flexible working hours
• Professional and career benefits
• Top-quality work environment
• Online courses
• Online sports activities
• Team Buildings and Christmas Parties

If you are looking for stability, professional growth, long-term career, and technology challenges in the sought-after companies – come and join us today! One last thing, if you have a lot of these skills, but not all of them, please still apply. We love to teach those who are willing to learn.

19 hours ago