As a Security Architect, you will lead the development of end-to-end cybersecurity solutions for next-generation automotive platforms. Your work will span from concept through decommissioning, ensuring systems meet rigorous international standards including ISO/SAE 21434 and UN regulations R155 and R156.
Key Responsibilities
- Design and deploy cybersecurity architectures aligned with ISO/SAE 21434 and UN R155 Cybersecurity Management System (CSMS) requirements across all phases of the vehicle lifecycle
- Build Software Update Management Systems (SUMS) compliant with UN R156, incorporating secure over-the-air updates, cryptographic validation, and version control for electronic control units
- Perform threat analysis and risk assessments (TARA) following ISO 21434 guidelines, addressing known attack vectors outlined in regulatory frameworks
- Implement hardware-based security features such as secure boot processes, hardware security modules (HSM), and trusted execution environments (TEE) within automotive system-on-chips
- Collaborate with component suppliers to verify compliance with supply chain security standards and post-production obligations
- Define security requirements for AI and machine learning systems used in autonomous driving, focusing on model integrity and resilience against adversarial inputs
Qualifications
You should have at least seven years of experience securing embedded automotive systems, with deep technical knowledge in vehicle communication protocols, cryptographic engineering, and low-level systems programming.
- Proficiency in securing CAN bus and Ethernet networks, including intrusion detection for SOME/IP traffic
- Experience optimizing cryptographic algorithms like ECC for constrained environments and exploring post-quantum cryptography implementations
- Hands-on familiarity with automotive development and debugging tools such as JTAG, UART, Trace32, Vector CANoe, and Wireshark
- Strong coding skills in C, C++, and Rust for bare-metal and RTOS platforms, particularly in secure OTA update systems
- Background in real-time intrusion detection, threat modeling, and security reviews for safety-critical software
- Experience mentoring engineers in secure coding and leading security initiatives across complex architectures
- Familiarity with AUTOSAR Classic and Adaptive security frameworks and diagnostic protocols like UDS
Preferred Experience
- Contributions to open-source automotive security tools or research
- Work on sensor security for autonomous vehicles, including defenses against LiDAR or camera spoofing
- Hardware security evaluation techniques such as fault injection or side-channel analysis
- Development of custom penetration testing setups for vehicle networks
- Publications or presentations on automotive vulnerabilities or CVEs
- Experience with HSM integration, secure boot chains, and firmware reverse engineering on platforms like QNX or AUTOSAR
- Knowledge of CI/CD pipelines for ECU software with software bill of materials (SBOM) generation
- Hands-on work with Hardware-in-the-Loop (HIL) testing environments