Cybersecurity Engineer
Description
We are now looking for an experienced Cybersecurity Engineer to support our customer in a critical product development environment. In this role, you will be integrated into both the Cybersecurity Department and Product Development teams, playing a key part in ensuring that cybersecurity requirements are fully implemented throughout the electronic product development lifecycle.
About the Assignment As a Cybersecurity Engineer, you will organize and manage cybersecurity activities from concept through delivery. You will work closely with technical design teams, suppliers, and stakeholders to ensure that cybersecurity objectives, regulations, and best practices are met. Your contributions will be essential in securing complex systems and supporting the customer’s compliance with relevant cybersecurity standards.
Responsibilities In this role, you will be responsible for:
- Analyzing security needs, including laws and local regulations, and defining security objectives and key risk strategies.
- Planning cybersecurity activities within the development lifecycle, including estimations of cost and timelines.
- Delivering key cybersecurity artefacts such as:
Product threat models Vulnerability analyses Security requirements cascaded to suppliers Third-party risk management Secure development principles Cybersecurity operating procedures Conducting security testing and evaluating the cybersecurity level of developed products. Providing cybersecurity expertise during technical design meetings. Managing vulnerabilities, cybersecurity issues, and action plans. Contributing to audits to ensure compliance with cybersecurity standards.
Requirements To succeed in this assignment, you should have:
- A university or engineering degree in embedded systems, telecommunications, or cybersecurity.
- Minimum 5 years of experience within Railway Signalling.
- Knowledge of architecture concepts for systems and networks, operating systems, and relevant programming languages.
- Understanding of techniques for evaluating system security.
- A dynamic and autonomous working style, with creativity and the ability to operate in complex environments.
- Knowledge of cybersecurity standards and regulations such as CRA, IEC 62443, NIST, and NIS, or experience with cybersecurity risk analysis methods (considered a plus).
Additional Information Location: On-site in Västerås Start date: 16 January Duration: 12 months Type: Full-time consultant assignment
CV in English