Purpose of the Role Tata Motors is pioneering connected car technology. There are many features launched in the field and new features are under workout. As part of this technology delivery, ensuring the cyber security of the end-to-end system is very important. Cybersecurity implementation scope spans from reviewing the system design, creating threat models, doing threat analysis and risk assessment (TARA) and up to performing real attack scenarios. Job Responsibility Analyse connected car system functions, do threat modelling and create cyber security concepts. Preparation of Threat and Risk Analysis (TARA) for all features/vehicle level vulnerable devices like infotainment, telematics etc Follow cyber security engineering process as per ISO21434 Focusing on security analysis and validation. Create cyber security concepts based on TARA and state-of-the-art cyber security implementations. Derive requirements for cryptographic hardware modules like Hardware Security Modules, Secure Elements, etc. Review and enhance certificate/root-of-trust management workflows in line with edge devices. Also, support in implementing KMS/PKI (Key Management Server / Public Key Infrastructure) Validation of the cyber security requirements for connected features, telematics unit and other ECUs of the vehicle Analysis of the risks involved in the CAN communication and mitigation for the same Interfacing with the stakeholders, coordination, issue/conflict resolution amongst stakeholders including vendors Vendor management cyber in terms of security requirement definition and analysis, interactions with ECU vendors to review the TARA of the respective ECUs Interaction with the IT security team for defining the relevant security requirements, certificate flashing flow definition etc Validation of the cyber security requirements for connected features, telematics unit and other ECUs of the vehicle Co-ordinate with 3rd party testing supplier for testing and validation Review 3rd party component cybersecurity documents and align on the security goals. Verify vendor security testing reports and ensure compliance " Desired Candidate Profile BE, Btech - Cybersecurity/Electronics/Electrical + ME/Mtech in Cyber Security (Preferred) Minimum Yrs of Experience: Minimum of 4 years of experience in the cyber security/automotive electronics domain + 2 years in automotive cyber security Primarily Skill Preferred certification in cybersecurity / ethical hacking Able to prepare Threat model, system functional analysis, TARA of ECUs and features Deep understanding of cyber security fundamentals and cryptographic primitive Able to work on ethical hacking tools like Kali Linux, NMAP, Wireshark, etc. Able to set up security and vulnerability test setups and perform white/grey/black box testing Able to operate CAN dbcs for security signal definition and analysis Able to analyse and define the requirements for the bench and vehicle level test setups related to security requirement validation Exposure to international standards like UNECE R155 & R156 etc." Secondary Skills Overview of connected car features and architecture, validation techniques Understanding of cyber security requirements for ECUs interaction related to vulnerable features Knowhow Of IoT Eco-systems And Security Awareness of global cyber threats and intelligence cases - Specifically related to automotive technologies Awareness V-cycle, FMEA process, test case writing, etc.,
Employement Category:
Employement Type: Full timeIndustry: Automobile / Auto AncillariesRole Category: Not SpecifiedFunctional Area: Not SpecifiedRole/Responsibilies: Senior Manager - Software Integration (Cross)
Contact Details:
Company: Tata MotorsLocation(s): Other Maharashtra