This position will be responsible for the end-to-end security of all of our product lines. In this position, you will work with a wide range of technologies including network protocols, data communication protocols, embedded devices, web interfaces and cryptographic algorithms. This engineer will work to ensure that Emerson s products are developed and delivered securely.
In This Role, Your Responsibilities Will Be:
Ensure security of Branson products within the framework of industrial automation and control systems
Provide technical analysis of product vulnerabilities and articulate impact to end users
Complete essential cybersecurity elements of product development processes
Performing cybersecurity technical impact analysis of product changes
Support technical cybersecurity certification activities for Branson product lines
Ensure SDLC is followed for product development to maintain certification compliance
Produce and Maintain SDLC documentation as standards evolve
Co-ordinate security scans and penetration testing on products, Analyze results and ensure vulnerabilities are addressed
Shall identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the prodcuts
Lead threat modeling activities for Branson product lines
Co-ordinate with third-party certification labs like TUV to plan and implement certifications
Who you are:
You will Anticipates customer needs and provides services that are beyond customer expectations. You will Quickly and decisively takes action in fast-changing, unpredictable situations and Assumes responsibility for the outcomes of others.
For This Role, You Will Need:
Develop proof-of-concept prototypes to determine feasibility and risks of various security solutions
Liase with Emerson platform cybersecurity team to align on global critical initiatives, standard process guidelines and support internal audits
Staying up-to-date on the latest information technology (IT) and cybersecurity developments
US visa would be nice, since occasional travel to US may be required.
Other responsibilities or tasks that are within your skills and abilities, whenever reasonably instructed. The business reserves the right to make reasonable adjustments in line with business requirements. This job description is non-contractual and is for information and mutual understanding of both parties.
Preferred Qualifications that Set You Apart:
Engineering degree within software or computer science, or demonstrated knowledge at the same level
Four (4) or more years of experience working as a cybersecurity engineer, software developer, systems engineer, technical architect, or other related roles in area of embedded product secutity
Hands on experience in Threat and Risk Assessment
Good Understanding of Cybersecurity Governance
Good Understanding about IEC 62443 standard
Familiar with European Cyber Resilience Act (CRA)
Hands on Experience with Static code analysis tools such as Coverity
Any exposure to Azure DevOps/DevSecOps/Continuous Integration standard processes is advantageous
Experience in, or a desire to learn about cybersecurity
Self directed and motivated in a distributed team orientated environment