Live opening · Posted 4 days ago

Cyber Security Engineer

GlobalLogic · Bengaluru, Karnataka, India (Hybrid)
Linkedin No
You are 4 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 4 days ago
CompanyGlobalLogic
LocationBengaluru, Karnataka, India (Hybrid)
Work modeNo
SourceLinkedin
Listed4 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
9 min from Linkedin publishing this role to us finding it
1 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
16,065 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Mission Statement:
We are looking for a skilled and motivated engineer to join our team of R&D Engineers. A person interested in the field of product cyber security and contribute towards global R&D projects.
Your Responsibilities:
Ensure products are meeting Hitachi Energy minimum cyber security requirements or if customer specific or respective standards such as IEC 62443-3-3 or IEC 62443-4-2  Own, enforce, and continuously improve the security development lifecycle process according to IEC 62443-4-1 standard.
Prepare and conduct review to ensure compliance to the SDLC as well as security architecture and design as part of product requirement engineering and customer solution development phases.
Prepare security architecture and design documents in response to requirements specifications, develop associated user stories, and drive them through product development lifecycle.
Translation of Cyber Requirements from Standards, Design aspects and implement within the Product capability during SDLC (RBAC setup, User GPO, Syslog , Secure Protocols etc.)
Own risk identification activities for the product, ensuring the appropriate use of Cyber Security tools and alignment with EU CRA requirements.
Driving Secure Development Lifecycle process compliance in product.
Interface between product team and other functions like Platform Teams and extended stakeholders.
Conduct and document threat modeling and attack surface analysis for product releases.
Cyber security implementation activities (e.g., whitelisting, hardening, secure configuration and management of network switches and firewalls etc.)
Develop, implement, and configure security controls and solutions (e.g., Routers, Gateways, L3 and L7firewalls) concluded with respective quality assurance and user acceptance testing activities.
Implement solutions and develop test cases for Cyber foundational and system requirements adhering IEC 62443 3-3 and 4-2 eg., Data protection solutions (System Integrity and Data Confidentiality etc.)
Conduct security risk assessments and drive the product releases through Hitachi Energy cyber security clearance process and respective tests in close collaboration with Hitachi Energy product security officers and security assurance team requirements.
Accountable for release clearance of product and support evidences to augment release qualification.
Driving the vulnerability process within the product team aligning to EU-CRA requirements.
Deploy and work security solutions for internal / external customer projects in on-premises and / or off premises models.
Function as L3/L4 support team member for security incident (e.g., vulnerabilities) management process.
Engage with internal / external software development vendors.
Living Hitachi Energy’s core values of safety and integrity, which means taking responsibility for your own actions while caring for your colleagues and the business.
Your background: Qualification & Experience:
Bachelor’s engineering degree in electronics or computer science.
At least 8-10 years of experience in cyber security related to industrial control system design and software development, preferably in power industry.
Specific skills and Knowledge:
Strong Knowledge of Industrial control system, SCADA Systems, Communication Gateways, Network architecture, System administration, Infrastructure (servers, workstation, switches, routers, firewalls) configuration, troubleshooting, and root cause analysis.
Experience in the domain of security of the communication in industries and systems according to the standards IEC 62443 cyber security standard, EU CRA guidelines, and best practices for building highly resilient hardened software systems (e.g., NIST, CIS, and OWASP).
Experience with industrial data transfer protocols such as Modbus, DNP3, IEC101/104, IEC 61850 and OPC UA and similar is an advantage.
Experience in agile security development lifecycle processes and software development processes.
Experience with static code analysis, open-source software scanning, software composition analysis would be an advantage.
Ability to work independently with a sense of ownership and responsibility.
A self-motivated, structured and results-oriented approach, with good time management skills and a drive to succeed.  Fluency in written and spoken as well as technical writing English.
Communication and interpersonal skills and intercultural sensitivity.

Work arrangement
No

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App