Sr. Product Cybersecurity Engineer- Open to Remote
Novi, United States
Polaris Inc.
At Polaris Inc., we have fun doing what we love by driving change and innovation. We empower employees to take on challenging assignments and roles with an elevated level of responsibility in our agile working environment. Our people make us who we are, and we create incredible products and experiences that empower us to THINK OUTSIDE.
JOB SUMMARY:
Polaris, a global powersports leader, is looking for a Sr. Product Cybersecurity Engineer for connected vehicles. The Polaris team builds world-class connected vehicle solutions for motorcycles and off-road vehicles. As a Sr. Product Cybersecurity Engineer, you will be responsible for developing cybersecurity requirements, designing in-vehicle cybersecurity architecture, securing vehicle connectivity interfaces, reviewing and evaluating suppliers’ and technology vendors’ cybersecurity solutions, conducting threat analysis and risk assessment, managing key management system and public key infrastructure, and contributing to the development of further product cybersecurity strategies and technology roadmap. Interest in powersports is a plus!
ESSENTIAL DUTIES & RESPONSIBILITIES
·Cybersecurity Strategy: Support the Chief Cybersecurity Engineer in developing, communicating, and implementing the enterprise-wide connected vehicles cybersecurity strategy and roadmap.
·Stakeholder Guidance: Provide guidance to stakeholders (product owners, development teams, system engineers) on security concerns and recommended controls.
·Threat Analysis: Execute threat analysis and risk assessment (TARA) on vehicle, feature, system, and component levels. Mitigate identified risks by defining appropriate cybersecurity controls.
·Requirements Development: Develop, refine, and review cybersecurity requirements. Gain approval from the Chief Cybersecurity Engineer.
·Design Reviews: Perform design reviews of internal and external cybersecurity solutions. Mitigate cybersecurity weaknesses or vulnerabilities throughout the product lifecycle.
·Architecture Development: Define connected vehicle architecture and secure vehicle connectivity (e.g., vehicle-to-back-office communication, wireless communication protocols used on vehicles such as cellular, Wi-Fi, and Bluetooth).
·Key Management: Manage and provide guidance on key management systems (KMS) and internal use of PKI. Support supplier usage of the PKI system and collaborate with the KMS vendor to resolve issues quickly.
·Collaboration: Collaborate with the Ride Command team to ensure robust cybersecurity across product, app, web, and cloud ecosystems.
·Compliance: Support institutionalization of ISO/SAE 21434 processes and produce compliant work products. Ensure regulatory compliance (e.g., UNR 155, CRA, Radio Equipment Directive).
·Cybersecurity Culture: Promote cybersecurity culture by providing regular training to team members.
SKILLS & KNOWLEDGE
Minimum Qualifications:
Bachelor’s degree in computer science, computer engineering, software engineering, electrical engineering, or other relevant domains
·3-5 years of experience in automotive cybersecurity, embedded system security, IoT security, cyber-physical system security, or a combination of these areas
·Experience with securing wireless communication protocols, e.g., cellular, Wi-Fi, Bluetooth, BLE, satellite communications, RF, etc.
·Experience with setting up and managing KMS, PKI, CA, certificate/key generation, distribution, storage, renewal, revocation, etc.
·Experience with conducting threat analysis and risk assessment
·Experience with developing cybersecurity goals and requirement specifications
·Experience with SELinux, App Armor, Hypervisor, TEE, HSM, etc.
·A self-starter with minimum supervision
·Excellent written and verbal communication skills
Preferred Qualifications:
· Advanced degree in cybersecurity
·Experience with symmetric and asymmetric cryptography, digital signature, hash, message authentication, encryption, key exchange
·Experience with developing telematics, infotainment, or other connected ECUs
·Experience with implementing and executing ISO/SAE 21434 processes
·Experience with CAN, CAN-FD, J1939, Ethernet, USB, SPI, UART, JTAG, etc.
·Understanding of embedded RTOS and Linux based operating systems
#LI-CS99 #Remote
To qualify for this position, former employees must be eligible for rehire, and current employees must be in good standing.
We are an ambitious, resourceful, and driven workforce, which empowers us to THINK OUTSIDE. Apply today!
At Polaris we put our employees first, by offering a holistic approach to their health and financial wellbeing. Polaris is proud to offer competitive compensation, including a market-leading profit-sharing plan that is fundamental to our pay-for-performance culture. At Polaris, employees are owners of the company through company contributions to our Employee Stock Ownership Plan and discounted employee stock purchases plan. Employees receive a generous matching contribution to 401(k), financial wellness education and consultation to plan for their financial future. In addition to competitive pay, Polaris provides a comprehensive suite of benefits, including health, dental, and vision insurance, wellness programs, paid time off, gym & personal training reimbursement, life insurance and disability offerings. Through the Polaris Foundation and our Polaris Gives paid volunteer time off, we support employees who actively volunteer their time, efforts, and passions to improve the health and wellbeing of the communities in which they live, play and work. Employees at Polaris drive our success and are rewarded for their commitment.
About Polaris
As the global leader in powersports, Polaris Inc. (NYSE: PII) pioneers product breakthroughs and enriching experiences and services that have invited people to discover the joy of being outdoors since our founding in 1954. Polaris' high-quality product line-up includes the Polaris RANGER®, RZR® and Polaris GENERAL™ side-by-side off-road vehicles; Sportsman® all-terrain off-road vehicles; military and commercial off-road vehicles; snowmobiles; Indian Motorcycle® mid-size and heavyweight motorcycles; Slingshot® moto-roadsters; Aixam quadricycles; Goupil electric vehicles; and pontoon and deck boats, including industry-leading Bennington pontoons. Polaris enhances the riding experience with a robust portfolio of parts, garments, and accessories. Proudly headquartered in Minnesota, Polaris serves more than 100 countries across the globe. www.polaris.com
EEO Statement
Polaris Inc. is an Equal Opportunity Employer and will make all employment-related decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, national origin, age, disability, marital status, familial status, status with regard to public assistance, membership or activity in a local commission, protected veteran status, or any other status protected by applicable law. Applicants with a disability that are in need of an accommodation to complete the application process, or otherwise need assistance or an accommodation in the recruiting process, should contact Human Resources at 800-765-2747 or Talent.Acquisition@Polaris.com. To read more about employment discrimination protection under U.S. federal law, see: Know Your Rights: Workplace Discrimination is Illegal (eeoc.gov).
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Cloud Compliance Computer Science Cryptography Encryption Ethernet IoT ISO/SAE 21434 Linux PKI Risk assessment RTOS Strategy Vulnerabilities
Perks/benefits: Competitive pay Equity / stock options Fitness / gym Flex vacation Health care Insurance Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.