
Senior Vehicle Systems and Software Security Engineer
- Columbia, SC Novi, MI
- $160,000-192,500 per year
- Permanent
- Full-time
- Work with stakeholders, including designers, vehicle and software engineering teams, Information Technology (IT) architects, and business units to understand product requirements and develop security strategies that meet their needs.
- Lead threat modeling and risk assessments to identify potential security threats and vulnerabilities in vehicle software, systems and architecture.
- Work with vehicle engineers to assess and govern security measures that ensure the safety and availability of connected vehicle systems.
- Provide guidance to enterprise IT teams to design and develop secure information systems, networks, and applications, ensuring alignment and integration with vehicle security and capabilities, and regulatory requirements.
- Serve as a subject matter expert in cloud-native security to support the integration of security controls into IaaS - specifically AWS and Azure - and other cross-functional capabilities.
- Define security requirements based on industry best practices and regulatory compliance and recommend appropriate security technologies and solutions.
- Conduct regression testing to ensure completeness and efficacy of security controls and configurations.
- Conduct risk assessments to identify potential security vulnerabilities and develop mitigation strategies.
- Establish, automate and enforce security policies, standards, guidelines, and procedures.
- Lead security reviews and security assurance program to ensure controls are configured and operating appropriately.
- Provide technical guidance and support to IT and Vehicle Engineering teams regarding security-related issues and initiatives.
- Bachelor's degree in Computer Science, Management Information Systems, Information Security, or a related field (advanced degree preferred).
- 8+ years of relevant work experience in designing and implementing security solutions in complex enterprises and product environments.
- 5+ years cloud development and security experience, some experience in connected vehicle software systems is preferred.
- Experience working with product security operations centers is required - vehicle security operations centers is preferred.
- In-depth knowledge of security principles, best practices, technologies, and frameworks in the domain of DevSecOps, product security, cloud security, and threat modeling.
- Strong understanding of network and system security, including firewalls, intrusion detection systems, and encryption technologies.
- Proficiency in security assessment and auditing tools and methodologies.
- Familiarity with industry standards and regulations, such as ISO 27001, ISO 24134, NIST, TISAX, GDPR, or HIPAA.
- Excellent problem-solving skills and the ability to analyze complex security issues and develop effective solutions.
- Strong communication and collaboration skills to work effectively with cross-functional teams.
- Relevant certifications, such as CISSP and CISM, are highly desirable.
- Competitive insurance including:
- Medical, dental, vision and income protection plans
- 401(k) program with:
- An employer match and immediate vesting
- Generous Paid Time Off including:
- 20 days planned PTO, as accrued
- 40 hours of unplanned PTO and 14 company or floating holidays, annually
- Up to 16 weeks of paid parental leave for biological and adoptive parents of all genders
- Paid leave for circumstances related to bereavement, jury duty, voting time, or military leave
- Residing in San Francisco: Pursuant to the San Francisco Fair Chance Ordinance, Scout Motors will consider for employment qualified applicants with arrest and conviction records.
- Residing in Los Angeles: Scout Motors will consider for employment qualified applicants with criminal histories in a manner consistent with the Los Angeles Fair Chance Initiative for Hiring Ordinance.
- Residing in New York City: This role is not eligible for remote work in New York City.