Cybersecurity Pen Test Engineer
Job Description
AXISCADES is a leading, end to end engineering solutions and product company. We bring expertise that caters to the digital, engineering, and smart manufacturing needs of large enterprises. With decades of experience in creating innovative, sustainable, and safer products worldwide, AXISCADES delivers business value across the entire engineering life cycle.
\nOur deep domain expertise and engineering solution portfolio covers the complete product development life cycle from concept evaluation to manufacturing support and certification for the aerospace, defence and advanced manufacturing sectors.
\nAXISCADES is headquartered in Bangalore and has offices across India, North America, Europe and the Asia Pacific region. URL: https://www.axiscades.com
\n\n
Job Description:
\nRole: Cybersecurity Pen Test Engineer
\nLocation: West Midlands, England, UK
\nEmployment Type: Fulltime Permanent with AXISCADES.
\nExperience Level: 8 to 10 years.
\nJob Duties:
\nManage the delivery of penetration test activities as per CSMS (ISO 21434) according to scope, time, budget and quality and build/ review Vulnerability reports.
\nCreate penetration test scopes and plans for ECUs, systems and vehicles and review pen test reports for ECUs, systems and vehicles.
\nAssess Cyber Security Penetration test scopes and plans for customer products and run penetration test as per penetration test scope for ECUs, systems and vehicles.
\nManage and lead external penetration test suppliers and their activities and maintain and develop pen test scripts and tools for pen test and fuzz test.
\nSupport external penetration test activities for ECUs, systems and vehicles, support Vulnerabilities resolution and VSOC by demonstrating vulnerabilities, attacks, PoCs and support the sign off of the Pen test relevant artefact and type approval activities.
\n\n
Skills Required:
\nYou will have knowledge of any scripting language, including Python, CAPL and others; knowledge of TARA, security concepts and other Cyber security artefacts mentioned in ISO 21434 and of Cyber Security technologies used to protect embedded systems.
\nKnowledge of, at least two or more of the automotive technologies: in-vehicle networks, safety critical embedded software and hardware, low-level debug interfaces for embedded hardware, complex onboard computers, vehicle connectivity, etc.
\nExperience in different diagnostic layers such as SOUP layers, Ethernet, VLANS.
\nExperience in developing tools to exploit vulnerabilities other than CANoe to perform replay attacks and change random values.
\n“We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status".
