Hyvinkää, Finland
7 hours ago
Security Test Engineer

The KONE Technology and Innovation (KTI) function is where the magic happens at KONE. It's where we combine the physical world – escalators and elevators – with smart and connected digital systems. We are changing and improving the way billions of people move within buildings every day.

Within the KONE Technology & Innovation function, we have a dedicated Cybersecurity unit for assuring the security of KONE enterprise, product, and industrial assets.

Our solutions encompass everything from embedded elevator controller systems to cloud services and mobile applications for end users, leveraging the latest in cloud and IoT technologies. We currently hold certifications such as ISO 27001, IEC 62443-4-1, and UK Cyber Essentials Plus—and we're just getting started! We aim to further develop and refine our cybersecurity processes, practices, and tools.

We are now looking for a


Security Test Engineer

to join our team of Cybersecurity professionals!

Are you an experienced product security professional and enthusiastic to improve security of solutions used each day globally to ensure smooth people flow? Our IoT security team, within the wider KONE Technology & Innovation unit and KONE Cybersecurity, is working on protecting the physical world – escalators and elevators – as well as their integration with smart and connected digital systems on the cloud. We are now looking for a new team member to join our global team of professionals.

In this role, you get to:

Test and assess security of KONE products.Work hand-in-hand with development teams to support the secure design & technical implementation of the solutions based on your findings.Ensure our products meets the standard and regulatory requirements according to the IEC 62443-4-1 Security verification and validation testing practice.

Who/what are we looking for?                                                            

Relevant working experience on security of embedded and/or IoT systems, including reporting vulnerabilities.Practical experience with threat modeling as well as vulnerability assessment and penetration testing throughout the product lifecycle.Practical experience with security testing tools (in addition to pen testing tools preferably also SAST, DAST, software composition analysis, reverse engineering, fuzzing, etc.).Coding/scripting and code review skills in at least one language (C/C++, Java, Python) would be preferred.Excellent communication skills in English, both written and oral, needed to bring visibility to your findings and their security impact.Good problem-solving skills, service focused approach and positive attitude towards goals.


You would love this job if you have experience in some of the following and want to learn the rest:

HW security mechanisms in IoT or mobile devices (such as protecting secrets).Cryptography and its applications (signing, encryption, PKI).Applying cybersecurity standards (IEC 62443-4-1 SVV-1, SVV-2, and SVV-4 preferred).


Why to join KONE’s cybersecurity team?  

We at KONE’s cybersecurity team are at an interesting point currently. Our focus has been on modernizing enterprise cybersecurity to limit risks with day-to-day operations but at the same time, we are building our industrial and product cybersecurity. KONE is on a digitalization journey and our elevators are transforming from a steel box on the end of a rope into central platforms of smart buildings. We are bringing totally new kinds of innovative solutions to the market to enable even smarter people flow. As our offering becomes more digital, excellent cybersecurity plays a crucial role in building customer trust.  

This position is located in Hyvinkää, Finland. While remote working is supported, minimum 2-3 days per week at the Hyvinkää lab is required.

For further information, please contact Mika Katara, mika.katara@kone.com. We will be reviewing applications on an ongoing basis, so we would like to hear from you as soon as possible.

Want to join the #PeopleFlow?

If you are interested in this opportunity, please apply via our careers site www.kone.com/jobs with your CV and cover letter latest by 28th of January, 2025.

We look forward to hearing from you!

Buzzwords: IoT & embedded security, pen testing, test management, secure development lifecycle

#LI-IT

#LI-Hybrid

At KONE, we are focused on creating an innovative and collaborative working culture where we value the contribution of each individual. Employee engagement is a key focus area for us and we encourage participation and the sharing of information and ideas. Sustainability is an integral part of our culture and the daily practice. We follow ethical business practices and we seek to develop a culture of working together where co-workers trust and respect each other and good performance is recognized. In being a great place to work, we are proud to offer a range of experiences and opportunities that will help you to achieve your career and personal goals and enable you to live a healthy and balanced life.

Read more on www.kone.com/careers

Confirm your E-mail: Send Email