Warszawa, Województwo mazowieckie, Poland
4 days ago
Senior Cyber Security OT/IoT Penetration Tester [BGSW]

Company Description

At Bosch we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!

Job Description

We are Cyber-security Team at Bosch Global Software Technology Center in Warsaw. We constantly grow and invite new colleague to join our Team.

Currently we are looking for Security Engineer who love solving interesting problems and think “secure” is just a matter of perspective. The Embedded Pentester is responsible for performing high and security evaluation focusing on embedded devices used in various domains such as IoT, home automation, automobiles. As a senior member you are expected to serve as a technical leader in this area within organization.

Tasks:

Hardware and software hacking, and black-box style testing against embedded systems.Understand various chip packages and have a good understanding of fabrication of complex PCBsCommunicate complex vulnerability results to technical and non-technical audience.Perform research and contribute to open source community on new attack methodology, vulnerability findings.Lead cybersecurity discussions to elicit requirements from multiple OEM'sSupport security related milestones for the customer and internal quality gates with relevant deliverablesCoordinate security testing and validation activitiesAnalyze security vulnerabilities and coordinate the relevant response communication to the customerPlan and manage introduction of security in manufacturing processesLead 3 or more Security engineers to consult about security solutions for OEM'sWork closely with Product security officer and provide necessary leanings to continuously update security engineering process and Solutions

Qualifications

Technical Skill-set requirements

5-8 years of relevant professional experienceProficiency in programming languages (e.g. C, C++, Java, Python) or any other high level language.Penetration testing experience of working on product security in embedded IoT domain / OT domain.Knowledge of embedded PC architecture such as ARM and assembly programming.Reverse engineering of system binary level (POSIX, WinAPI) and source code review experience.Proficiency in usage of security testing tools such as disassemblers, flash dumper, JTAG finders.Knowledge in low level protocols such as SPI, JTAG, UART is desirable.Knowledge of cryptographic methods.Strong business communication skills in English languageCustomer orientation and negotiation skills

Nice to have:

Certifications such as OSCPBackground in automotive systems

Soft skills requirements

Ability to work independently under minimal supervision and within a team.Attention to details.Structured and systematic approach to projects.

 

Additional Information

Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.

Benefits:

We would like to offer you number of amenities for you and your loved ones.

Work #LikeABosch:

Contract of employment  and a competitive salary (together with annual bonus)Flexible working hoursReferral Bonus ProgramCopyright costs for IT employees

Grow #LikeABosch:

Complex environment of working, professional support and possibility to share knowledge and best practicesOn-going development opportunities in a multinational environmentBroad access to professional trainings, conferences and webinarsLanguage courses

Live #LikeABosch:

Private medical care and life insuranceCafeteria System with multiple benefitsPrepaid Lunch CardNumber of benefits for families (for instance summer camps for kids)Non working days on the 24th and 31st of December
Confirm your E-mail: Send Email