Senior Security Engineer, AppSec

Full Time
San Jose, CA
Posted
Job description

Who We Are

Sibros unites data, software management, and remote commands to power future mobility. Established in 2018 by automotive industry veterans, Sibros enables mobility companies to get more data out of embedded connectivity.

Our Deep Connected Platform is a vehicle-to-cloud system combining smart OTA updates, flexible data logging, and remote commands allowing automakers to have unparalleled control, visibility, and governance over software and data across global fleets throughout the product life cycle, from day zero to product decommissioning.

Sibros is proud to work with the mobility industry's most trusted and innovative brands including Bajaj Automotive, Sono Motors, Lightyear, and Volta Trucks. We're a global organization with our headquarters in the Silicon Valley and offices in Folsom, California; Pune, India; Munich, Germany; and Paris, France.

The shift in mobility from hardware-centric design to software-defined vehicles is the next revolution for passengers, pedestrians, and automakers to create a safe, secure, and reliable experience. Sibros' vision for powering the connected vehicle ecosystem helps mobility companies move better.

Our Mission

To innovate remarkable connected mobility technologies that give our customers unmatched value and are essential to how people and goods move from point A to point B. Our goal is to make it simple for the world's trailblazing OEMs to develop at speed and at scale securely keeping the roads and drivers safe. The technology we are building ushers a transformation for our customers by offering them a solution for connected systems so that they can focus on their forté: creating beautiful, safe, and useful vehicles for all.

About the Role

  • Assist in defining security roadmap for all our products Deep Updater,Deep Logger and Command manager, to deliver security product spec that includes requirements, design specifications and test plans for the software, and build integration teams.
  • Support the Threat Analysis and Risk Assessment (TARA) for the Software / Cloud team
  • Image assurance and other cloud security integrity controls
  • Firmware signing and validation controls handling in the cloud environment
  • Perform, review and prioritize remediation of vulnerabilities in the Cloud environment including Infrastructure, third party libraries
  • Analyze cybersecurity attack entry points and evaluate risk versus impact, and then work with the software team to implement cybersecurity requirements as well as evaluate test and software analysis reports.
  • Perform competitive analysis and maintain knowledge of emerging security technologies in both the automotive and consumer electronics field.

Minimum Qualifications

  • 5+ years of relevant experience, technical cybersecurity expertise, and knowledge.
  • Experience designing Container security, cloud posture assessments and security for public cloud deployments across GCP, and AWS.
  • Experience planning and developing security policies, procedures, and standards within an Cloud connected IoT ecosystem
  • Broad comparative understanding of operating systems, networking technologies, and specific implementations - especially from a computer security perspective.
  • Working knowledge of embedded systems and associated languages and build frameworks including POSIX
  • Software and firmware signing and validation, signature methods and digital authentication and non-repudiation
  • Familiarity with standards like ISO 27001, SSAE 16 / 18 SOC 2, ISO 21434 and Uptane framework
  • Understanding and knowledge of CIS Benchmarks for Cloud providers, container technologies, and key services.
  • Experience with embedded computing and security including Uptane framework or similar
  • Experience with Cloud services penetration testing and penetration tools.

Additional Information

The US base salary range for this full-time position is $180,000 - $240,000 + equity + benefits. Our salary ranges are determined by role and level. The range displayed on each job posting reflects the minimum and maximum range for new hire salaries for the position across all US locations. Within the range, individual pay is determined by factors including job-related skills, experience, and relevant education or training. Please note that the compensation details listed in US role postings reflect the base salary only, and do not include equity, benefits, or any discretionary bonus components.

Equal Employment Opportunity

Sibros is committed to a policy of equal employment opportunity. We recruit, employ, train, compensate, and promote without regard to race, color, age, sex, ancestry, marital status, religion, national origin, disability, sexual orientation, veteran status, present or past history of mental disability, genetic information or any other classification protected by state or federal law.

Privacy

At Sibros, we value your privacy and understand the importance of safeguarding your personal information. In order to effectively track candidates for current and future opportunities, we collect and securely store your personal data. The information you provide during the application process will be kept confidential and used solely for recruitment purposes.

To ensure the highest level of privacy protection, we utilize third-party service providers for data management but never share your information for any other purpose outside of recruitment. Should you need to access, update, or delete your candidate profile information, our dedicated team is available to assist you. Please contact us at privacy@sibros.tech for any questions or requests.

To learn more about our commitment to data privacy, including compliance with GDPR and CCPA regulations, please visit our website at sibros.tech/privacy-policy

gatheringourvoice.org is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, gatheringourvoice.org provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, gatheringourvoice.org is the ideal place to find your next job.

Intrested in this job?

Related Jobs

All Related Listed jobs