Responsibilities
-
Research and Analysis of Security Standards
-
Monitor and interpret both domestic and international cybersecurity standards relevant to industrial control and IoT systems (e.g., IEC 62443, EN 18031, CC/EUCC).
-
Develop and deliver compliance guidelines tailored to specific product features.
-
Insight & Pre-Research on Emerging Security Technologies
-
Stay updated on industry security trends and evolving customer requirements.
-
Plan and execute pre-research projects on security technologies.
-
Explore and propose innovative defense mechanisms to continuously enhance core product competitiveness.
-
Project Security Review & Emergency Response
-
Participate in security technical reviews throughout the product lifecycle.
-
Identify potential security risks and provide actionable improvement recommendations.
-
Lead incident response efforts and deliver technical support during security events.
-
Development of Security R&D Systems and Tools
-
Establish and optimize the Security Development Lifecycle (SDL) processes for products, ensuring alignment with global security standards and industry best practices.
Requirements
-
Expertise in Security Standards
-
Deep understanding of leading cybersecurity standards for industrial control and IoT systems, including but not limited to IEC 62443, EN 18031, CC/EUCC, with proven hands-on application experience.
-
Security Architecture Leadership
-
Demonstrated experience leading the security architecture design for ICT or IoT products.
-
Solid knowledge of hardware/embedded system security, communication security, and data protection.
-
Practical Project Experience
-
Direct involvement in security design or assessment for at least three full product development cycles.
-
Proven ability to independently manage security aspects of projects.
-
SDL Process Proficiency
-
Well-versed in all stages of the Security Development Lifecycle (SDL), with practical experience in implementing or enhancing SDL processes.
-
Comprehensive Competencies
-
Excellent cross-functional communication and collaboration skills, adept at driving security requirement implementation across R&D teams.
-
Strong technical ability with a knack for rapid learning and creative problem-solving.
-
Bachelor’s degree or above in Cybersecurity, Computer Science, Electronics, or related disciplines.
-
Good English reading and writing skills, with the ability to comprehend English-language standards documentation.
-
Overseas work experience in cybersecurity and fluent spoken English are highly desirable.