CDI - Cybersecurity Architecture & Trust Lead M/F
CDI - Cybersecurity Architecture & Trust Lead M/F
Key objective — Provide transverse cybersecurity and chain-of-trust authority across T1, T2 and T3.
Mission
Own the transverse cybersecurity and chain-of-trust authority across the complete T1/T2/T3 stack. The mission covers ISO/SAE 21434, UNECE R155/R156 where relevant, TARA, CSMS, secure boot, signing, SBOM, vulnerabilities, identities, secure communications, updates and cyber evidence. The role acts as the cybersecurity mirror of the Functional Safety & SOTIF authority: it does not replace architects, but imposes the trust framework and challenges risky choices.
- Define and maintain the T1/T2/T3 cybersecurity architecture and trust model.
- Lead TARA, CSMS, cybersecurity requirements and risk traceability.
- Define secure boot, software signing, attestation, PKI, certificate lifecycle and secure-update chains.
- Set SBOM, vulnerability-management and supplier-cyber evidence expectations.
- Challenge interfaces between vehicle, operator station, C2, cloud, radios and external software components.
- Align cyber evidence with safety, DevSecOps and V&V.
Skills
- ISO/SAE 21434;
- TARA; CSMS;
- secure boot;
- chain of trust;
- PKI;
- HSM;
- secure OTA;
- SBOM;
- vulnerability management;
- cryptography;
- secure communications;
- Linux/embedded hardening.
- Adversarial thinking;
- technical authority;
- persistence;
- pragmatic decision-making;
Education & experience
8 to 12+ years in embedded, automotive, defence, aerospace or critical-systems cybersecurity, with experience in connected products and secure software delivery.
Success criteria after 12 months
Cyber architecture baselined; initial TARA performed; build-to-vehicle trust chain documented; secure boot/signing defined; SBOM and vulnerability management operational; cyber evidence aligned with safety and V&V.
#J-18808-Ljbffr