Your tasks
- Specifying high-level product security requirements and breaking them down into sub-requirements and tasks
- Identifying and analysing threats and vulnerabilities (including in supplier products / SW libraries) also in supplier products / SW libraries)
- Architectural design, coordination and review of the security strategy for the various products
- Interface to stakeholders inside and outside development as contact person for product (cyber) security
- Organisation of product certifications with third parties and internal audits
- Definition, implementation and maintenance of certification-relevant development processes (SDLC, requirements engineering, test management, verification & validation, ISMS, PSIRT)
- Support with security testing (SAST, DAST, pen testing,...)