Responsibility: Oversee product cyber security in high-complexity development projects from acquisition to start of production (SOP) according to ISO/SAE 21434 or UNECE R-155.
Planning & Development: Develop security activities and evaluate development efforts.
Evaluation & Approval: Approve security concepts and strategies throughout development phases.
QCT Targets: Achieve Quality, Cost, and Time targets related to cyber security work products.
Tasks / Areas of Responsibility
Planning & Guidance: Independently plan necessary cyber security activities and provide guidance to colleagues.
Risk Analysis: Analyze product scope for cyber security risks, considering known weaknesses and vulnerabilities.
Coordination:
Define a holistic product cyber security concept.
Coordinate with customers, suppliers, and subcontractors.
Report to customers and obtain information from subcontractors.
Support: Assist the development team in selecting security-compliant technologies and cryptographic procedures.
Verification Methods: Define verification methods like fuzzing, vulnerability scanning, and penetration testing.
Assessments & Training: Prepare cyber security assessments and implement training measures.
Communication: Facilitate communication within the global HELLA cyber security network to improve processes.