BorgWarner is a global product leader in delivering innovative and sustainable mobility solutions for the vehicle market. We are a company of innovators and independent thinkers that brings together talented employees, meaningful work, and amazing technology in a unique environment. At BorgWarner, we constantly work towards our vision of a clean and energy-efficient world.
New Technical Center - Electrification in Krakow
At BorgWarner, we design and manufacture the systems that define the way the world moves forward. With the world’s foremost technologists, engineers, and OEMs, we’re accelerating the world’s transformation to eMobility.
Products and solutions range from existing portfolio Power Electronics - BorgWarner.
Job purpose
The Cybersecurity Engineer (CSE) works within the systems engineering function and is directly engaged with the development of secure, robust and resilient vehicle solutions for powertrain electrification (BEV, HEV, EV, etc) projects. Those solutions range across hardware and software, including but not limited to immobilizers/anti-theft devices, manipulation detection system, secure boot methods, key storage and management, secure on-board communication and secure diagnostics, hardware trust anchors (microcontroller hardware security modules). The CSE supports the development team in ensuring all aspects of the stakeholder requirements are implemented and tested according to the latest automotive cybersecurity standards and best practices.
Key responsibilities
Conduct the cybersecurity activities for a given project with a collaborative team that takes into consideration customer specifications, the cybersecurity process and bring their own experience into what is neededInterface with customer on technical cybersecurity requirements and issuesCreate a cybersecurity assurance case per project and the related documentation that provides the argument for the achieved degree of cybersecurity on their projectPerform cybersecurity risk assessments and threat modelling within a product scopeAnalyse and determine safety, financial, operational and privacy issues identified in a risk analysisWhere there are safety impacts, work with the Functional Safety (ISO 26262) team to find solutions that do not compromise safety or securitySuggest countermeasures appropriate to the project given the technical constraints or operational limitationsCreate and maintain a knowledge database of typical assets, threats and attack paths for our product portfolio to leverage re-useCreate and maintain solutions to manage cybersecurity risksDrive cybersecurity solution development and provide technical support for hardware and software teamsEngage with suppliers to evaluate cybersecurity capabilities and track reported vulnerabilitiesEvaluate new tools (Threat Analysis tool, Software Bill of Material tool, etc.)Be part of vulnerability monitoring and incident response teamsFollow and contribute to the secure development lifecycle at BorgWarnerNetwork and maintain a high-level of industry knowledge (e.g. participation in Auto-ISAC events, SAE workshops)Help promoting a safety and security cultureSupport the roll-out of processes and procedures compliant with latest cybersecurity standards and regulationsAssist in training and raising awareness, organizing eventsWhat we’re looking for
2+ years of experience in an embedded cybersecurity position or 4+ years in an embedded systems development, preferably for ASPICE compliant projectsUnderstanding of multi-core embedded microcontrollers that use HTAs (hardware trust anchors) or HSMs (hardware security modules)Understanding of cybersecurity specific testing such as penetration and fuzz testingPassionate and forward-thinking about cybersecurity and the needs of the ever-changing automotive industryGood understanding of formal risk assessment and management, knowledge of NIST SP-800-30 and ISO IEC 31010Experience in the automotive or transportation domainExperience with requirements engineering, ability to navigate through multiple customer specifications as well as published standards and policies (UNECE WP.29 R155 CSMS, R156 SUMS, ISO/SAE 21434)Familiarity with cryptography and cybersecurity concepts such as defense in depth, access control models, memory protection, secure boot, Secure Coding, public key infrastructure (PKI)Ability to work easily with Office software suite and engineering software (prior experience with simulation or analysis tools like Ansys Medini Analyze for instance).Strong communication and analytical skillsAbility to work independently, take ownership of project deliverables, go above and beyond the task at handFluency in English is required. German and/or French would be an advantage.Willingness to travel occasionally, both domestically and internationally.What we offer
Private Medicover medical care for the employee and their family.Co-financing for the sport card Multisport.Possibility to join the PZU insurance.Flexible working hours.Salary adequate to skills and experience.Co-financing for holidays.Hard and soft training, language courses.What we believe
Inclusion - We value diversity in people, ideas, and experiences.Integrity - We believe in transparency, authenticity, and depend on each other to deliver what we promise.Excellence - We contribute to our developments by seeking knowledge and sharing information.Responsibility - We care about our local communities and the global environment.Collaboration - We are one BorgWarner.Recruitment process
CV Review - Your application and CV will be reviewed to assess your qualifications and experience in relation to the role requirements.Phone Interview (approximately 30 minutes) - This initial conversation is designed to discuss your background, expectations, and answer any preliminary questions.Technical Interview(s) (1 to 1.5 hours, one or two rounds) - Conducted in English with the manager and an additional team member, this stage focuses on evaluating your technical knowledge and problem-solving skills. The interview can be held via Teams or at our office.Final Interview (45 minutes) - A meeting with a representative from the HR department to ensure alignment with our company culture and discuss the next steps. This interview might also take place via Teams or at our office.#LI-MD1
#LI-Hybrid
Internal Use Only: SalaryGlobal Terms of Use and Privacy Statement
Carefully read the BorgWarner Privacy Policy before using this website. Your ability to access and use this website and apply for a job at BorgWarner are conditioned on your acceptance and compliance with these terms.
Please access the linked document by clicking here, select the geographical area where you are applying for employment, and review. Before submitting your application you will be asked to confirm your agreement with the terms.
Career Scam Disclaimer: BorgWarner makes no representations or guarantees regarding employment opportunities listed on any third-party website. To protect against career scams, job applicants should take the necessary precautions when interviewing for and accepting employment positions allegedly offered by BorgWarner. Applicants should never provide their national ID numbers, birth dates, credit card numbers, bank account information or other private information when communicating with prospective employers or responding to employment opportunities online. Job applicants are invited to contact BorgWarner through BorgWarner’s website to verify the authenticity of any employment opportunities.