Siemens banner

Product & Solution Security Professional

Siemens

The Role

Overview

Design and manage security for railway signaling and telecom solutions.

Key Responsibilities

  • security architecture
  • vulnerability analysis
  • security testing
  • policy development
  • threat analysis
  • incident response

Tasks

-Design, implement, and manage security architectures for railway signaling and telecommunication systems for mass transit and Mainline projects. -Collection of product & solution security related lessons learned and feed into in continuous improvement activities (e.g., update of guidelines, reporting to PSSOs, integration in awareness material). -Analysis of vulnerability finding, developing solution to fix the vulnerability if necessary. -Evaluation of third-party components from a security point of view. -Preparation of Security Test Plan, test cases and perform security testing(automated and Manual) to ensure the security controls are effectively implemented. -Prepare Project specific Security policies and procedures. -Specification and maintenance of security requirements for the project. Support for meeting international and regional security standards and regulations (like IEC62443, ISO27001 and TS50701) in the project. -Prepare Security concept, defining cyber security relevant activities related to configuration, installation and commissioning of railway signaling and telecommunication systems. -Conduct Threat and risk analysis, identifying vulnerabilities and proposing mitigation measures. -Respond to security incidents if any, helps in solution development

Requirements

  • ot protocols
  • bachelor’s
  • security standards
  • pki
  • security tools
  • railway domain

What You Bring

-Deep understanding of OT protocols -Bachelor’s degree in cybersecurity, computer science or a related field -Has minimum 4-6 years’ experience in one of the fields of professional experience. -Should have working experience on one of the security standards ( IEC 62443 3-2, 3-3, 4-2, 2-1, TS50701, ISO 27001) -Should have understanding and experience on PKI, Active directory, Networking, Operating systems ( Windows and Unix ), ICS/SCADA. -Can support multiple projects at the same time and should occupy the function for the main part of is defined working time. -Exposure to Security tools Like Nessus, NMAP, IDS/IPS, firewall, application Whitelisting, Anti-virus , SIEM etc -Must have good understanding of Railway domain ( Signaling Mass Transit / Mainline) -Should hold professional certification like CCNA, CCNP, IEC62443, CEH, GISCP, or equivalent. -Knowledge of Vulnerability management, Security testing, System hardening, Patching etc.

The Company

About Siemens

-The company drives progress with solutions in electrification, automation, and digitalization across industries. -With cutting-edge products and services, it leads sustainable innovation for industries like energy, manufacturing, and infrastructure. -Its impressive portfolio includes smart grids, automated factories, advanced healthcare technologies, and solutions for urban mobility. -Siemens’ digital solutions enhance efficiency and sustainability in everything from smart buildings to electric vehicles. -It has contributed to iconic projects, including energy-efficient train systems and automation in key industrial sectors. -Transforming how industries use digital technology to optimize operations and tackle global challenges.

Sector Specialisms

Industrial Automation

Building Automation

Rail Transport

Health Technology

Factory Automation

Process Industries

Pharmaceuticals

Chemicals

Food and Beverage

Electronics

Semiconductors

Power Systems

Healthcare

Transportation

Energy

Infrastructure

Digital Industries

Industrial Control Systems

Sensors

Radio-Frequency Identification

Product Lifecycle Management

Simulation and Testing

Cloud-based IoT

Software as a Service

Digital Twins