About The Position

The EV Infrastructure Cybersecurity Engineer will act as a technical lead for the security of our charging and energy ecosystem, including EVSE, home energy management systems, and grid integration. You will be responsible for developing security designs, writing requirements, and researching future energy security technologies for infrastructure products. You will work closely with product teams as they innovate, source new products, and design new features, performing threat models and developing security controls through a collaborative partnership. You will maintain an in-depth understanding of the technologies under review, working to close security gaps, mitigate identified vulnerabilities, and report risks and findings to security management. As a security subject matter expert, you will shape the security posture for current and future energy products to ensure our infrastructure remains resilient and secure.

Requirements

  • Bachelor’s degree in Electrical Engineering, Computer Engineering, Software Engineering, Computer Science, or Cybersecurity
  • 5+ years of experience securing embedded systems, IoT devices, automotive systems, or Industrial Control Systems
  • 3+ years of experience with networked systems and communication protocols (TCP/IP, Ethernet, Wi-Fi, or Cellular)
  • Ability to develop and maintain engineering documentation including security requirements, specifications, and test plans
  • Strong communication skills with the ability to explain complex security risks to non-technical stakeholders

Nice To Haves

  • Experience with secure charging implementations and protocols (i.e., ISO 15118, OCPP, and PKI)
  • Experience with hardware security features such as HSM, TEE, and secure boot for embedded IoT devices
  • Experience with coding for security tool development and firmware analysis (i.e., C, C++, Python, or Go)
  • Experience securing cloud-connected systems and communication interfaces (e.g., MQTT, TLS, or REST APIs)
  • Familiar with industry cybersecurity and grid standards (i.e., ISO 21434, NIST SP 800-213, NIST XFC Cybersecurity)
  • Familiar with security risk assessment and quality methodologies (i.e., TARA, FMEA, DVP&R)
  • Experience with vulnerability management tooling and processes
  • Knowledge of Ford's internal engineering systems and energy services requirements

Responsibilities

  • Perform threat modeling and security risk assessments for EVSE and energy infrastructure products
  • Develop and validate security requirements for charging related protocols (i.e., ISO 15118, OCPP, and OCPI)
  • Secure V2G and V2H communication pathways
  • Review, develop, and maintain security requirements and Design Validation Methodologies for EV charging and energy infrastructure products
  • Develop security controls and mitigations for risks found in embedded components
  • Work with hardware vendors, internal product teams, and internal cloud teams to ensure end-to-end security in the electric vehicle charging ecosystem
  • Investigate and resolve complex security issues across hardware, firmware, and communication layers
  • Research emerging threats to smart grids and IoT energy devices to keep Ford’s infrastructure protected
  • Communicate high-level design and low-level security details at both the working and management levels
  • Work with cross-functional teams to integrate security controls into the development and manufacturing process
  • Partner with product teams during the innovation and sourcing of new products and features to perform threat modeling and develop integrated security controls

Benefits

  • Immediate medical, dental, vision and prescription drug coverage
  • Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
  • Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
  • Vehicle discount program for employees and family members and management leases
  • Tuition assistance
  • Established and active employee resource groups
  • Paid time off for individual and team community service
  • A generous schedule of paid holidays, including the week between Christmas and New Year’s Day
  • Paid time off and the option to purchase additional vacation time.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service