Cyber Security Analyst
Technology, Data & Digital · IT Infrastructure & Security · Cybersecurity · Software Engineering
In short
Volvo Cars is looking for a Senior CSMS Engineer to enhance cybersecurity governance for their ConX / Head Unit Platform. This role involves coordinating cybersecurity activities, ensuring compliance with UNECE R155 and ISO/SAE 21434, and supporting the delivery of secure automotive software.
Responsibilities
- Drive CSMS execution and coordination for ConX / Head Unit Platform cybersecurity activities.
- Coordinate creation, review readiness, and lifecycle maintenance of cybersecurity work products.
- Ensure traceability from cybersecurity requirements to verification activities and evidence.
- Support TARA activities by facilitating risk discussions and ensuring outputs are reflected in security concepts.
- Coordinate audit and homologation readiness by tracking evidence completeness and release status.
- Act as the ConX interface towards Shield / central CSMS support on CSMS questions and process alignment.
- Prepare and maintain CSMS delivery status, governance dashboards, and risk summaries.
- Coordinate confirmation review and assessment preparation with CSAP / Quality.
- Support supplier cybersecurity coordination by following up CS-SOW / CSJR expectations.
- Contribute to vulnerability-management and PSIRT-related coordination.
- Coach and guide ARTs and feature teams on CSMS expectations and documentation quality.
- Continuously improve the local ConX CSMS operating model.
Requirements
- University degree in Cybersecurity, Computer Science, Software Engineering, Electrical Engineering, Systems Engineering, or equivalent experience.
- 7+ years of experience in cybersecurity engineering, automotive software development, system engineering, compliance engineering, product governance, or related technical roles.
- Solid understanding of automotive cybersecurity lifecycle activities, including planning, TARA, concepts, requirements, verification, validation, and cases.
- Practical knowledge of CSMS expectations and regulatory frameworks such as UNECE R155 and ISO/SAE 21434.
- Experience coordinating cybersecurity work products, evidence chains, review preparation, and audit or certification readiness activities.
- Ability to work across organizational boundaries with various teams and stakeholders.
- Strong communication skills with the ability to translate cybersecurity compliance needs into practical engineering actions.
- Structured way of working, with confidence in tracking deliverables, risks, dependencies, deviations, and decisions.
- Ability to challenge unclear ownership, identify traceability gaps, and drive resolution pragmatically.
- Comfortable working in agile / ART-based development environments.
#Cybersecurity#Information Technology/Digital#Professionals#All Jobs