Role Purpose
The Safety Cyber Manager ensures projects comply with ISO 26262 (Functional Safety), ISO 21434 (Cybersecurity), and UNECE R155 regulations. This role drives convergence between safety and cybersecurity strategies across vehicle platforms, guaranteeing risk-based compliance and secure-by-design principles.
Key Responsibilities
This role is basically for the North American Projects
- Governance & Compliance: Develop and maintain Safety & Cybersecurity Plans for programs; ensure adherence to ISO 26262, ISO 21434, UNECE R155, and internal standards; prepare and present Safety/Cyber Cases to justify compliance during assessments.
- Risk Management: Conduct Threat Analysis and Risk Assessment (TARA) and hazard analysis and evaluations (HARA); monitor safety/cyber activities and implement countermeasures for identified risks.
- Project Integration: Coordinate with EE Architecture teams to apply on-the-shelf safety/cyber modules; support convergence of safety and cybersecurity concepts in ECU design and system architecture.
- Technical Leadership: Steer technical decisions for safety mechanism, secure boot, secure update, PKI architecture, and defense-in-depth strategies; oversee safety validation, penetration testing, vulnerability management, and incident response planning.
- Stakeholder Engagement: Collaborate with platform teams, suppliers, and certification bodies; represent CSFS in internal and external audits, assessments, and regulatory reviews.
Required Qualifications
- Bachelor's/Master's in Electrical Engineering, Computer Science, or related field.
- 5+ years in automotive cybersecurity and functional safety.
- Strong knowledge of ISO 26262, ISO 21434, UNECE R155, and CSMS.
- Experience in ECU architecture, OTA/FOTA security, and secure development lifecycle.
- Excellent communication and leadership skills.
Competency Area Description Proficiency Level
Functional Safety Expertise Deep knowledge of ISO 26262, hazard analysis, safety case development, and integration with ECU architecture. Expert
Cybersecurity Standards Mastery of ISO 21434, UNECE R155, CSMS, and secure development lifecycle. Expert
Risk Assessment & TARA Ability to perform Threat Analysis and Risk Assessment, vulnerability identification, and mitigation planning. Advanced
Regulatory Compliance Ensure compliance with homologation requirements and internal CSFS policies. Advanced
Technical Architecture Understanding the EE architecture to build safe and secure designs with state of the art Advanced
Project Governance Develop and maintain Safety & Cybersecurity Plans, manage milestones, and deliver compliance documentation. Advanced
Leadership & Communication Lead cross-functional teams, manage suppliers, and present safety/cyber opinions to stakeholders. Advanced
Incident Response & Monitoring Define and execute vulnerability management and incident response processes. Intermediate
Tools & Methods Familiarity with ASPICE, AUTOSAR, penetration testing tools, and ECU validation frameworks. Intermediate
Continuous Improvement Drive process optimization, reusable frameworks, and knowledge sharing across global teams. Advanced
Behavioral Competencies
Preferred Skills
- Certifications: CompTIA Security+, CEH, ISO 26262 Functional Safety Engineer.
- Familiarity with EE systems and embedded Linux security.
- Ability to manage complex projects across global teams.
Key Deliverables
- Safety & Cybersecurity Plans and Opinions at each milestone.
- Risk evaluation reports and compliance documentation.
- Successful completion of safety and cybersecurity assessments.