דלג לתוכן הראשי

Security Certifications & Compliance Engineer

Nuvotonהרצליה, ישראלהיברידיFull-timeדרגה: בכיר/ה

פורסם אתמול · 0 מועמדים

שכר לא צוין במשרה זו

שמירה, הגשה או בדיקת התאמה. פתיחת חשבון חינם לוקחת כמה שניות.

תובנת Willbi

התפקיד במילים פשוטות

התפקיד מתמקד בהובלה וליווי של תהליכי תקינה והסמכות אבטחה למוצרי חומרה ושבבים, דוגמת Common Criteria ו-FIPS 140-3. העבודה כוללת שיתוף פעולה הדוק עם צוותי פיתוח, עבודה מול מעבדות וגורמי הסמכה חיצוניים, עריכת סקירות אבטחה והערכות סיכונים, וכן הכנת תיעוד טכני ומענה לדרישות רגולטוריות.

חובה
  • B.Sc. in Computer Engineering, Electrical Engineering, Computer Science, Information Security, or a related field
  • 5+ years of experience in Cybersecurity, Product Security, Secure Development, Security Compliance, Information Security, Security Certifications, or Security Audits
  • Understanding of Cryptography fundamentals
  • Understanding of Secure Development Lifecycle (SDL)
  • Understanding of vulnerability management processes
יתרון
  • Experience with Common Criteria (CC), FIPS 140-3, or other security certifications
  • Familiarity with TPM technologies, Root of Trust architectures, Secure Boot, and Post-Quantum Cryptography
  • Knowledge of Cyber Resilience Act (CRA) and NIST frameworks
  • Experience working with certification laboratories and regulatory bodies

חולץ מתיאור המשרה · מתעדכן אוטומטית

למי זה מתאים

מתאים לאנשי אבטחת מידע או תאימות עם לפחות 5 שנות ניסיון ורקע מובהק בתעשיית השבבים (Semiconductor). התפקיד פחות מתאים למי שאינו מגיע מעולמות החומרה וה-Embedded או שמעדיף תפקידי פיתוח קוד בלבד.

תיאור המשרה המלא

המשרה המקורית · נשמר לעיון

About Nuvoton Israel As a global semiconductor leader, Nuvoton Israel builds the hardware trust foundations powering modern computing - from trusted platform module (TPM) chips safeguarding millions of personal computers to complex root-of-trust architectures across cloud platforms and servers. Security is embedded into the core of everything we design. As the global regulatory and threat landscape evolves, ensuring our products meet rigorous, gold-standard cybersecurity compliance and certifications is central to our mission and customer trust. About the Role We are looking for a highly motivated Security Certifications & Compliance Engineer to join our team and play a key role in ensuring our products meet the highest security, compliance, and certification standards. This position combines technical security expertise, compliance activities, product security governance, and collaboration with development teams to support industry-leading security products. What You'll Do • Certifications: Lead and support security certification activities, including Common Criteria (CC), FIPS 140-3, CSPN, OCP SAFE, and additional certification programs. • Compliance & Frameworks: Support compliance initiatives related to the Cyber Resilience Act (CRA), Secure Development Lifecycle (SDL), NIST SSDF, and customer cybersecurity requirements. • Cross-Functional Teamwork: Work closely with engineering teams, management, customers, certification bodies, and security experts across the organization. • External Collaboration: Work closely with external laboratories and certification authorities throughout certification processes. • Security Readiness: Review development processes, project documentation, and deliverables to ensure compliance and security readiness. • Risk & Threat Assessment: Participate in threat modeling, risk assessments, security reviews, and secure development activities. • Audits & Standards: Prepare for and support internal audits, external audits, and customer security assessments. • Development Security System (DSS): Maintain, improve, and drive periodic activities for the Corporate Development Security System, including supporting security infrastructure, defining asset classifications, and driving employee awareness initiatives. • Documentation: Prepare, review, and maintain certification documentation, including Security Targets, Security Policies, certification reports, and lifecycle evidence.

Requirements: • Education: B.Sc. in Computer Engineering, Electrical Engineering, Computer Science, Information Security, or a related field. • Experience: 5+ years of experience in at least one the following: Cybersecurity, Product Security, Secure Development, Security Compliance, Information Security, Security Certifications, or Security Audits • Domain Expertise: Background in the semiconductor industry. • Core Technical Knowledge: Strong understanding of some of these areas: o Cryptography fundamentals o Secure Development Lifecycle (SDL) o Vulnerability management processes o Threat Modeling and Risk Assessment o Hardware and Embedded Security o Firmware and Software Security o Security Testing and Penetration Testing concepts Advantages • Experience with Common Criteria (CC), FIPS 140-3 or other security certifications. • Familiarity with TPM technologies, Root of Trust architectures, Secure Boot and Post-Quantum Cryptography • Knowledge of Cyber Resilience Act (CRA) and NIST frameworks • Experience working with certification laboratories and regulatory bodies. If you are passionate about silicon security and want to lead compliance for industry-defining hardware, send your CV to join our team.

אודות Nuvoton
פרופיל החברה · בקרוב

ביקורות עובדים · בקרובעוד משרות ב-Nuvoton

שאלות על המשרה

  • המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
דומות וקשורות
Nuvoton
פורסם אתמול · 0 מועמדים
בדקו את ההתאמה