Profilbild von Anonymes Profil, Freelance Security Systems Engineer and Consultant
nicht verfügbar bis 15.06.2024

Letztes Update: 24.10.2023

Freelance Security Systems Engineer and Consultant

Abschluss: M.Sc. Computer Science and Media
Stunden-/Tagessatz: anzeigen
Sprachkenntnisse: deutsch (Muttersprache) | englisch (verhandlungssicher)

Skills

My expertise is security systems engineering and consulting for secure product development (including ISO/SAE 21434) and security product certification (ISO/IEC 15408, Common Criteria) of embedded systems for the automotive field.
I have been working with vehicle manufacturers and their suppliers since 2019.

Projekthistorie

12/2022 - 10/2023
Freelance Security Consultant - Automotive
Daimler Truck AG via Akkodis Germany Tech Freelance GmbH (Automobil und Fahrzeugbau, >10.000 Mitarbeiter)

  • Improving the process for secure vehicle development
  • Creating a cybersecurity testing strategy (incl. test methods, artefacts, workflows, and tools) for vehicles and their components
  • For vulnerability scanning, elaborating a methodology, process integration, and tools
Considering ISO/SAE 21434.

03/2019 - 03/2022
Security Consultant - Automotive
ESCRYPT GmbH & ETAS GmbH (Automobil und Fahrzeugbau)

  • Carrying out threat analyses and risk assessments (TARAs - similar to TARA of ISO/SAE 21434) for automotive functions and components
  • Security engineering for a security function (authentic onboard communication) with focus on error analysis on vehicle level, integration support on component level and requirements engineering
  • Vehicle-to-X (V2X) security:
    • Participation in the creation of a Security Target and a Protection Profile according to Common Criteria (CC - ISO/IEC 15408) for C-ITS stations
    • Participation in the creation of the EU's C-ITS CPOC protocol (Annex 8)
    • Preparing an evaluation and the certification for CC according to V2X EU policies
  • IDPS (Intrusion Detection and Prevention System): Creation and review of technical concepts for the system, especially for a VSOC (vehicle security operations center), including processes
  • Security methodology:
    • Co-creation of a template and a manual for the efficient execution of TARAs
    • Creation of method descriptions including processes for carrying out TARAs and security tests (functional testing, penetration testing and vulnerability scanning)

Zertifikate

Competency of a Common Criteria Evaluator
2023

Reisebereitschaft

Weltweit verfügbar
I am willing to travel to work locally at the customer
Profilbild von Anonymes Profil, Freelance Security Systems Engineer and Consultant Freelance Security Systems Engineer and Consultant
Registrieren