
Security Engineer
Hitachi, Ltd.almost 3 years ago
Naples, Italy or Genoa, ItalyMid Level
Responsibilities
- Ensure identification, management, and fulfillment of contractual cybersecurity requirements and customer requests.
- Analyze customer system specifications, decompose them into software requirements, and identify gaps with standard or COTS products.
- Create high-level designs, interface control documents, detailed software requirements, specifications, and requirements traceability documents.
- Act as the primary technical interface to customers and coordinate with internal departments, suppliers, subcontractors, assessors, and authorities.
- Define and resolve interfaces with signaling, TLC, DCS, SCADA, SIEM, and other subsystems and security systems.
- Develop and execute security management and commissioning plans, including resources, logistics, and schedules.
- Lead onsite commissioning and acceptance testing, coordinate work sequences and punch-list items, and oversee safe testing of plant systems.
- Provide technical troubleshooting support during commissioning and operations and develop training and handoff materials.
- Prepare cybersecurity management plans, risk assessments, threat and vulnerability assessments, security cases, security reports, and security procedures.
- Perform vulnerability assessments, support penetration testing, maintain continuous security monitoring, and conduct customer security audits.
- Follow up on cybersecurity technology suppliers and review technical documentation before customer submission.
- Participate in factory and site acceptance tests and maintain service reports, issue tracking, safety analyses, and quality compliance records.
Requirements
- Bachelor’s degree in Telecom Engineering, Computer/Information Science, or Electronic Engineering; a master’s degree is preferred.
- 3–5 years of experience in cybersecurity systems engineering.
- Knowledge of telecommunications system architectures, IP networking, system integration, SIEM, firewall configuration and management, Active Directory, RADIUS, and configuration management.
- Knowledge of ISO 27001, ISO 27005, EN 50159, NIST 800-53, NIST 800-82, and the IEC 62443 family.
- Experience with SCADA security, SCADA architectures and communication protocols, vulnerability assessments, penetration testing, patch management, and configuration management.
- Cybersecurity qualifications or certifications are preferred.
- Cisco CCNA, CCNA Security, or CCNP certification is preferred.
- Railway experience is preferred; experience in oil and gas, power and energy, or telecommunications sectors may also be considered.
- Fluent English communication skills and the ability to work with customers and international stakeholders.
- Desired knowledge includes wireless communication, trunked mobile radio, public carrier systems, wiring rules, network management, project processes, system integration, FAT, commissioning, quality assurance, and change management.
Benefits
- Full-time position based in Naples, Campania, Italy.
- The role is not remote.
- The employer states that it is an equal opportunity employer and supports a diverse working environment.