Job
- Level
- Experienced
- Job Field
- IT, Embedded, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Gratkorn
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will define the compliance strategy for the Cyber Resilience Act, implement security architecture principles by conducting threat analyses, setting requirements, and collaborating with global teams.
Your role in the team
- Define and drive the Cyber Resilience Act (CRA) compliance strategy for NXP's MCU and MPU product portfolios within the Security Architecture team.
- Influence security architecture decisions across multiple product lines and business units.
- Translate regulatory requirements into actionable security controls, architecture principles, and engineering requirements.
- Drive security-by-design methodologies across both legacy products and new product introductions (NPI).
- Lead system-level threat modeling, attack surface analysis, and security risk assessments for complex embedded and semiconductor-based products.
- Establish security requirements and ensure end-to-end traceability throughout the development lifecycle.
- Support audit readiness through security evidence generation, compliance documentation, and risk management activities.
- Collaborate with product architects, engineering teams, product management, compliance experts, and senior stakeholders worldwide.
- Drive adoption of security best practices, frameworks, and standards across NXP's product portfolio.
This text has been machine translated. Show original
Our expectations of you
Education
- Bachelor's, Master's, or PhD degree in Computer Science, Cybersecurity, Information Security, Software Engineering, Electrical Engineering, Computer Engineering, Embedded Systems, or a related technical field.
Qualifications
- Proven expertise in threat modeling, secure system design, and security risk assessment.
- Deep understanding of security technologies such as: Secure Boot, Cryptography and Key Management, Firmware Protection, Device Identity and Root of Trust, Secure Update Mechanisms.
- Strong analytical skills with a system-level view of security challenges.
- Excellent stakeholder management and communication skills.
- Ability to drive security initiatives across global and cross-functional teams.
Experience
- Strong experience in embedded systems security and software and/or hardware security architecture.
- Experience translating security requirements into practical technical architectures and implementations.
- Experience in one or more of the following areas is highly desirable: Security architecture for embedded, IoT, automotive, or industrial systems, Security certification frameworks such as: PSA Certified, SESIP, Common Criteria, Product security regulations and compliance frameworks, Cyber Resilience Act (CRA) implementation or preparation activities, Secure development lifecycle (SDL) practices, Security assessments, penetration testing, or vulnerability analysis, Secure hardware/software co-design.
This text has been machine translated. Show original
What we offer
- NXP provides market competitive compensation according to the benchmarking of the electronic and semiconductor industry.
- Due to the Austrian Equal Treatment Act, we are obliged to specify the employment group of our applicable collective bargaining agreement (CBA) "Kollektivvertrag für Angestellte Gewerbe und Handwerk und in der Dienstleistung." This position (full-time) is classified in Employment Group V after 6 years.
- Your individual experiences and expectations will be considered in the application process.
- Moreover, we provide attractive benefits to our employees such as home office, flexible working hours, meal benefits, and more.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Food & Drink
More net
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
NXP Semiconductors Austria
Gratkorn
NXP Semiconductors is a global leader in microelectronics with subsidiaries in more than 25 countries. The Gratkorn site near Graz is the Austrian headquarters of the international group and the competence center for secure contactless identification systems.
Description
- Founding year
- 2006
- Language
- English
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Industry, Production
Employer reviews
by devworkplaces.com
Total
(2 Reviews)3.7
Engineering
3.4Culture
3.7Workingconditions
4.2Career Growth
3.5