Associate Cybersecurity Audit (m/f/d)
Start your cyber
career with us!
As part of the global
Cybersecurity Assurance function, we help Siemens to achieve their goals by
providing objective, factual and independent assurance to the Siemens Managing
Board and Audit Committee. As a business partner to Siemens executive
management, we leverage our expertise in a wide range of topics to create an
impact that drives change. We offer a vibrant and inclusive environment which
ensures a variety of perspectives and enables big picture thinking.To deliver on our
vision of being pioneers in assurance and a talent incubator for Siemens, we
offer a unique Grow and Development Model. We believe in the concept of
lifelong learning and therefore encourage our people towards a mindset where
continuous upskilling and reskilling becomes a natural part of our career. We
invest in our expertise and therefore provide continuous career coaching,
trainings and mentoring, all whilst working with top Siemens business leaders
on multiple high-profile projects around the world.
Our Cybersecurity team
provides core assurance over the cybersecurity health of the company which
includes IT and OT infrastructures, product security, software development and
cloud environments. We are on the lookout for people with a great skillset, an
international mindset and new ideas who understand Siemens businesses and how
Cybersecurity helps enable and increase market value. Are you one of
them?
To discover more about
the global Siemens assurance function click here.
What part will you play?
- Asvaluable member of the assurance team you will be responsible forconducting Cybersecurity assessments across the entire Siemens landscape,including products, services, IT-systems, factories, and softwaredevelopment centers. During this process you will perform ethical hackingactivities, design attack scenarios for state-of-the-art technologies andhighlight important observations to translate technical findings intomanagement information so that they can take effective actions.
- Applyhacking principles and red team methodologies, tools and techniques tomimic real-world threat behaviors faced by the Siemens’s digital environment, e.g. cloud applications, on-premiseinfrastructure, digital products and services.
- Youwork closely with cybersecurity experts from multiple industries toimprove their solutions by tackling the root cause of the issues and findinnovative solutions to modern challenges.
- Youindependently conduct research on latest developments in cybersecuritytechnologies and threats and understand how this is impacting and changingthe Siemens’ environment.
What you need to make real what matters.
- Strongacademic history (Master degree) in IT, Computer Science or other relatedfields; certifications such as GIAC GPEN, OSCP, OSWE, CRTP,eJPT, CREST, etc. are a plus.
- Goodscripting and programming skills and experience with languages such asBash, Python, Powershell, and C++ / C#.
- Solid Background and years of professional experience within Siemens or a relatedindustry in penetration testing with a proven record of continuous careerdevelopment.
- Demonstratedaffinity to learn about the latest trends in cybersecurity and keep up todate in a continuously challenging environment.
- Youhave experience with one or more of the following aspects of penetrationtesting / red teaming: application and software security, EDR andantivirus evasion, C2 setup, automation and scaling of security testing,Active Directory attacks, etc.
- Demonstratedexperience in capture the flag (CTFs) events, bug hunting or vulnerabilityresearch (CVEs) is a plus.
- Youdemonstrate an international mindset and are open to travelling andworking in a diverse team.
- Youhave a great attitude, curiosity, and willingness to learn.
Any questions left?
Click here if you wish to find out more about Siemens before applying.
As an equal-opportunity employer we are happy to consider applications from individuals with disabilities.
Dies ist eine auf dritten Jobbörsen gefundene Stellenanzeige. Wir bieten hierfür keinen Support, können diese aber jederzeit offline stellen. Für weitere Informationen: Datenschutzhinweise | Anzeige melden.