Project Cybersecurity Engineer - Bengaluru, India - Alstom

    Alstom
    Alstom background
    Description
    Req ID:446808We create smart innovations to meet the mobility challenges of today and tomorrow.

    We design and manufacture a complete range of transportation systems, from high-speed trains to electric buses and driverless trains, as well as infrastructure, signalling and digital mobility solutions.

    Joining us means joining a truly global community of more than

    75 000

    people dedicated to solving real-world mobility challenges and achieving international projects with sustainable local impact.

    Job Title & PurposeJob TitleEN-XY-01:
    Cybersecurity Engineer (CyEng)Purpose of the JobPerform Cybersecurity activities during contract executionPosition in the OrganisationOrganisation ReportingHierarchical manager:
    Project Cybersecurity Manager (PCyM)Network & LinksProject or Program Manager and teamProject/Program Cybersecurity ManagerPlatform Cybersecurity ManagersRegion Cybersecurity ManagersCybersecurity Management OfficeMissionsPerformance Measurement/KPI'sProvide requested deliverable in time with adequate qualityRelevancy of proposed technical solutionContribution to peer reviewsResponsibilitiesContribute to Project Cyber security activities such as:
    Cybersecurity Risks AssessmentCybersecurity Design (Security Architecture principles, additional security controls)Cybersecurity EvaluationCybersecurity 3rd party managementCybersecurity Vulnerability Management and incident resolutionOptionally, or if expert :
    Participates to norms & standards committeeEnsure cyber trend watch (new threats, new techno, ...)
    Contribute to Cybersecurity process and standard definitionSupport and deploy cybersecurity knowledge and processes (coaching, awareness & trainings)Peer review of cyber deliverables from other Projects/ProgramsJob SpecificationsKnowledge & Experience :

    Educational Requirements:
    Engineering degreeTechnical Knowledge / ExperienceFive+ years of experience related to Cybersecurity or hacking in generalMain standards and regulations, such as:
    ISO 2700X, 62443, NIST, NIS, French LPMKnowledge of the security market and its key players;Knowledge of some security solutions and areas, such as:
    BRP / DRP, GRC, , PKI, SOC, IDS / IPS, etc.

    Technical proficiency in at least 2 of the following fieldMethods of risk analysis (ISO 27005, Ebios, etc.)Architecture concepts and techniques of systems and networks, operating systems and associated programming languages.

    Knowledge of the main techniques for evaluating systems securityKnowledge of tools of tools such as Wireshark, Nmap, OpenVAS, Nexpose, Metasploit, nessus, BURPEncryption issues and tools ( Truecrypt, Openssl)Low level filtering (Firewall owners, Iptables, OpenVPN)Intrusion testing techniques.

    Knowledge of Experience in embedded or industrial systems (railway / aeronautics ...) is a plusTeam size

    : 0Innovation

    :

    Research, Patents etcAn agile, inclusive and responsible culture is the foundation of our company where diverse people are offered excellent opportunities to grow, learn and advance in their careers.

    We are committed to encouraging our employees to reach their full potential, while valuing and respecting them as individuals.


    Job Type:
    ​Experienced​


    Job Segment:
    Research