About Us
A career at Hitachi Rail will help create a legacy. With operations in every corner of the world, our work goes to the cutting-edge of digital transformation and technology. From the multi-cultural strength of our global organization to the sustainable and innovative ways we work to bring people together, there’s something for everyone to get stuck into. And that’s where you come in.
Job responsibilities include:
- Coordinate the implementation of the company’s Security Rules and Guidelines for the given application, with the help of the engineering team;
- Preparing reports and KPIs presenting cybersecurity posture;
- Define objectives, technical work, and timeline for developing security architectures, roadmaps, and requirements;
- Be responsible for the analysis, estimation of implementation and improvement of the security level of the application;
- Support and coaching of developers and testers;
- Perform cybersecurity assessments of environments conducting technical security tests;
- Preparing vulnerabilities assessment reports;
- Build relationships with program, engineering, operations, security, and CISO teams to understand how to develop plans that effectively manage security risks;
We are looking for an outstanding applicant who can demonstrate the following qualities:
Professional competencies
Education:
- Technical study of Computer Science, Informatics, Mathematics, Electronics or similar)
Requested technical competencies:
- Advanced Networking understanding
- Knowledge of security environments, including networks, operating systems (Windows / Linux / Android), databases or applications;
- Experience with Kubernetes and Containers
- Any Programming experience in Bash or Python
- Advanced Experiences with Linux command line, packaging and file systems
- Knowledge of OS Security: Hardening, Firewall or IDS
- Experience in software provisioning and automation using Ansible
- Experience deploying or supporting security practices and technologies such as risk or vulnerability assessments, antivirus software, centralized alert logging and monitoring in ICS environments;
- Understanding of security by design principles and architecture level security concepts;
Would be a plus:
- Previous Cybersecurity experience - comprehensive working knowledge of one or more of the following: IEC 62443/ISA 99, ISO 27001, NIST SP 800-82, CPNI Good Practice;
- Experience with Maven/Gradle or other building tools
- Knowledge of Git, Bitbucket/Gitlab, branching strategies
- IAM with Keycloak and/or LDAP
- Knowledge of PKI Infrastructure
- Concepts of GeoRedundancy
- Knowledge of Jenkins Pipeline and Groovy
- Knowledge of virtualization (QEMU, Proxmox, or VSphere)
Personal competencies
- Intercultural communication, including the empathy to work in an international team
- Willingness to travel
- Solution-oriented while being open to embracing new technologies
- Excellent cognitive aptitudes
- Interpersonal qualities (sociability, empathy, flexibility)
- Self-management qualities (consciousness, tolerance)
- Good work attitude (task orientation, assertiveness)
- Ability to work independently on multiple high-priority projects;
- Strong problem-solving skills;
Languages:
English – business fluent