This is a data security manager role in automotive R&D industry. The target is to establish and maintain robust data security governance across vehicle development lifecycle, while ensuring homologation and compliance with GB/T 44464, UN R155, GDPR and regional regulations while enabling secure innovation for next-generation intelligent vehicles.
Key Tasks:
1.Responsible for development with target of GB/T 44464 homologation for all CEA&MM platforms with consideration of compliance, timeline and cost
2.continuous updating DPIA(Data Protection Impact Assessment) )with consideration of newly published data security relevant regulations, conduct the implementation of DPIA in CEA ONE TEAM
3.Responsible for: privacy by design concept development, requirements derived from DPIA and regulations, requirements handshake with stakeholders, support requirement implementation tracking in IPDT(Integrated Product Development Team).
4.Steer CEA data security project house, organize regular meeting, create data security development timeplan and ensure implementation and timely delivery
5.Support process and methodology optimization with consideration of benchmark in China market and DSMS
6.Support on the on-site supplier security audit
Qualification and skills:
1.University Studies: Computer Science, Software engineering, E/E, Mechanical Engineering, Network Engineering (e.g. Bachelor or Dipl.-Ing. degree)
2.3+ years experience in automotive data security R&D area
OEM/Tier1 experience preferred with:
privacy by design /intelligent cockpit/ADAS system
3.Solid knowledge in cyber/data security relevant requirements from GB 44495 and GB/T 44464
Hands-on experience on the implementation of DSMS/UN R155/GB 44495/GB/T 44464
Familiar with common data security solutions incl. in vehicle and cloud technologies.
Experience of leading cross-entity project
Very strong PPT and presentation skill
Fluent communication skill in mandarin and english, german would be a plus
Relevant industry certification preferred: CISSP and/ or CISM,CISA and other security /privacy related certifications.