The IT Product Security Manager is responsible for creating Sensata’s Product Cybersecurity Center of Excellence. This team will evaluate and monitor the cyber processes, procedures, risk assessment methods used during Sensata’s product development. This role will establish and manage a team of analysts who will perform the governance and ongoing support and maintenance by monitoring, responding, and managing incidents. The COE will ensure required software or firmware updates due to cyber related incidents are made in a timely basis. The role will interface between the IT team and product focused software analysts, engineers, and leaders in Sensata’s business units. The Product Cybersecurity manager must be able to translate the product risk requirements and constraints of the business into technical control requirements and specifications, aligned with ISO 21434 as well as develop metrics for ongoing performance measurement and reporting. The team will also partner with the business to define supporting processes such as management systems, local vs. distributed cybersecurity management, and define required tooling.
General Responsibilities
Manages, develops and maintains the IT risk and compliance management strategy
Manages and maintains policy, standards, processes and procedures to assess, monitor, report, escalate and remediate IT risk and compliance related issues
Manages IT functional teams in the development, implementation, monitoring and reporting of control processes, documentation and compliance routines
Advises IT and business executives on the status of technology risk and compliance issues based on assessment results and information from various monitoring and control systems
Educates IT and business executives on appropriate mitigation strategies and approaches
Manages the IT component of both internal and external audits, federal and state examinations
Experience / Qualifications
A university degree required (i.e. Bachelors degree) or equivalent relevant work experience.
Business ethics - Ability to practice and behave consistently and effectively in areas of business practice and conflicts of interest
Communication - Ability to communicate effectively by getting the right message across to the right people at the right time on a regular basis
Customer Orientation - Ability to meet customers’ expectations by identifying and anticipating customers’ needs and integrating these into work; ability to develop new added value for customers and act with the customer in mind
Result orientation - Ability to take steps personally to ensure that mutual goals and performance targets are met within the appropriate timeframe
Teamwork - Ability to work with others and work synergistically with fellow team-members
Planning and Organizing - Ability to plan, prioritize and organize work and schedules in all areas to meet requirements
Problem solving - Ability to reach logical conclusions to situations by appropriately analyzing the situation. Balances the benefits, risks and consequences of actions
Time Management - Ability to assessing your ability to manage your time, and the effectiveness of your team to reach department objectives
Conflict management - Ability to recognize and work towards a mutually agreeable solution when confronted with conflict
Decision making - Ability to think through possibilities and make sound decisions with appropriate degree of risk; knows when he / she has enough data to make an informed decision
Resilience - Ability to work under pressure and prioritize
Strategic thinking - Ability to turn strategy into action, to see the big picture and use this ability productively
Managing objectives - Ability to decide what needs to be accomplished and design a plan to achieve the desired results
Team Management - Ability to delegate, motivate, mentor, develop and manage team to achieve objectives. Manage external resource against SLA and operational metrics
Budget Management - Ability to project and present annual operation Expense and Capital budget in departmental budget process
Work with the Sr. IT Director to develop the Product cybersecurity COE and related security projects that address identified risks and security requirements.
Develop the COE team to manage the process of gathering, analyzing, and assessing the current and future threat landscape, as well as providing the business and IT leadership teams with a realistic overview of risks and threats in the product environment.
Assist resource owners and business partners in understanding and responding to product security audit failures reported by auditors.
Provide product security communication, awareness, and training for audiences, which may range from senior leaders to operational staff.
Serve as an active and consistent participant in the overall cybersecurity governance process.
Provide support and guidance for legal and regulatory compliance efforts, including audit support.
Recommend and coordinate the implementation of technical controls to support and enforce defined product security policies.
Research, evaluate, design, test, recommend or plan the implementation of new or updated information product security hardware or software, and analyze its impact on the existing environment; provide technical and managerial expertise for the administration of product security tools.
Develop a strong working relationship with the product engineering teams to develop and implement controls and configurations aligned with product security policies and legal, regulatory and audit requirements.
Manage and coordinate operational components of product cybersecurity incident management, including detection, response and reporting.
Maintain a knowledgebase comprising a technical reference library, product security advisories and alerts, information on security trends and practices, and laws and regulations.
Monitor the cybersecurity security testing procedures to verify the security of the systems, applications, and consult on the management of the remediation of identified risks.
#LI-SS1
Smarter TogetherCollaborating at Sensata means working with some of the world’s most talented people in an enriching environment that is constantly pushing towards the next best thing
Employees work across functions, countries and cultures gaining new perspectives through mutual respect and open communication
As OneSensata, we are working together to make things work together
Click here to view Sensata Recruitment Privacy Statement (https://www.sensata.com/sensata-recruitment-privacy-policy)
Click here to view our Sensata Recruitment Privacy Statement for China (https://www.sensata.com/sites/default/files/a/sensata_china_recruitment_privacy_policy.pdf)
NOTE: If you are a current Sensata employee (or one of our Affiliates), please back out of this application and log into Workday via the Company Intranet to apply directly. Type "FIND JOBS" in the Workday search bar.
Return to Sensata.com
Read our Fraud Advisory (https: //www.sensata.com/careers)
We are ready for the next century.Our vision is to be a world leader in mission-critical sensing and electrical protection while satisfying the world’s growing need for safety, efficiency and a clean environment and being a partner, employer and neighbor of choice. Our sensors are the fundamental building blocks needed for a smart, connected, electrified and, ultimately, autonomous world. Click here to find out more about our Future Focus (https://www.sensata.com/about#future)
Sensing is what we do.In fact, our name Sensata comes from the Latin word sensate for ‘those gifted with sense’. Our focus on sensing is also reflected in our logo, which spells Sensata in Braille.
Sensata Technologies is a world leader and early innovator in mission-critical sensors and controls designed to make the world cleaner, safer and more efficient. Mission-critical means products that are essential and difficult to do. You’ll find our 47,000 unique products in many applications anywhere from automotive braking systems to aircraft flight controls.
Sensata devices are in systems that protect people and the environment, so what we do matters. We take pride in knowing our technologies improve safety, efficiency and comfort for millions of people every day.
Note to applicants for positions in the United States:Sensata Technologies, Inc. (US) is proud to be an Equal Opportunity and Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran or any other basis protected by federal, state or local law.
View The EEO is the Law poster (https://www.dol.gov/ofccp/regs/compliance/posters/ofccpost.htm) and its supplement (https://www.dol.gov/ofccp/regs/compliance/posters/ofccpost.htm) .
Sensata Technologies, Inc. (US) participates in E-Verify. View the E-Verify posters (https://www.e-verify.gov/sites/default/files/everify/posters/EVerifyParticipationPoster.pdf)
If you are an individual who requires a reasonable accommodation in connection with the hiring process and/or to perform the essential functions of the position for which you applied, please make a request to the recruiter or contact [email protected]
Diversity StatementWe are dedicated to ensuring our employees feel a sense of belonging (https://www.sensata.com/sites/default/files/a/Sensata%20DEI%20Policy%20FINAL.pdf) and respect every day. We believe that every individual has unique insights that others can learn from. Working at Sensata means you can bring your whole self to the table. Our goal is to achieve fair representation of women, minorities, veterans, people with disabilities, and all types of diversity among all levels in our organization.
Note to applicants for positions in the United States:
Sensata Technologies, Inc. (US) is proud to be an Equal Opportunity and Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, age, national origin, protected veteran status, disability or any other basis protected by federal, state or local law.
View The EEO is the Law poster https://www.dol.gov/ofccp/regs/compliance/posters/ofccpost.htm and its supplement https://www.dol.gov/ofccp/regs/compliance/posters/ofccpost.htm
Sensata Technologies, Inc. (US) participates in E-Verify. View the E-Verify posters https://www.e-verify.gov/sites/default/files/everify/posters/EVerifyParticipationPoster.pdf