All open jobs
TE Connectivity

Chief Information Security Officer - Product & Embedded Systems (Hampton, VA, US

United States · full-time · remote
$175K–260Kvia HimalayasBachelor's degree

First seen Sep 11 · seen live today · via Himalayas

Skills mentioned

product management

The posting, as published

At TE, you will unleash your potential working with people from diverse backgrounds and industries to create a safer, sustainable and more connected world. ​ Job Overview TE Connectivity Ltd. is a $16 billion global technology and manufacturing leader creating a safer, sustainable, productive, and connected future. For more than 75 years, our connectivity and sensor solutions, proven in the harshest environments, have enabled advancements in transportation, industrial applications, medical technology, energy, data communications, and the home. With 80,000 employees, including more than 8,000 engineers, working alongside customers in approximately 140 countries, TE ensures that EVERY CONNECTION COUNTS. Learn more at www.te.com BUSINESS UNIT DESCRIPTION Digital Data Networks (DDN) business in TE Connectivity you will play a key role in the design of products for high-speed products in the connector, cable assembly, and/or radio system industry—targeting high-speed communications and connectivity within datacenters and wireless infrastructure. ROLE DESCRIPTION The Cyber Security Officer (Product & Embedded Systems is responsible for defining, implementing, and governing the cybersecurity strategy across all product development activities within the DDN Business Unit, with a focus on high-speed connectivity solutions used in data center environments. This role ensures that products containing integrated circuits, firmware, and embedded software are designed, validated, and maintained to mitigate cyber threats and prevent unauthorized access or exploitation. The position operates at the intersection of hardware, firmware, and system-level architecture, addressing cybersecurity risks throughout the full product lifecycle—from concept through deployment and sustainment. The Cyber Security Officer will define and govern the cybersecurity policies, procedures and governance model and oversee the incorporation into the LeanPD process for applicable products. Job Requirements 1. Product Security Strategy & Governance Develop and lead the business unit’s product cybersecurity strategy aligned with business objectives and customer requirements. Establish cybersecurity policies, standards, and secure design principles for hardware, firmware, and embedded software. Define security architecture requirements for high-speed connectivity products (e.g., cables, connectors, active interconnects, modules). Ensure alignment with industry standards (e.g., secure development lifecycle, zero trust principles). 2. Secure Product Development Lifecycle (SPDLC) Integrate cybersecurity into all phases of New Product Introduction (NPI). Define and enforce secure coding standards, threat modeling, and design reviews. Ensure cybersecurity requirements are embedded in system and component specifications. Partner with engineering teams to implement security-by-design practices. 3. Threat Modeling & Risk Assessment Identify and evaluate potential attack vectors across: Embedded firmware ASIC/FPGA interfaces High-speed data paths External interfaces (I/O, management interfaces, etc.) Conduct product-level threat modeling and risk assessments. Define mitigation strategies and validate their effectiveness. 4. Vulnerability Management & Testing Establish processes for: Static and dynamic code analysis Penetration testing (internal and third-party) Firmware and hardware security validation Lead root cause analysis and remediation of identified vulnerabilities. Maintain vulnerability disclosure and response processes. . 5. Supply Chain & Component Security Define cybersecurity requirements for suppliers of ICs, firmware, and software components. Assess third-party components for security risks (including open-source software). Implement secure provisioning, authentication, and anti-tampering mechanisms. 6. Product Architecture & System Security Collaborate with system architects to: Design secure communication protocols Implement encryption, authentication, and key management Ensure secure boot, firmware integrity, and update mechanisms Address risks associated with data center deployment environments (e.g., lateral movement, hardware-based attacks). 7. Incident Response & Monitoring Develop and maintain product cybersecurity incident response plans. Support investigation of field incidents and potential breaches involving company products. Coordinate with customers and internal teams during security events. 8. Compliance & Certification Ensure products meet relevant cybersecurity regulations and standards (customer-driven and regulatory). Support audits, certifications, and customer security assessments. Maintain documentation for compliance and traceability. 9. Training & Culture Drive cybersecurity awareness across engineering and product teams. Train engineers on secure design practices and emerging threats. Act as a subject matter expert and advisor to leadership. What your background should look like Bachelor’s or Master’s degree in Computer Engineering, Electrical Engineering, Cybersecurity, or related field 10+ years in cybersecurity, with strong emphasis on embedded systems and/or hardware-integrated products. Experience in high-speed electronics, data center infrastructure, or networking products strongly preferred. Proven experience implementing secure development lifecycle practices. Technical Expertise Embedded systems security (firmware, RTOS, low-level software) Hardware security (ASICs, FPGAs, side-channel risks, secure elements) Cryptography, secure boot, authentication protocols Network and data path security in high-speed systems Vulnerability assessment tools and penetration testing methods Secure firmware update and key management systems Frameworks Knowledge Secure development lifecycle frameworks Product security standards relevant to data center and networking environments Zero Trust Architecture concepts Standards Knowledge ISO/IEC 27001:2022 : The premier international standard, providing a framework for setting up an Information Security Management System (ISMS) to identify and mitigate risks. ISO/IEC 27017/27018 : Guidelines specifically for cloud security controls and the protection of personal data in the cloud. NIST Cybersecurity Framework (CSF) 2.0 : A voluntary, flexible framework focused on protecting critical infrastructure using five core functions: Identify, Protect, Detect, Respond, and Recover. NIST SP 800-53 : Prescribes security and privacy controls for information systems, often mandatory for U.S. federal data centers. SOC 2 Type II : Attestation reports that evaluate internal controls regarding security, availability, and confidentiality. ANSI/TIA-942 : Establishes standards for data center design, construction, and operation, including physical security requirements for Tiers 1-4. Leadership & Soft Skills Strong cross-functional leadership (engineering, quality, product management) Ability to influence design decisions without direct authority Excellent communication skills for both technical and executive audiences Analytical mindset with strong problem-solving capability Ability to prioritize responsibilities in a fast-paced dynamic work environment. Willingness to travel as required, ~30% WE VALUE Knowledge in data center architecture, connectors, wire harnesses, busbars, high speed connectivity products, high voltage, electronics, measurement & signal processing. Experience in product development for data center applications #TANAUV Competencies SET : Strategy, Execution, Talent (for managers) ABOUT TE CONNECTIVITY TE Connectivity plc (NYSE: TEL) is a global industrial technology leader creating a safer, sustainable, productive, and connected future. As a trusted innovation partner, our broad range of connectivity and sensor solutions enable the distribution of power, signal and data to advance next-generation transportation, energy networks, autom

Similar open roles