Overview:
With their headquarters in Europe, our client develops and tests equipment that will shape the mining industry for years to come. There are only a handful of companies pushing the limits of BEV mining technology, and their Advanced Engineering team in the Vancouver area are on the forefront of this technology. They currently have an opening for a Product Cybersecurity Specialist to join their growing team.
Summary:
The Product Cybersecurity Specialist serves as the cybersecurity focal point within the project team developing battery-electric mining equipment and supporting systems. The role translates cybersecurity risks and specialist guidance into practical requirements, coordinates security activities with engineering, and tracks issues through implementation and verification.
Working with an external Cyber Resilience Act (CRA) consultant and product compliance colleagues, the specialist helps the team develop and maintain secure products that support safe, productive, lower-emission mining.
Responsibilities:
- Coordinate cybersecurity activities within the project, agreeing deliverables, contributors, and milestones with the project lead and tracking progress through release.
- Translate guidance from the external CRA consultant and product compliance team into product requirements, engineering actions, and evidence needs, seeking clarification where applicability or interpretation is unresolved.
- Work with systems, firmware, software, and hardware contributors to identify threats, assess product cybersecurity risks, and document proposed mitigations.
- Consider device interfaces, communications, remote access, software dependencies, and intended installation and service environments.
- Participate in architecture and design reviews to help teams select practical security measures and evaluate their effects on equipment operation, safety, and serviceability.
- Maintain traceability between cybersecurity risks, requirements, implementation actions, and verification results within the project's engineering processes.
- Coordinate security verification with developers, verification and validation colleagues, and specialist test providers; review findings and track corrective actions through retesting.
- Coordinate collection and review of supplier cybersecurity information and software component inventories, following up on gaps that affect the project.
- Assess the cybersecurity implications of design changes, newly identified vulnerabilities, and relevant field findings with the responsible engineering and support teams.
- Support remediation planning, secure update arrangements, and escalation through the organization's vulnerability and incident processes.
- Assemble and maintain project cybersecurity records and evidence for review by product compliance and the CRA consultant, identifying missing information before project decision points.
- Communicate cybersecurity status, unresolved risks, and required decisions to the project lead and relevant specialists, and help team members apply agreed security practices in their daily work.
Essential Qualifications:
- Practical experience assessing cybersecurity risks, defining controls, and working with technical teams to verify that identified issues have been addressed.
- Understanding of embedded devices, industrial automation, connected equipment, or comparable engineered products, including how hardware, software, communications, and external interfaces interact.
- Ability to translate security findings and specialist advice into clear engineering requirements, acceptance criteria, and prioritized actions.
- Working knowledge of secure development and vulnerability management, including access control, secure communications, software updates, and third-party software dependencies.
- Ability to examine system diagrams, interface descriptions, technical documentation, and test results and discuss security implications with developers and engineers.
- Ability to evaluate security measures in the context of equipment safety, availability, performance, maintainability, and field-service constraints.
- Clear technical writing, collaborative problem-solving, and disciplined follow-through across multiple contributors.
- Relevant education in cybersecurity, computer science, electronics, software, or a related discipline, or equivalent practical experience.
Preferred Qualifications:
- Experience supporting cybersecurity during the development and release of embedded or industrial products.
- Familiarity with the EU Cyber Resilience Act or experience translating product cybersecurity obligations into engineering activities and evidence.
- Familiarity with IEC 62443, particularly secure product development and component security requirements.
- Experience with embedded Linux, microcontrollers, industrial communications, device diagnostics, or remote service interfaces.
- Experience with threat modeling, security testing, software bills of materials, or vulnerability remediation for released products.
- Experience using requirements-management, issue-tracking, and configuration-control tools to maintain traceability between requirements, changes, and verification evidence.
- Experience with industrial machinery, mobile equipment, charging systems, batteries, or other products with long service lives.
Other Information:
- Salary range $95,000 - $120,000
- Competitive benefits program, flexible schedule, company events, catered meals, and wellness programs are some of the perks of working with our client.
- Our client believes in pay equity, fairness and transparency, and their ranges are determined by role, level, and location. The actual compensations offered to the final candidate is based on the ranges shown, and will vary depending on the candidate's relative experience,qualifications, and anticipated level of performance.
Thank you for your interest in this opportunity. If you are selected to move forward in the process, we will contact you directly. If you do not hear from us, we encourage you to continue visiting our website for other roles that may be a good fit.
For more information about TEEMA and to consider other career opportunities, please visit our website at www.teemagroup.com