Security Analyst
UL Solutions
- Leiden, Zuid-Holland
- Vast
- Voltijds
- Conduct IT product security evaluation work activities based on scheme requirements, such as Common Criteria, Common.SECC etc.
- Perform customer site audit when needed: it requires travelling to customer premises.
- Investigate possible attack scenarios. Provide support for the penetration tester in charge of product testing - by interpreting the code review findings and compliance checking results, orienting the attack paths and analyzing the test results.
- Formal report writing in line with customer and certification scheme requirements.
- Delivery of customer projects on time.
- Maintain/improve technical knowledge by attending educational workshops, reviewing professional publications, obtaining applicable certifications and participating in professional societies and cross-departmental task forces.
- Contribute to internal work processes by improving tools to evaluate efficiency, report writing and technical training.
- A Degree (or equivalent) in Information Technology, Cryptography, Computer Science or equivalent proving your analytical skills and technical approach.
- 2+ years of experience in Information Security, Testing Inspection Certification Industry, Common Criteria evaluation experience is the best and ISO 27001 auditing will be an advantage.
- COMMON CRITERIA NETHERLANDS EVALUATOR (under NSCIB) Certified is an added advantage.
- Experience in evaluating/testing/developing Smartcard and similar devices: IC, SoC, MCU, Embedded Software will be an advantage.
- Comfortable in analyzing various standards, frameworks, and regulations
- Will be able to demonstrate aptitude and a strong potential to learn quickly.
- High analytical skills, and attention to detail.
- Ability to work independently, to be innovative and creative.
- Ability to communicate with clarity and efficiency.
- Enjoys working in a team and engaging their colleagues.
- Comfortable in trying yourself in new areas without necessarily knowing everything and can figure out things as you go.
- Like working towards a larger goal and willing to take the initiative into your own hands.
- Good at communicating and can convey messages to both technical and business audiences.