Senior Consultant - Cybersecurity

We are seeking an experienced cybersecurity professional to support CRA-related evaluation services for customers across Greater Asia. The role focuses on conducting practical evaluations, such as process assessments and gap analyses, helping customers understand their readiness against CRA requirements and identify areas for improvement.

  • Assess product classification, applicable CRA obligations, and conformity assessment routes for products with digital elements.
  • Plan and lead customer evaluation projects, including scope definition, stakeholder interviews, technical discussions, evidence review, and final report delivery.
  • Evaluate customer cybersecurity processes and evidence, including risk assessments, technical documentation, secure development lifecycle practices, and vulnerability handling processes.
  • Perform process assessments and gap analyses against CRA requirements, identifying compliance gaps and improvement opportunities.
  • Prepare clear evaluation reports, findings, and actionable recommendations for customers.
  • Support proposal development, pre-sales activities, and customer meetings.
  • Maintain up-to-date knowledge of CRA requirements and relevant cybersecurity standards.

Required

  • Bachelor's degree in Engineering, Computer Science, IT, Cybersecurity, or a related field.
  • 5+ years of experience in cybersecurity, assessment, audit, or compliance.
  • Experience conducting process assessments, evaluations, or gap analyses.
  • Knowledge of cybersecurity principles, secure development, and risk management.
  • Experience with CRA or other cybersecurity regulatory compliance programs, including product cybersecurity evaluations.
  • Experience in implementing cybersecurity for IoT devices or industrial control devices
  • Experience reviewing product cybersecurity risk assessments, technical documentation, SBOMs, secure development lifecycle evidence, and vulnerability management processes.
  • Strong communication and customer-facing skills.
  • Fluent in English (written and spoken).

Preferred

  • Experience with CRA or other cybersecurity regulatory compliance programs, including product cybersecurity evaluations.
  • Experience in implementing cybersecurity for IoT devices or industrial control devices
  • Experience reviewing product cybersecurity risk assessments, technical documentation, SBOMs, secure development lifecycle evidence, and vulnerability management processes.
  • Familiarity with the Cyber Resilience Act (CRA) and relevant cybersecurity standards, including ISO 21434, IEC 62443, EN 18031, and ETSI EN 303 645

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available