What to Expect
Tesla's mission is to accelerate the world's transition to sustainable energy, to facilitate this the Energy and Charging teams are delivering leading edge EV charging technologies and critical energy infrastructure. Security is a crucial part of the strategy, the team are looking for an exemplary engineer who's passionate about Cyber Security, willing to challenge the norm, seek new technologies/processes, and contribute to raising the industry bar. Specifically, this role will drive North America and Asia Pacific cybersecurity strategies, processes, and product certifications, while supporting the EMEA team. They'll represent the regulatory compliance team in cybersecurity initiatives, manage product compliance plans, enterprise, and external stakeholders.
What You'll Do
- Lead North America and Asia Pacific cybersecurity end-to-end compliance processes in close partnership with EMEA, covering Energy, Charging, Digital Services, and Optimus products worldwide
- Develop and execute the compliance strategy for current and upcoming cybersecurity regulations and frameworks, including the Cyber Resilience Act (CRA), NIS2, Radio Equipment Directive (RED) delegated acts, NIST CSF, CAF, ISO 27001, and SOC 2
- Serve as the primary senior technical point of contact for cybersecurity-related inquiries, audits, and investigations from market surveillance authorities and other regulatory bodies
- Partner with Nationally Recognized Testing Laboratories (NRTLs), Notified Bodies (NBs), and third-party labs to achieve enterprise- and product-level cybersecurity compliance and certification
- Plan, coordinate, and execute vulnerability assessments and penetration testing to proactively identify and mitigate security risks in products and systems
- Translate complex cybersecurity standards, including EN 18031, ETSI EN 303 645, IEC 62443, UL 2900, and EN 40000, into actionable design, validation, and testing requirements for hardware and software engineering teams
- Develop and maintain test procedures, methodologies, and tools for product homologation and ongoing compliance verification, including end-to-end methods targeting cyber vulnerabilities across hardware, firmware, software, and connected system interfaces
- Collaborate with cross-functional development teams to design, build, and validate security controls throughout the product lifecycle, and contribute to cybersecurity design and architecture that improve resilience and auditability
- Monitor the global threat landscape and evolving regulations, and participate in committees and trade groups to inform product development and influence industry best practices and long-term compliance strategy
- Articulate complex security risks and compliance requirements clearly to technical and non-technical stakeholders, including executive leadership
What You'll Bring
- Bachelor's Degree in Cybersecurity, Computer Science, Electrical Engineering, or a related technical discipline or equivalent experience
- 7+ years of experience in product cybersecurity, regulatory approval, compliance, or homologation, with demonstrated lead-level ownership of certification programs and cross-functional initiatives
- Expert-level knowledge of cybersecurity principles and standards applicable to IoT, EV charging, and connected industrial products, including IEC 62443, ETSI EN 303 645, EN 18031, EN 40000, and UL 2900; certified security professional preferred
- Deep, practical understanding of worldwide cybersecurity legislation and frameworks, including CRA, RED, NIS2, CAF, ISO 27001, SOC 2, and NIST CSF
- Hands-on experience with security assessment tools and methodologies, including vulnerability scanning, penetration testing coordination, and threat modeling
- Proven ability to lead complex, multi-stakeholder certification projects with test labs, Notified Bodies, and regulatory authorities, including taking connected or industrial products through processes such as CE marking and UL
- Experience responding to inquiries or investigations from government or market surveillance authorities is a significant advantage
- Knowledge of operating systems and networking (Windows, Unix/Linux, TCP/IP, DNS, DHCP, LDAP) and hands-on experience with software engineering components and system interactions in complex, connected systems
- Programming and scripting skills, such as Python, preferred
- Strong communication skills with attention to detail, and the ability to articulate complex security and compliance topics while navigating ambiguity in evolving standards and regulatory requirements
Compensation and Benefits
Benefits
Along with competitive pay, as a full-time Tesla employee, you are eligible for the following benefits at day 1 of hire:
- Medical plans > plan options with $0 payroll deduction
- Family-building, fertility, adoption and surrogacy benefits
- Dental (including orthodontic coverage) and vision plans, both have options with a $0 paycheck contribution
- Company Paid (Health Savings Accounts) HSA Contribution when enrolled in the High-Deductible medical plan with HSA
- Healthcare and Dependent Care Flexible Spending Accounts (FSA)
- 401(k) with employer match, Employee Stock Purchase Plans, and other financial benefits
- Company paid Basic Life, AD&D
- Short-term and long-term disability insurance (90 day waiting period)
- Employee Assistance Program
- Sick and Vacation time (Flex time for salary positions, Accrued hours for Hourly positions), and Paid Holidays
- Back-up childcare and parenting support resources
- Voluntary benefits to include: critical illness, hospital indemnity, accident insurance, theft & legal services, and pet insurance
- Weight Loss and Tobacco Cessation Programs
- Tesla Babies program
- Commuter benefits
- Employee discounts and perks program
Expected Compensation
$120,000 - $252,000/annual salary + cash and stock awards + benefits
Pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. The total compensation package for this position may also include other elements dependent on the position offered. Details of participation in these benefit plans will be provided if an employee receives an offer of employment.
|