Inside the Role
Our team owns the cybersecurity practice for DTNA's Autonomous Technology Group. We are a small team that respects and learns from established approaches, but we are not afraid to build our own path where the established one ends. We are curious by nature and encourage experimentation. The team is at its best when someone asks, "what if we tried it this way instead?" Good ideas come from questioning status quo! We built our vehicle cybersecurity risk modeling methodology from the ground up and completed the first full vehicle risk assessment of Daimler Truck's autonomous vehicle platform. Version 1 is done, but we are not satisfied yet. We believe in what we built, but are looking for someone who will challenge it to make it better. The next phase of work is about making the methodology scale and tightening the connection between risk analysis and implementation evidence. That means extending the model to additional vehicle platforms, automating manual steps in the tooling, and closing the gaps between what the risk assessment says should exist and what can be demonstrated in our evidence chain. You will have real ownership of the risk model and wide latitude to improve the methodology, the tools, and the standards. Your decisions will show up in Daimler Truck products globally.
Posting Information
We provide a scheduled posting end date to assist our candidates with their application planning. While this date reflects our latest plans, it is subject to change, and postings may be extended or removed earlier than expected.
We Take Care of Our Team
What You Drive at DTNA
- The Principal Product Security Risk Model Owner will serve as the technical authority for cybersecurity risk modeling methodology and tooling.
- TARA methodology ownership. Define, document, and continuously improve DTNA's threat analysis and risk assessment process. Ensure the methodology is rigorous, repeatable, and auditable across the full vehicle cybersecurity case lifecycle.
- Risk modeling tooling. Lead the design and development of internal tooling that supports structured risk assessment, attack feasibility analysis, and traceability from threat scenarios through implementation requirements.
- ISO/SAE 21434 compliance. Serve as a subject matter expert on ISO/SAE 21434. Ensure risk modeling methodology and outputs satisfy the standard's work product and evidentiary requirements.
- Threat intelligence and attack feasibility analysis. Maintain current awareness of the threat landscape relevant to commercial and autonomous vehicles. Translate that awareness into updates to attack feasibility ratings, threat scenarios, and risk treatment decisions.
- Authoring standards. Define and enforce quality standards for cybersecurity work products including threat scenarios, risk assessments, and security requirements. Provide technical review and guidance to maintain consistency across the team.
- Traceability and lifecycle management. Ensure risk model outputs maintain clean connections to upstream functional assets and downstream implementation requirements, test cases, and evidence artifacts across toolchains (IBM ELM, SharePoint, TARA tooling).
- Cross-functional collaboration. Work with systems engineering, Truck Technology, and Product Validation teams to integrate cybersecurity risk assessments Automotive cybersecurity is a young discipline. We do not expect candidates to check every box below. These requirements are structured around what we consider foundational versus what can be developed on the job. into vehicle development workflows.
Knowledge You Should Bring - Bachelor's Degree in Engineering, Computer Science or other STEM type degree and 5-7 years of related experience is required.
- Strong Technical Writing Skills- Work products must be clear, consistent, and defensible under audit. Prior experience producing engineering specifications, test procedures, or diagnostic documentation is relevant.
- Automotive System Architecture- Strong understanding of automotive system architecture, including ECU design, in-vehicle network topologies, runtime communication, and diagnostic protocols.
- Embedded Systems Experience- Hands-on experience developing, integrating, or diagnosing automotive embedded systems. Worked close enough to hardware and software to understand how vehicle systems behave under normal and abnormal conditions.
- Attacker Mindset- The ability to look at a system and reason about how it could be manipulated or misused, where boundaries are weak, and recognize potential design flaws. This may come from a formal cybersecurity background, a test and validation background, or some other demonstrated aptitude.
- Resourcefulness with Tools and Processes- We value engineers who adapt existing tools to new purposes and build creative solutions when off-the-shelf options fall short.
- Standards Familiarity- Comfort working within a standards-driven engineering environment is essential. Familiarity with ISO/SAE 21434, or the ability to develop proficiency quickly.
- Threat Modeling Knowledge- Working knowledge of threat modeling concepts and risk assessment methodology.
- An attached resume is required.
Exceptional Candidates Might Have - Structured Threat Modeling- Direct experience implementing TARA methodology, STRIDE, or similar structured threat modeling frameworks.
- Attack Feasibility Rating- Experience with attack feasibility rating frameworks (e.g., CVSS, attack potential-based approaches).
- Requirements Management Tools- Familiarity with requirements management tools (e.g., IBM ELM/DOORS, JAMA, CATIA) and traceability workflows.
- Engineering Tooling Development- Background in engineering tooling development or customization.
- Safety-Critical Frameworks- Experience working within ISO 26262 or similar safety-critical development frameworks.
Where We Work This position is open to applicants who can work in (or relocate to) the following location(s)-
Portland, OR US. Relocation assistance is not available for this position.
Schedule Type: Hybrid (4 days per week in-office / 1 day remote). This schedule builds our #OneTeamBestTeam culture, provides an unparalleled customer experience, and creates innovative solutions through in-person collaboration.
At Daimler Truck North America, we recognize our world is changing faster than ever before. By listening to the needs of today, we're building to solve with cutting-edge solutions in sustainability and future driving technology across electric, hydrogen and autonomous. These solutions, backed by years of innovative success and achievement, continue DTNA's legacy as the undisputed industry leader. Our evolving brand portfolio is second to none, including Freightliner Trucks, Western Star, Demand Detroit, Thomas Built Buses, Freightliner Custom Chassis, and Financial Services. Together, we work as one team towards our envisioned future - building a cleaner, safer and more efficient tomorrow for all.
That is what we are working toward - for all who keep the world moving.
Additional Information - Visa sponsorship will only be open to current Daimler Truck North America employees working under an existing U.S. Daimler Truck North America Visa
- All other applicants must be legally authorized to work permanently in the country the position is located in at the time of application
- Final candidate must successfully complete a criminal background check
- Final candidate may be required to successfully complete a pre-employment drug screen
- Contractors, professional services, or other contingent workers should confirm with their local agency if they are eligible to apply for FTE positions
- EEO - Disabled/Veterans
Daimler Truck North America is committed to workforce inclusion and providing an environment where equal employment opportunities are available to all applicants and employees without regard to race, color, sex (including pregnancy), religion, national origin, age, marital status, family relationship, disability, sexual orientation, gender identity and expression (including transgender and transitioning status), genetic information, or veteran status.
For an accommodation or special assistance with applying for a posted position, please contact our Human Resources department at 503-###-#### or toll free 800-###-####. For TTY/TDD enabled call 503-###-#### or toll free 866-###-####.