Summary
Certification
Work History
Languages
Education
Accomplishments
Additional Information
Skills
Training
Others
Overview
Generic
Chris Su

Chris Su

Assistant Manager (Security Assessment Service)
New Taipei

Summary

Serve as Report Approval Signatory and Technical Manager, with extensive experience managing ISO 17025-accredited and IEC 62443 recognized laboratories and conducting assessments to help clients achieve compliance with international standards, including IEC 62443, ISO 21434, EN 18031, EU CRA, and SEMI E 187. Proficient in penetration testing, vulnerability scanning, fuzz testing, and threat modeling risk assessments. Adept at identifying risks and providing actionable mitigation and remediation strategies during product development.

Certification

Licensed Penetration Tester Master (LPT Master)

Work History

Assistant Manager

Undeclared
01.2025 - Current
  • Team Management: Led a team of 10 technical engineers, optimizing resource allocation and workflows to improve project efficiency and cost effectiveness.
  • Tool Development & Innovation: Spearheaded the development of TMRA/TARA tools and CAN protocol fuzzing tools, enhancing internal testing accuracy and efficiency.
  • Standard Capability Building: Developed EN 18031 and CRA standard capabilities; successfully passed ISO 17025 and IEC 62443 audits.
  • Team Development: Conducted technical training and knowledge-sharing initiatives to upskill team members.

Senior R&D Supervisor

Delta Electronics, Inc.
05.2024 - 12.2024
  • ISO 21434 & UNCE R155 Compliance: Implemented TARA threat analysis to strengthen automotive product security assessment capabilities.
  • EV Charging Standards Certification: Completed three pre-compliance assessments, achieving TW EV BSMI L1/L2 certifications in 2024.
  • Client Services: Delivered professional security testing services, ensuring high client satisfaction and report acceptance.

Senior R&D Principle Engineer

Delta Electronics, Inc.
05.2022 - 04.2024
  • IEC 62443 Capability Establishment: Built IEC 62443-3-3/4-2 testing capabilities and achieved Maturity Level 3 certification.
  • ISO 21434 Testing Processes: Developed testing processes aligned with EU automotive regulations, achieving ACC Level 2 certification.
  • Testing Capability Expansion: Extended testing capabilities to include mobile apps, software, automotive products, and enhanced services for EV chargers and power supply systems.

Senior R&D Engineer

Delta Electronics, Inc.
10.2018 - 04.2022
  • Cybersecurity Testing Implementation: Led penetration testing, vulnerability scanning, and risk assessments to ensure product security across multiple lines.
  • Cybersecurity Laboratory Establishment: Built an ISO 17025-compliant cybersecurity testing lab, delivering high-quality testing services.
  • IEC 62443-4-1 Certification Achievement: Designed and implemented internal cybersecurity guidelines tailored to IEC 62443 standards, providing technical consulting to product teams and successfully securing IEC 62443-4-1 process certification.
  • Tools & Systems Development: Developed an internal CVE system and PSIRT processes to improve vulnerability management and incident response efficiency.

Languages

English
Chinese (Mandarin)

Education

Master of Science - Computer Science And Engineering

National Sun Yat-sen University
Kaohsiung City
07-2018

Accomplishments

  • 2020.04: Achieved IEC 62443 certification, demonstrating compliance with industrial cybersecurity standards.
  • 2022.02: Established the cybersecurity testing laboratory and achieved ISO/IEC 17025 accreditation.
  • 2023.03: Completed certification for GE Achilles Communications, ensuring secure communication protocols.
  • 2023.05: Successfully implemented and certified compliance with ISO/SAE 21434 for automotive cybersecurity.
  • 2023.09: Assisted in obtaining IEC 62443 -3-3 Security Level 2 certification for energy storage systems.
  • 2023.12: Successfully certified products to meet Security Level 2 requirements
  • 2024.02: Certified TW EVCS VPC L1/L2 for electric vehicle charging systems.
  • ~Now: Continued development and certification efforts, expanding cybersecurity capabilities and compliance.

Additional Information

  • Precision Machinery Research Development Center (PMC) Conference Speaker


  • CYBERSEC 2025 Speaker

IEC 62443-4-1: Challenges and Practical Insights from Threat Modeling to Product Security Certification


  • IThome Webinar Speaker

【Pitfalls on the Path to IEC 62443 Compliance: Combining Practical Experience to Demystify Testing and Validation】

Skills

Expertise in IoT, OT, ICT and AUTO security

Training

  • TUV Nord Taiwan IEC 62443 Training Certificate
  • TAF ISO 17025 Training Certificate
  • (ISC)2 CISSP Validation of Completion
  • BV ETSI EN 303 645 Training Certificate

Others

TOEIC Grades: 695

Overview

7
7
years of professional experience
6
6
Certificates
Chris SuAssistant Manager (Security Assessment Service)