At Torc, safeguarding safety-critical methods from evolving cybersecurity threats isn’t only a precedence—it’s a core
mission.
On the helm of this mission is Michael Maass, the Director of Product Cybersecurity and Principal Product
Cybersecurity Architect, whose profession displays a deep dedication to constructing safe applied sciences, robust groups,
and forward-thinking technique.
A Profession Rooted in Cybersecurity Excellence
Michael brings over 20 years of cybersecurity expertise to the desk—17 of these spent particularly on
securing firms, merchandise, and safety-critical methods. His background bridges the technical and strategic:
from writing low-level software program in x86 meeting, C/C++, and Java, to main cross-functional safety groups
and growing methods to construct safety into merchandise.
All through his profession, Michael has helped firms undertake cutting-edge practices that meet each technical and
compliance necessities. His ardour lies in one of the complicated and necessary areas of contemporary
know-how: growing safe, safety-critical cyber-physical methods that may stand as much as real-world threats
and regulatory scrutiny.
Constructing Safe Groups and Tradition
Michael’s management extends past know-how. He’s spent years constructing and nurturing top-tier cybersecurity
groups within the automotive area, making certain they not solely have deep technical expertise but additionally perceive the
broader influence of their work. His means to speak with executives, regulators, and exterior stakeholders
makes him a uncommon bridge between engineering and compliance—a necessity in in the present day’s high-stakes
cybersecurity surroundings.
Main Cybersecurity at Torc Robotics
At Torc, Michael wears two hats: he acts as each Principal Product Cybersecurity Architect and the Director of
Product Cybersecurity. In these roles, he leads efforts to embed cybersecurity into each stage of product
growth for autonomous autos—methods that should function safely and securely within the unpredictable actual
world.
His management ensures that cybersecurity is an integral a part of a product’s full lifecycle, starting from inception
to product retirement.
Penetration Testing: Crimson Teaming for the Proper Causes
One of many key instruments in Michael’s cybersecurity arsenal is penetration testing—a way that simulates real-
world assaults as a way to discover and repair vulnerabilities earlier than unhealthy actors can discover and exploit them.
“Penetration testing is basically the place somebody with hacking expertise applies these expertise to a selected goal,
with the purpose of effectively discovering vulnerabilities and figuring out hardening alternatives,” Michael explains.
Penetration testing is a course of throughout the A Versatile Cybersecurity Improvement Lifecycle (AVCDL), an open
supply doc set crafted by Charles Wilson, Cybersecurity Architect at Torc, Michael, and cybersecurity
engineers at Torc and different firms, to be used by the autonomous automobile business and another creating
safety-critical cyber bodily methods. This structured lifecycle ensures that each side of the product, from
{hardware} to software program, is rigorously vetted for cybersecurity dangers and people dangers are addressed.
Penetration testing is only one a part of a broader cybersecurity technique. Whereas penetration testing is commonly
spotlighted as a result of it’s thrilling and accessible, it’s necessary to notice {that a} safe cybersecurity platform
features a complete set of practices. Many of those, whereas equally crucial, are much less identified except you’re
deeply immersed within the area.
Nonetheless, penetration testing stands out as an illustrative instance of how Torc’s structured lifecycle ensures that
each side of an autonomous automobile product—from {hardware} to software program—is rigorously vetted for
cybersecurity dangers.
Contained in the Penetration Testing Course of
As Michael says, no two penetration exams are the identical, however most comply with six normal steps:
- Pre-Engagement: Outline the goal, set targets, and set up boundaries.
- Reconnaissance: Collect information on the system utilizing each passive and lively methods.
- Risk Simulation: Emulate the ways of real-world risk actors.
- Exploitation: Try to breach the system, figuring out weak factors.
- Evaluation: Assess findings and potential enterprise influence.
- Reporting & Suggestions: Share outcomes and collaborate on mitigation methods.
In a real-world instance of a penetration take a look at on a lidar system, Michael shared that security and safety go
hand-in-hand. Each parts should work collectively to make sure the energy of a system. Throughout this explicit
lidar take a look at, Michael identified that analog assaults, whereas dangerous, aren’t essentially as impactful as system-level
exploits.
Michael’s Imaginative and prescient for Safe Autonomy
Michael’s final purpose is to create know-how that’s safe, dependable, and compliant—all whereas enabling
innovation. His work ensures that Torc’s methods are prepared not only for in the present day’s challenges, however that the bigger
autonomous automobile business is able to face tomorrow.
As Michael says, a rising tide lifts all boats. At Torc, that philosophy is core to how cybersecurity is
approached—not simply as a aggressive benefit, however as a shared duty throughout the business. That’s why
Torc is pushing ahead with instruments just like the AVCDL. By making this framework seen and accessible, Torc goals to
assist everybody construct safer, safer, and extra compliant merchandise.
“I’m obsessed with growing safe, safety-critical methods that stability innovation with acceptable
legal responsibility and compliance,” he says. In an business the place belief is every little thing, that mission is extra very important than ever.
With a long time of expertise and a ardour for securing the way forward for mobility, Michael Maass helps to
form the subsequent technology of cybersecurity in autonomous autos. By way of strategic management, technical
experience, and a dedication to continuous enchancment, he’s making certain that Torc stays forward of the curve—
maintaining methods secure, safe, and prepared for the street forward.