Product Security & Compliance Engineer
JobgetherRemotely
securitynetwork securityapplication securitycloud securitysastdastsbom
Job Description
📋 Description
- Own cybersecurity aspects of regulatory compliance for connected hardware products, including RED
- Support preparation for the EU Cyber Resilience Act, covering vulnerability management, security
- Create and maintain architecture and data-flow diagrams for connected products and services.
- Conduct threat modeling and translate risks into security requirements, controls, and engineering
- Hands-on product security validation: vulnerability scanning, SAST/DAST, SBOM tooling, firmware
- Generate and monitor SBOMs to identify vulnerabilities in software dependencies.
🎯 Requirements
- Strong hands-on technical experience in at least one security domain (embedded/firmware, network
- Experience creating architecture/data-flow diagrams and conducting threat modeling for real-world
- Practical experience with security testing and tools: vulnerability scanning, SAST/DAST, SBOM
- Experience with connected products/IoT/embedded systems, firmware, and cloud services.
- Ability to translate security findings into documentation, risk assessments, and conformity
- Knowledge of cybersecurity standards/regulations such as EN 18031, RED, EU Cyber Resilience Act
🎁 Benefits
- Full-time employment with compensation benchmarked around the 75th percentile for the role
- UK compensation range: £81,800–£102,700, subject to experience and qualifications.
- Five weeks of paid time off; fourteen days of paid sick leave; six weeks paid and six weeks unpaid
- Hardware budget, smart-home budget, internet stipend, and time for personal projects.
- Fully remote with flexible schedule and team overlap; opportunities to work on privacy-focused
Back to all jobs