Product Security & Compliance Engineer
JobgetherRemotely
securityfirmwaresbom
Job Description
📋 Description
- Own cybersecurity aspects of regulatory compliance for connected hardware products, including RED
- Support preparation for the EU Cyber Resilience Act, covering vulnerability management, security
- Create and maintain architecture and data-flow diagrams for connected products and services.
- Conduct threat modeling and translate risks into security requirements and engineering priorities.
- Perform hands-on product security validation, including vulnerability scanning, SAST/DAST, SBOM
- Generate and monitor SBOMs to manage vulnerabilities in software dependencies.
🎯 Requirements
- Strong hands-on technical experience in at least one security domain (embedded/firmware, network
- Experience creating architecture or data-flow diagrams and threat modeling for real-world
- Practical experience with security testing and tools (vulnerability scanning, SAST/DAST, SBOM
- Experience with connected products, IoT, embedded systems, firmware, or cloud/hardware-software
- Ability to translate security findings into documentation, risk assessments, and compliance
- Knowledge of product cybersecurity standards and regulations (EN 18031, RED, EU Cyber Resilience
🎁 Benefits
- Fully remote with no fixed schedule and some daily team overlap.
- Competitive compensation; UK range provided for reference.
- Five weeks of paid time off; paid sick leave; parental leave.
- Budget for work hardware and home-office setup.
- Annual smart-home budget and internet stipend for home work.
Back to all jobs