Product Security & Compliance Engineer
JobgetherRemotely
securityfirmwaresastdastsbom
Job Description
📋 Description
- Own cybersecurity aspects of regulatory compliance for connected hardware products, incl. RED and
- Support EU Cyber Resilience Act prep: vulnerability mgmt, security updates, SBOMs, support periods
- Create and maintain architecture and data-flow diagrams for products and services.
- Conduct threat modeling; translate risks into security requirements and priorities.
- Hands-on product security validation: scanning, SAST/DAST, SBOM tooling, firmware analysis
- Generate and monitor SBOMs to manage dependencies vulnerabilities.
🎯 Requirements
- Strong hands-on technical experience in at least one domain: embedded/firmware, network
- Experience creating architecture/data-flow diagrams and threat modeling for real-world products.
- Practical security testing experience: vulnerability scanning, SAST/DAST, SBOM tooling, firmware
- Experience with connected products/IoT and secure development practices.
- Ability to translate findings into documentation, risk assessments, and compliance requirements.
- Knowledge of product cybersecurity standards/regulations (EN 18031, RED, EU Cyber Resilience Act
🎁 Benefits
- Fully remote with international support; compensation aligned with market.
- UK compensation range listed in data; other benefits include paid time off, parental leave
Back to all jobs