Your Tasks
Strategy and Leadership
- Define and drive the product security strategy regarding features and certification roadmap in consultation with the Head of Product Engineering and VP of Product Strategy & Innovation
- Own budget and resource planning for product security certification
- Harmonize security processes across product lines
- Lead and grow the product security team
- Sign the CE self-declaration on behalf of the organization
Vulnerability & Incident Response
- Own the PSIRT operations end to end: vulnerability intake monitoring, triage and validation, and remediation coordination with product engineering
- Supervise and sign-off publication of security advisories and coordinated disclosure according to legal obligations and customer specific agreements
- Coordinate the definition, selection and implementation of vulnerability tracking and reporting tools
Your Profile
- Significant experience (5+ years) in software product security with several years in security management
- Hands-on familiarity with vulnerability management, including vulnerability scoring and disclosure
- Experience with security certification frameworks like ISO 21434, IEC 62443, DO-356 CC/EUCC or CRA
- Strong knowledge on operating systems, embedded systems, hypervisors or other types of safety and security critical software
- Experience with SBOM formats and management, e.g., SPDX, CycloneDX
- Leadership experience, communication skills and the capability to defend the security strategy internally and externally
We offer
- An open, cooperative and particularly good working atmosphere
- A permanent employment contract in a modern, well-equipped workplace
- Exciting tasks and individual training opportunities
- Tutor and introduction week during the initial training period
- Mobile working
- Company events
#J-18808-Ljbffr