Назад
Company hidden
4 дня назад

Staff Product Security Engineer (Cryptography)

Формат работы
remote (только United_kingdom)/hybrid/onsite
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Staff Product Security Engineer (Cryptography): Defining and driving security strategy, architecture, and engineering practices across a cryptographic product portfolio with an accent on secure-by-design principles and cryptographic protections. Focus on leading complex security initiatives, establishing engineering standards, and integrating security automation into CI/CD processes.

Location: United Kingdom - Cambridge (Flexible options: remote, hybrid, or on-site)

Company

hirify.global is an industry leader in identity-centric security solutions, serving over 150 countries with scalable, cutting-edge technologies.

What you will do

  • Define and drive product security strategy and architecture principles across multiple platforms and product lines.
  • Lead security architecture reviews and threat modeling activities for critical systems and new feature developments.
  • Design and implement cryptographic protections, system hardening mechanisms, and security controls.
  • Develop and integrate advanced security tooling (fuzzing, SCA, static/dynamic analysis) into CI/CD pipelines.
  • Manage vulnerability remediation and support compliance certifications including FIPS 140-3, Common Criteria, and PCI HSM.
  • Mentor senior engineers and influence a security-first engineering culture across the organization.

Requirements

  • Extensive experience in product security, security architecture, or security engineering roles.
  • Deep expertise in applied cryptography, cryptographic protocols, and hardware security (TEE, FPGA, embedded systems).
  • Strong programming capability in Python, C++, Go, Rust, or Java.
  • Proven track record of leading large-scale vulnerability management and remediation programs.
  • Experience leading security certification activities (FIPS 140-3, Common Criteria, PCI HSM).
  • Must be based in or able to work from the United Kingdom.

Nice to have

  • Master's degree in Computer Science, Information Security, or a related discipline.
  • Relevant certifications such as CISSP, CSSLP, OSCP, GIAC, CCSP, or SABSA.

Culture & Benefits

  • Flexible work arrangements including remote, hybrid, and on-site options.
  • Strong investment in professional growth through learning-forward initiatives.
  • Inclusive culture with global affinity groups and unconscious bias training.
  • Collaborative environment focused on diversity, inclusion, and respect.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →