Staff Product Security Engineer (Cryptography)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Staff Product Security Engineer (Cryptography): Defining and driving security strategy, architecture, and engineering practices across a cryptographic product portfolio with an accent on secure-by-design principles and cryptographic protections. Focus on leading complex security initiatives, establishing engineering standards, and integrating security automation into CI/CD processes.
Location: United Kingdom - Cambridge (Flexible options: remote, hybrid, or on-site)
Company
is an industry leader in identity-centric security solutions, serving over 150 countries with scalable, cutting-edge technologies.
What you will do
- Define and drive product security strategy and architecture principles across multiple platforms and product lines.
- Lead security architecture reviews and threat modeling activities for critical systems and new feature developments.
- Design and implement cryptographic protections, system hardening mechanisms, and security controls.
- Develop and integrate advanced security tooling (fuzzing, SCA, static/dynamic analysis) into CI/CD pipelines.
- Manage vulnerability remediation and support compliance certifications including FIPS 140-3, Common Criteria, and PCI HSM.
- Mentor senior engineers and influence a security-first engineering culture across the organization.
Requirements
- Extensive experience in product security, security architecture, or security engineering roles.
- Deep expertise in applied cryptography, cryptographic protocols, and hardware security (TEE, FPGA, embedded systems).
- Strong programming capability in Python, C++, Go, Rust, or Java.
- Proven track record of leading large-scale vulnerability management and remediation programs.
- Experience leading security certification activities (FIPS 140-3, Common Criteria, PCI HSM).
- Must be based in or able to work from the United Kingdom.
Nice to have
- Master's degree in Computer Science, Information Security, or a related discipline.
- Relevant certifications such as CISSP, CSSLP, OSCP, GIAC, CCSP, or SABSA.
Culture & Benefits
- Flexible work arrangements including remote, hybrid, and on-site options.
- Strong investment in professional growth through learning-forward initiatives.
- Inclusive culture with global affinity groups and unconscious bias training.
- Collaborative environment focused on diversity, inclusion, and respect.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →