Leading the enterprise PSIRT function, the full-time remote Principal Product Security Incident Responder will manage vulnerability disclosure, oversee the CVE Numbering Authority program, and direct incident response across various business units while collaborating with government agencies and stakeholders. Key responsibilities Lead vulnerability management and coordinated disclosure, ensuring compliance with industry standards and the EU Cyber Resilience Act Manage the full lifecycle of CVE records, ensuring timely and accurate public disclosures for all product lines Direct product-related incident response, coordinating across teams to maintain and exercise incident response playbooks Required qualifications Significant experience in cybersecurity with expertise in PSIRT operations and vulnerability management in an industrial context Proven leadership in managing coordinated vulnerability disclosure and customer-facing security incidents Experience engaging with law enforcement and government agencies on sensitive cybersecurity matters Deep familiarity with CVE, CVSS, CWE, and relevant cybersecurity standards A formal education in Cybersecurity, Computer Science, Engineering, or a related discipline is preferred
Principal Product Security Incident Responder in workfromhome at Unknown Company
This position is listed as full time and able to be worked remotely.