ironquill.tech/board

$ cat jobs/cra-compliance-product-security-engineer-remote-in-mexico-gsbsolutions1-d4e945ca0a0e.json

CRA Compliance & Product Security Engineer - Remote in Mexico

Gsbsolutions1·Worldwide·Remote job·mid
Apply on recruitee → Get AI match score →
Important IT company At the Latin American level, growth requires: CRA Compliance & Product Security Engineer Position Summary We are seeking a CRA Compliance & Product Security Engineer to support the organization in meeting European Cyber Resilience Act (CRA) requirements while strengthening product security throughout the product lifecycle. The ideal candidate combines regulatory/compliance knowledge with hands-on product security and software engineering experience , and can translate regulatory requirements into practical security controls, engineering processes, and product requirements. Required Experience & Expertise Bachelor’s degree in Computer Science, Cybersecurity, Information Systems , or a related field. 3+ years of experience in Product Security, Cybersecurity, Compliance, or Secure Software Engineering. Strong understanding of the EU Cyber Resilience Act (CRA) and its relationship with regulations/frameworks such as NIS2 . Experience with Product Security / Secure SDLC , including security requirements, threat/risk assessment, security testing, and vulnerability management. Familiarity with hardware and software architectures , cybersecurity risks, and security controls. Hands-on knowledge of CVE/vulnerability management , vulnerability assessment, remediation tracking, and security incident response. Understanding of cryptography, secure data erasure, authentication, access control, and secure communications . Experience translating regulatory and security requirements into technical requirements, engineering processes, and actionable controls . Strong experience working cross-functionally with Engineering, Product, Software Development, QA, Legal, Compliance, and Security teams . Key Responsibilities Assess products and development processes against CRA requirements and identify compliance gaps. Translate regulatory requirements into product security requirements and engineering controls . Support vulnerability management, including CVE identifica