ironquill.tech/board

$ cat jobs/staff-product-security-specialist-wabtec-e9c191d707a1.json

Staff Product Security Specialist

Wabtec·Worldwide·Contagem, BR·senior
Apply on smartrecruiters → Get AI match score →
Essa posição é para atuar presencialmente em Contagem, MG. Who will you be working with? In this role, you will work as part of the Product Security Incident Response Team (PSIRT). How will you make a difference? The Staff PSIRT Specialist is responsible for leading emergency response activities. What do we want to know about you? Bachelor’s degree in computer science, software engineering, cybersecurity, or a related field. Proven experience in cybersecurity. Advanced cybersecurity certifications (CISSP, CISM, GCIH, GCIL). Experience with product vulnerability management. Strong critical thinking skills Experience with the secure development lifecycle Experience with compliance standards & regulations (NERC-CIP, ISO, NIST) Advanced experience with common vulnerability frameworks (CVSS, CVE, CWE). Demonstrated ability to effectively manage multiple tasks, working with various stakeholders in a global organization. Demonstrated ability to effectively coordinate remote/virtual teams to achieve business outcomes Demonstrated ability to lead and coordinate complex cybersecurity incident response activities in high-pressure, time-critical environments, maintaining clear decision-making, effective communication, and prioritization under stress. Advanced English verbal and written communication skills. What will your typical day look like? Lead PSIRT response and coordination of stakeholders to product vulnerability vulnerabilities. Coordinate response to and reporting of actively exploited product vulnerabilities in accordance with EU’s Cyber Resilience Act (CRA) and the rapid reporting obligations. Maintain and participate in a documented on-call rotation to ensure continuous coverage for product security incident detection and response, including adherence to defined response procedures, escalation protocols, and audit requirements. Collaborate with Enterprise Information Security in preparation and execution of emergency response activities. Facilitate “war rooms” as r