Hiring.Camp

Staff Product Security Engineer

Entrust is an innovative leader

·

Today

Location
United Kingdom - Cambridge
Workplace
Hybrid
Type
Full-time
Department
Engineering
Seniority
Senior
Education
Master
Source
Workday

Description

Join us at Entrust  

At Entrust, we’re shaping the future of identity centric security solutions. From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration, and build solutions that help keep the world moving safely. 

   

Get to Know Us  

Headquartered in Minnesota, Entrust is an industry leader in identity-centric security solutions, serving over 150 countries with cutting-edge, scalable technologies. But our secret weapon? Our people. It’s the curiosity, dedication, and innovation that drive our success and help us anticipate the future.  

Position Overview:

The Staff Product Security Engineer is a senior technical leader responsible for defining and driving the security strategy, architecture, and engineering practices across Entrust's cryptographic product portfolio. This role provides technical leadership beyond individual products, influencing security decisions across multiple engineering teams and ensuring security is embedded throughout the entire product lifecycle.

The Staff Product Security Engineer serves as a recognized security subject matter expert, partnering with product management, engineering leadership, certification teams, and executive stakeholders to establish security roadmaps, enhance security capabilities, and address emerging threats. This role combines deep technical expertise in software, hardware, and cryptographic security with strong leadership and mentoring capabilities.

You will lead complex security initiatives, establish engineering standards, drive security architecture reviews, and guide teams in adopting secure-by-design principles. You will also represent security engineering in customer engagements, security audits, certification activities, and interactions with external security researchers and industry experts.

A strong background in mathematics, engineering, computer science, or information security is essential. The successful candidate will demonstrate a proven ability to influence technical direction, solve highly complex security challenges, and drive security excellence across the organization.

Responsibilities:

Technical Leadership & Strategy

  • Define and drive product security strategy, architecture principles, and security engineering roadmaps across multiple products and platforms.

  • Lead the security architecture review process for new products, major feature developments, and platform changes.

  • Establish and evolve secure development standards, security design patterns, and engineering best practices.

  • Serve as the primary technical authority for complex security architecture decisions and risk-based security trade-off discussions.

  • Drive strategic security initiatives that improve security posture, development efficiency, and regulatory readiness across the organization.

  • Anticipate emerging threats, industry trends, and regulatory requirements and translate these into actionable engineering improvements.

Product Security Engineering

  • Collaborate with cross-functional teams to integrate security requirements into product design, development, deployment, and maintenance processes.

  • Lead threat modeling activities for critical systems, products, and architectures.

  • Conduct and oversee advanced security assessments, vulnerability investigations, attack surface analyses, and risk evaluations.

  • Design, implement, and review security controls, cryptographic protections, and system hardening mechanisms.

  • Lead investigations of critical security issues and provide technical direction for remediation efforts.

  • Guide secure design reviews and code review activities for business-critical products.

Security Tooling & Automation

  • Define and drive the security tooling strategy across software and hardware development environments.

  • Lead the development and adoption of advanced security testing capabilities, including fuzzing, software composition analysis (SCA), static analysis, dynamic analysis, memory safety validation, and vulnerability discovery tooling.

  • Partner with DevOps and engineering teams to embed security automation and policy enforcement into CI/CD processes.

  • Improve vulnerability detection, triage, and remediation workflows through automation and data-driven approaches.

Security Governance & Risk Management

  • Establish scalable approaches for vulnerability management, risk assessment, and security assurance across multiple product lines.

  • Provide technical leadership during security incidents, vulnerability disclosures, and coordinated remediation efforts.

  • Support product compliance and certification initiatives including FIPS 140-3, Common Criteria, PCI HSM, Cyber Resilience Act (CRA), and other applicable security standards.

  • Review and approve security exceptions, risk acceptance decisions, and compensating controls where appropriate.

Collaboration & External Engagement

  • Act as a trusted advisor to engineering leaders, architects, product managers, and executive stakeholders.

  • Represent Entrust in customer security discussions, security reviews, certification engagements, and external assessments.

  • Collaborate with external researchers, independent laboratories, certification bodies, and security consultants.

  • Contribute to industry working groups, standards development efforts, and security communities where appropriate.

Mentoring & Organizational Impact

  • Mentor senior engineers and security practitioners, fostering technical excellence across the organization.

  • Lead technical communities of practice focused on secure development and product security.

  • Influence engineering culture by promoting security-first thinking and secure-by-design principles.

  • Provide technical leadership during strategic planning, architecture reviews, and product roadmap discussions.

  • Help identify security skill gaps and contribute to workforce development initiatives.

Technical Knowledge / Skills and Experience Required:

  • Extensive experience in product security, security architecture, or security engineering roles.

  • Demonstrated experience providing technical leadership across multiple teams, products, or business units.

  • Deep expertise in applied cryptography, cryptographic protocols, and security architectures.

  • Strong understanding of secure software development and software assurance practices.

  • Strong understanding of hardware security, embedded systems security, trusted execution environments, and FPGA security concepts.

  • Advanced knowledge of threat modeling methodologies and risk assessment frameworks.

  • Experience leading large-scale vulnerability management and remediation programs.

  • Expertise with security assessment methodologies, penetration testing techniques, and offensive security concepts.

  • Experience building or deploying security tooling integrated into modern software development pipelines.

  • Strong programming capability in Python, C/C++, Go, Rust, Java, or similar languages.

  • Experience supporting or leading security certification activities including FIPS 140-3, Common Criteria, PCI HSM, or equivalent frameworks.

  • Strong understanding of modern regulatory and compliance requirements impacting product security, including CRA, NIS2, and secure development frameworks.

  • Excellent communication skills with demonstrated ability to influence executive stakeholders and technical teams.

  • Proven ability to drive organizational change through technical leadership and influence.

Qualifications:

  • Bachelor's degree in Computer Science, Information Security, Electrical Engineering, Mathematics, or related discipline.

  • Master's degree preferred.

  • Relevant security certifications (CISSP, CSSLP, OSCP, GIAC, CCSP, SABSA, or similar) are desirable.

  • Demonstrated track record of leading complex security initiatives with organization-wide impact.

At Entrust, we don’t just offer jobs – we offer career journeys. Here is what you can expect when you join our team:  

  • Career Growth: Whether you’re a budding developer or a seasoned expert, we’re invested in your professional journey. With learning-forward initiatives and exciting challenges, your growth is our priority.  

  • Flexibility: Life is all about balance. Whether you’re remote, hybrid, or on-site, we offer flexible options that fit your lifestyle.  

  • Collaboration: Here, your voice matters. Our teams thrive on sharing ideas, brainstorming solutions, and working together to build a better tomorrow.  

We believe in securing identities—but it doesn’t stop there. At Entrust, we’re passionate about valuing all identities. Our culture is built on diversity, inclusion, and respect. From unconscious bias training for our leaders to global affinity groups that connect colleagues across the globe, we’re creating a community where everyone is encouraged to be themselves.  

 

Ready to Make an Impact?  

If you’re excited by the prospect of innovating, growing your career, and collaborating in a dynamic environment, Entrust is the place for you. Join us in making a difference. Let’s build a more secure world—together.  

   

Apply today!  

 

For more information, visit www.entrust.com.  Follow us on, LinkedIn, Facebook, Instagram, and YouTube 

For US roles, or where applicable:

Entrust is an EEO/AA/Disabled/Veterans Employer

For Canadian roles, or where applicable:

Entrust values diversity and inclusion and we are committed to building a diverse workforce with wide perspectives and innovative ideas. We welcome applications from qualified individuals of all backgrounds, and we strive to provide an accessible experience for candidates of all abilities.

If you require an accommodation, contact [email protected].

Recruiter:

Jack Steib

[email protected]

Skills

PythonJavaRustCI/CDPenetration TestingDevOpsRisk ManagementComplianceStrategic PlanningCISSPGo

Similar Jobs

30

Staff Product Security

Alphasense · Remote - United States · Remote

7 months ago

Staff Product Security Specialist

Wabtec · Contagem, MG, Brazil

3 days ago

Staff Product Security Engineer

Renesas Electronics · Cambridge, England, United Kingdom

6 days ago

Staff Product Security Engineer

Renesas Electronics · Lisbon, Lisbon, Portugal

6 days ago

Staff Product Security Engineer

Renesas Electronics · Katowice, Silesian Voivodeship, Poland

6 days ago

Staff Product Security Engineer

Renesas Electronics · Belgrade, Serbia

6 days ago

Staff Product Security Engineer

Danaher · IND - Bangalore - Beckman Coulter India Private Limited · Onsite

1 week ago

Senior Staff Product Security Engineer | Product Security Incident Response Team (PSIRT)

ServiceNow · Kirkland, Washington, United States · Hybrid

2 weeks ago

Staff Product Security Engineer

DataRobot delivers AI that maximizes · Boston, United States of America +2

3 weeks ago

Staff Product Security Engineer

SailPoint is · United States, United States of America

1 month ago

Staff Product Security Engineer

Greenlight · Atlanta (Remote Friendly) · Remote

1 month ago

Staff Product Security Engineer

Airwallex · AU - Melbourne +1

1 month ago

Staff Product Security Engineer

Airwallex · US - San Francisco · Hybrid

1 month ago

Staff Product Security Engineer

Intuitive Surgical · Sunnyvale, CA, United States

2 months ago

Staff Product Security Engineer

Withcherry · United States · Remote

3 months ago

Staff Product Security Engineer

reddit · Remote - United States +1 · Remote

3 months ago

Staff Product Security Engineer

Ptc · USA-HO-Missouri, United States of America · Remote

5 months ago

Staff Product Security Engineer

Databricks · Remote

1+ year ago

Staff Product Security Engineer

Crusoe · San Francisco, CA - US · Remote

1+ year ago

Staff Product Manager - Security

Lambda · Bellevue Office +2 · Hybrid

2 weeks ago

Staff Security Engineer, Product Security team

Delivery Hero · Berlin, Germany · Hybrid

1 month ago

Staff Product Manager, Security Configuration Management

Dragos · United States

1 month ago

Staff Engineer - Product Security

Geico · WA Remote Zone 1, United States of America +3 · Hybrid

1 month ago

Staff Security Engineer, Product Security

Chainalysis Careers · United Kingdom +1 · Remote

2 months ago

Staff Security Engineer, Product

Rogo · New York City

9 months ago

Staff Product Manager, Security

Databricks · Remote

1+ year ago

Staff Product Manager, Security

Databricks

1+ year ago

Sr. Staff Product Designer, Identity Security Platform & Systems

ServiceNow · Santa Clara, CALIFORNIA, United States · Hybrid

1 week ago

Staff Software Engineer - Product Security

ServiceNow · Petah Tikva, Israel · Hybrid

1 week ago

Staff Product Manager – Integration Security & AI Gateway

ServiceNow · Santa Clara, California, United States · Remote

2 weeks ago