





Mid-level metro role with common experience requirement but niche third-party security specialization.
Role's regulatory, SDL, and third-party risk focus makes cross-industry transferability limited.
Explicit 5+ years plus mandatory SDL, supplier assessment, and regulatory experience increases filter strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead supplier security assessments and closed-loop remediation to enhance third-party product security and compliance.
Drive secure qualification of third-party components and ensure adherence to Secure Development Lifecycle (SDL) and regulatory requirements (e.g., EU CRA, NIS2).
Collaborate with Business Units, Product Security, and suppliers to embed secure development practices and manage supply chain security risks globally.
Bachelor's degree in Electrical/Electronics Engineering, Computer Science, or related field.
5+ years of experience in Product Security, Cybersecurity, Software Engineering, Software QA, or Systems Engineering.
5+ years conducting supplier security assessments, audits, and SDL/SDLC evaluations.
Experience with Secure Development Lifecycle (SDL) frameworks (e.g., NIST SSDF 800-218, IEC 62443-4-1/4-2) and regulatory compliance (e.g., EU CRA, NIS2, ISO 27001).
Experienced in risk-based supplier evaluations and driving remediation in a global, matrixed organizational environment.
Skilled in influencing cross-functional teams including Business Units, Product Security, Sourcing, and Legal to enforce security and compliance standards.
Familiar with third-party risk & compliance management, supplier governance, and secure product qualification processes.