Principal Product Security Incident Responder
Location: Remote
Compensation: Salary
Reviewed: Thu, Sep 03, 2026
This job expires in: 21 days
Job Summary
Leading the enterprise PSIRT function, the full-time remote Principal Product Security Incident Responder will manage vulnerability disclosure, oversee the CVE Numbering Authority program, and direct incident response across various business units while collaborating with government agencies and stakeholders.
Key responsibilities
- Lead vulnerability management and coordinated disclosure, ensuring compliance with industry standards and the EU Cyber Resilience Act
- Manage the full lifecycle of CVE records, ensuring timely and accurate public disclosures for all product lines
- Direct product-related incident response, coordinating across teams to maintain and exercise incident response playbooks
Required qualifications
- Significant experience in cybersecurity with expertise in PSIRT operations and vulnerability management in an industrial context
- Proven leadership in managing coordinated vulnerability disclosure and customer-facing security incidents
- Experience engaging with law enforcement and government agencies on sensitive cybersecurity matters
- Deep familiarity with CVE, CVSS, CWE, and relevant cybersecurity standards
- A formal education in Cybersecurity, Computer Science, Engineering, or a related discipline is preferred
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 41,964 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee