Staff Product Security Engineer

Cambridge, United Kingdom
Today
Job Type
Permanent
Work Pattern
Full-time
Work Location
Hybrid
Seniority
Senior
Education
Degree
Visa Sponsorship
Available
Posted
31 Jul 2026 (Today)

Benefits

Career development opportunities Flexible working arrangements Global affinity groups Unconscious bias training Inclusive culture initiatives

Join us at Entrust

At Entrust, we’re shaping the future of identity centric security solutions. From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration, and build solutions that help keep the world moving safely.

Get to Know Us

Headquartered in Minnesota, Entrust is an industry leader in identity-centric security solutions, serving over 150 countries with cutting-edge, scalable technologies. But our secret weapon? Our people. It’s the curiosity, dedication, and innovation that drive our success and help us anticipate the future.

Position Overview:

The Staff Product Security Engineer is a senior technical leader responsible for defining and driving the security strategy, architecture, and engineering practices across Entrust's cryptographic product portfolio. This role provides technical leadership beyond individual products, influencing security decisions across multiple engineering teams and ensuring security is embedded throughout the entire product lifecycle.

The Staff Product Security Engineer serves as a recognized security subject matter expert, partnering with product management, engineering leadership, certification teams, and executive stakeholders to establish security roadmaps, enhance security capabilities, and address emerging threats. This role combines deep technical expertise in software, hardware, and cryptographic security with strong leadership and mentoring capabilities.

You will lead complex security initiatives, establish engineering standards, drive security architecture reviews, and guide teams in adopting secure-by-design principles. You will also represent security engineering in customer engagements, security audits, certification activities, and interactions with external security researchers and industry experts.

A strong background in mathematics, engineering, computer science, or information security is essential. The successful candidate will demonstrate a proven ability to influence technical direction, solve highly complex security challenges, and drive security excellence across the organization.

Responsibilities:

Technical Leadership & Strategy

  • Define and drive product security strategy, architecture principles, and security engineering roadmaps across multiple products and platforms.

  • Lead the security architecture review process for new products, major feature developments, and platform changes.

  • Establish and evolve secure development standards, security design patterns, and engineering best practices.

  • Serve as the primary technical authority for complex security architecture decisions and risk-based security trade-off discussions.

  • Drive strategic security initiatives that improve security posture, development efficiency, and regulatory readiness across the organization.

  • Anticipate emerging threats, industry trends, and regulatory requirements and translate these into actionable engineering improvements.

Product Security Engineering

  • Collaborate with cross-functional teams to integrate security requirements into product design, development, deployment, and maintenance processes.

  • Lead threat modeling activities for critical systems, products, and architectures.

  • Conduct and oversee advanced security assessments, vulnerability investigations, attack surface analyses, and risk evaluations.

  • Design, implement, and review security controls, cryptographic protections, and system hardening mechanisms.

  • Lead investigations of critical security issues and provide technical direction for remediation efforts.

  • Guide secure design reviews and code review activities for business-critical products.

Security Tooling & Automation

  • Define and drive the security tooling strategy across software and hardware development environments.

  • Lead the development and adoption of advanced security testing capabilities, including fuzzing, software composition analysis (SCA), static analysis, dynamic analysis, memory safety validation, and vulnerability discovery tooling.

  • Partner with DevOps and engineering teams to embed security automation and policy enforcement into CI/CD processes.

  • Improve vulnerability detection, triage, and remediation workflows through automation and data-driven approaches.

Security Governance & Risk Management

  • Establish scalable approaches for vulnerability management, risk assessment, and security assurance across multiple product lines.

  • Provide technical leadership during security incidents, vulnerability disclosures, and coordinated remediation efforts.

  • Support product compliance and certification initiatives including FIPS 140-3, Common Criteria, PCI HSM, Cyber Resilience Act (CRA), and other applicable security standards.

  • Review and approve security exceptions, risk acceptance decisions, and compensating controls where appropriate.

Collaboration & External Engagement

  • Act as a trusted advisor to engineering leaders, architects, product managers, and executive stakeholders.

  • Represent Entrust in customer security discussions, security reviews, certification engagements, and external assessments.

  • Collaborate with external researchers, independent laboratories, certification bodies, and security consultants.

  • Contribute to industry working groups, standards development efforts, and security communities where appropriate.

Mentoring & Organizational Impact

  • Mentor senior engineers and security practitioners, fostering technical excellence across the organization.

  • Lead technical communities of practice focused on secure development and product security.

  • Influence engineering culture by promoting security-first thinking and secure-by-design principles.

  • Provide technical leadership during strategic planning, architecture reviews, and product roadmap discussions.

  • Help identify security skill gaps and contribute to workforce development initiatives.

Technical Knowledge / Skills and Experience Required:

  • Extensive experience in product security, security architecture, or security engineering roles.

  • Demonstrated experience providing technical leadership across multiple teams, products, or business units.

  • Deep expertise in applied cryptography, cryptographic protocols, and security architectures.

  • Strong understanding of secure software development and software assurance practices.

  • Strong understanding of hardware security, embedded systems security, trusted execution environments, and FPGA security concepts.

  • Advanced knowledge of threat modeling methodologies and risk assessment frameworks.

  • Experience leading large-scale vulnerability management and remediation programs.

  • Expertise with security assessment methodologies, penetration testing techniques, and offensive security concepts.

  • Experience building or deploying security tooling integrated into modern software development pipelines.

  • Strong programming capability in Python, C/C++, Go, Rust, Java, or similar languages.

  • Experience supporting or leading security certification activities including FIPS 140-3, Common Criteria, PCI HSM, or equivalent frameworks.

  • Strong understanding of modern regulatory and compliance requirements impacting product security, including CRA, NIS2, and secure development frameworks.

  • Excellent communication skills with demonstrated ability to influence executive stakeholders and technical teams.

  • Proven ability to drive organizational change through technical leadership and influence.

Qualifications:

  • Bachelor's degree in Computer Science, Information Security, Electrical Engineering, Mathematics, or related discipline.

  • Master's degree preferred.

  • Relevant security certifications (CISSP, CSSLP, OSCP, GIAC, CCSP, SABSA, or similar) are desirable.

  • Demonstrated track record of leading complex security initiatives with organization-wide impact.

At Entrust, we don’t just offer jobs – we offer career journeys. Here is what you can expect when you join our team:

  • Career Growth: Whether you’re a budding developer or a seasoned expert, we’re invested in your professional journey. With learning-forward initiatives and exciting challenges, your growth is our priority.

  • Flexibility: Life is all about balance. Whether you’re remote, hybrid, or on-site, we offer flexible options that fit your lifestyle.

  • Collaboration: Here, your voice matters. Our teams thrive on sharing ideas, brainstorming solutions, and working together to build a better tomorrow.

We believe in securing identities—but it doesn’t stop there. At Entrust, we’re passionate about valuing all identities. Our culture is built on diversity, inclusion, and respect. From unconscious bias training for our leaders to global affinity groups that connect colleagues across the globe, we’re creating a community where everyone is encouraged to be themselves.

Ready to Make an Impact?

If you’re excited by the prospect of innovating, growing your career, and collaborating in a dynamic environment, Entrust is the place for you. Join us in making a difference. Let’s build a more secure world—together.

Apply today!

For more information, visit www.entrust.com. Follow us on, LinkedIn, Facebook, Instagram, and YouTube

For US roles, or where applicable:

Entrust is an EEO/AA/Disabled/Veterans Employer

For Canadian roles, or where applicable:

Entrust values diversity and inclusion and we are committed to building a diverse workforce with wide perspectives and innovative ideas. We welcome applications from qualified individuals of all backgrounds, and we strive to provide an accessible experience for candidates of all abilities.

If you require an accommodation, contact .

Recruiter:

Jack Steib

Related Jobs

View all jobs
Spotlight

Senior Data Engineer

Lab 1 London, Greater London, United Kingdom
£85,000 – £125,000 pa Hybrid

Staff FPGA Engineer

Entrust Cambridge, United Kingdom

Staff Customer Success Engineer - Prisma AIRS

Palo Alto Networks London, United Kingdom
Remote

Systems Engineer - Nuclear Hardening

airbus Portsmouth, United Kingdom

Software Engineer

airbus Portsmouth, United Kingdom

Site Reliability Engineering Manager (Data Infra)

ComplyAdvantage London, United Kingdom
Hybrid

Network Infrastructure Engineer

airbus United Kingdom

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.