NXP

Industrial Security

ProductSecurityIncidentResponseManager

Gratkorn, Austria FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid+ candidates.

The Brief

“Product Security Incident Response Manager at NXP. Skills: Incident response, Vulnerability management, Product security. Empower software development community. Manage vulnerabilities in Third Party Components”

What You'll Achieve.

Improving our security posture; Protecting our products and customers

Industry & Context.

Industrial Security
Eligibility Requirements

Conscious and reliable way of working

What They're Looking For.

Must Have

Experience in product security incident response, Experience in investigation, Experience in vulnerability management across hardware and software products, Familiarity in a Security Operations Center or PSIRT or similar security incident response teams, Familiarity with industry-standard security frameworks, standards, and regulations, Understanding of security in embedded systems, Understanding of security in hardware, Ability to quickly learn where needed, Interests in security concepts, Interests in secure coding, Interests in security best practices

Nice to Have

Security certifications

What You'll Do.

Empower software development community

Manage vulnerabilities in Third Party Components

Manage vulnerabilities in Open Source Software

Ensure robust security

Define best practices

Develop best practices

Drive continuous improvement

Contribute to new regulations

Contribute to standardization activities

Collaborate with innovators

Partner with external security researchers

Partner with academia

Partner with research organizations

Support vulnerability assessments

Lead vulnerability assessments

Work cross-functionally with internal teams

Ensure timely resolution of incidents

Generate PSIRT JIRA tickets

Manage PSIRT JIRA tickets

Provide updates about incident status

Provide updates about impact

Provide updates about mitigation actions

Manage incoming Third Party vendor vulnerability pre-notifications

Monitor internal sources

Monitor external sources

Identify signs of security incidents

How You'll Work.

Team & Collaboration

Collaborate across engineering; Collaborate with security teams; Collaborate with product managers; Collaborate with innovators; Work cross-functionally with internal teams (engineering, product management, legal, etc.); Collaborate with external security researchers; Collaborate with academia; Collaborate with research organizations

Communication Scope

Excellent collaboration and communication skills

Full Job Description

Join one of the world’s largest industrial security teams — and build technology that protects real devices worldwide. At NXP’s Competence Center Crypto & Security, we design, build, and deliver end-to-end security — from early innovation to architecture to products in the field. If you're a security engineer who wants to create real-world impact, we’d love to hear from you. The NXP Product Security Incident Response Team (PSIRT) is committed to rapidly address security vulnerabilities in NXP products, by responding and documenting reported vulnerabilities and by providing customers with clear guidance on the impact, severity and mitigation. See also [www.nxp.com/psirt](http://www.nxp.com/psirt). Our organization is growing and therefore we have this new opportunity. We’re looking for an experienced security expert to work on different initiatives and projects with the goal of improving our security posture. In addition, you will be responsible for identifying, triaging, and supporting resolution of product-related security incidents. You’ll get the opportunity to collaborate across engineering, security teams, product managers and others with the goal of protecting our products and customers. **Your Responsibilities** * Empower our software development community in managing vulnerabilities in Third Party Components (TPS) and Open Source Software (OSS), ensuring robust security * Define and develop best practices, streamline processes, and drive continuous improvement initiatives. * Contribute to new regulations and standardization activities that may impact product security or our way of working such as the upcoming EU Cyber Resilience Act. * Collaborate with innovators – partner with external security researchers, academia and research organizations on cutting-edge projects and vulnerability submissions. * Be a key player in risk management by supporting and leading triage and vulnerability assessments of product vulnerabilities. * Work cross-functionally with int

Free ATS check

Applying for this Product Security Incident Response Manager role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about NXP?

Real rants from real employees. Read before you apply.

Read Company Rants →