NXP
Industrial Security
ProductSecurityIncidentResponseManager
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Product Security Incident Response Manager at NXP. Skills: Incident response, Vulnerability management, Product security. Empower software development community. Manage vulnerabilities in Third Party Components”
What You'll Achieve.
Improving our security posture; Protecting our products and customers
Industry & Context.
Conscious and reliable way of working
What They're Looking For.
Must Have
Experience in product security incident response, Experience in investigation, Experience in vulnerability management across hardware and software products, Familiarity in a Security Operations Center or PSIRT or similar security incident response teams, Familiarity with industry-standard security frameworks, standards, and regulations, Understanding of security in embedded systems, Understanding of security in hardware, Ability to quickly learn where needed, Interests in security concepts, Interests in secure coding, Interests in security best practices
Nice to Have
Security certifications
What You'll Do.
Empower software development community
Manage vulnerabilities in Third Party Components
Manage vulnerabilities in Open Source Software
Ensure robust security
Define best practices
Develop best practices
Drive continuous improvement
Contribute to new regulations
Contribute to standardization activities
Collaborate with innovators
Partner with external security researchers
Partner with academia
Partner with research organizations
Support vulnerability assessments
Lead vulnerability assessments
Work cross-functionally with internal teams
Ensure timely resolution of incidents
Generate PSIRT JIRA tickets
Manage PSIRT JIRA tickets
Provide updates about incident status
Provide updates about impact
Provide updates about mitigation actions
Manage incoming Third Party vendor vulnerability pre-notifications
Monitor internal sources
Monitor external sources
Identify signs of security incidents
How You'll Work.
Team & Collaboration
Collaborate across engineering; Collaborate with security teams; Collaborate with product managers; Collaborate with innovators; Work cross-functionally with internal teams (engineering, product management, legal, etc.); Collaborate with external security researchers; Collaborate with academia; Collaborate with research organizations
Communication Scope
Excellent collaboration and communication skills
Full Job Description
Join one of the world’s largest industrial security teams — and build technology that protects real devices worldwide. At NXP’s Competence Center Crypto & Security, we design, build, and deliver end-to-end security — from early innovation to architecture to products in the field. If you're a security engineer who wants to create real-world impact, we’d love to hear from you. The NXP Product Security Incident Response Team (PSIRT) is committed to rapidly address security vulnerabilities in NXP products, by responding and documenting reported vulnerabilities and by providing customers with clear guidance on the impact, severity and mitigation. See also [www.nxp.com/psirt](http://www.nxp.com/psirt). Our organization is growing and therefore we have this new opportunity. We’re looking for an experienced security expert to work on different initiatives and projects with the goal of improving our security posture. In addition, you will be responsible for identifying, triaging, and supporting resolution of product-related security incidents. You’ll get the opportunity to collaborate across engineering, security teams, product managers and others with the goal of protecting our products and customers. **Your Responsibilities** * Empower our software development community in managing vulnerabilities in Third Party Components (TPS) and Open Source Software (OSS), ensuring robust security * Define and develop best practices, streamline processes, and drive continuous improvement initiatives. * Contribute to new regulations and standardization activities that may impact product security or our way of working such as the upcoming EU Cyber Resilience Act. * Collaborate with innovators – partner with external security researchers, academia and research organizations on cutting-edge projects and vulnerability submissions. * Be a key player in risk management by supporting and leading triage and vulnerability assessments of product vulnerabilities. * Work cross-functionally with int
Applying for this Product Security Incident Response Manager role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about NXP?
Real rants from real employees. Read before you apply.