Product Security Incident Response Manager (m/f/d)

NXP Semiconductors
2 weeks ago
Job Type
Permanent
Work Pattern
Full-time
Work Location
On-site
Seniority
Senior
Education
Degree
Posted
11 May 2026 (2 weeks ago)

Benefits

Market competitive compensation Employment group V of the CBA

Join one of the world’s largest industrial security teams — and build technology that protects real devices worldwide.
At NXP’s Competence Center Crypto & Security, we design, build, and deliver end-to-end security — from early innovation to architecture to products in the field.
If you're a security engineer who wants to create real-world impact, we’d love to hear from you.

The NXP Product Security Incident Response Team (PSIRT) is committed to rapidly address security vulnerabilities in NXP products, by responding and documenting reported vulnerabilities and by providing customers with clear guidance on the impact, severity and mitigation. See also www.nxp.com/psirt.

Our organization is growing and therefore we have this new opportunity. We’re looking for an experienced security expert to work on different initiatives and projects with the goal of improving our security posture. In addition, you will be responsible for identifying, triaging, and supporting resolution of product-related security incidents. You’ll get the opportunity to collaborate across engineering, security teams, product managers and others with the goal of protecting our products and customers.

Your Responsibilities

  • Empower our software development community in managing vulnerabilities in Third Party Components (TPS) and Open Source Software (OSS), ensuring robust security

  • Define and develop best practices, streamline processes, and drive continuous improvement initiatives.

  • Contribute to new regulations and standardization activities that may impact product security or our way of working such as the upcoming EU Cyber Resilience Act.

  • Collaborate with innovators – partner with external security researchers, academia and research organizations on cutting-edge projects and vulnerability submissions.

  • Be a key player in risk management by supporting and leading triage and vulnerability assessments of product vulnerabilities.

  • Work cross-functionally with internal teams (engineering, product management, legal, etc.) to ensure timely resolution of incidents.

  • Own the process by generating and managing PSIRT JIRA tickets for validated vulnerabilities.

  • Provide updates about incident status, impact, and mitigation actions to relevant stakeholders.

  • Manage incoming Third Party vendor vulnerability pre-notifications andmonitor internal and external sources to identify signs of security incidents related to our products.

Your profile

  • Bachelor’s/master’s degree in engineering – Computer Science, Electrical Engineering, Cybersecurity, or a related field.

  • Experience in product security incident response, investigation and vulnerability management across hardware and software products.

  • Familiarity in a Security Operations Center or PSIRT or similar security incident response teams.
  • Familiarity with industry-standard security frameworks, standards, and regulations.

  • Understanding of security in the following areas - embedded systems, hardware and software; ability to quickly learn where needed

  • Interests in security concepts, secure coding, and security best practices

  • Excellent collaboration and communication skills to work effectively with cross-functional teams.

  • Ability to work independently, taking ownership of security initiatives and improving processes.

Please note: The successful candidate may/will be responsible for security related tasks. The assignment may/will be in scope of security certifications, therefore a conscious and reliable way of working is necessary.

For Austrian applicants: NXP provides market competitive compensation according to the benchmarking of the electronic and semiconductor industry. Due to the Austrian Equal Treatment Act we are obligated to state the employment group of our applicable collective bargaining agreement (CBA) “Kollektivvertrag für Angestellte Gewerbe und Handwerk und in der Dienstleistung“, this position (fulltime) is graded in Employment Group V. Your individual experiences and expectations will be considered in the application process. Moreover, we provide attractive benefits to our employees like home office, flexible working time, meal benefits and more.


More information about NXP in Austria...

#LI-38ff

Related Jobs

View all jobs

Product Security Incident Response Manager (m/f/d)

NXP Semiconductors Austria
On-site

Product Security Incident Response Manager (m/f/d)

NXP Semiconductors
On-site

Product Security Incident Response Manager (m/f/d)

NXP Semiconductors
On-site

Network & Cyber Security Consultant

Huntress - Bracknell Bristol, Bristol (county), United Kingdom
£450 pd Hybrid

Principal Product Security Certification Expert (m/f/d)

NXP Semiconductors Glasgow, Alba / Scotland, G2 1AL, United Kingdom
Hybrid

Principal Product Security Certification Expert (m/f/d)

NXP Semiconductors Austria
Hybrid

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Edge Computing Jobs in the UK (2026 Guide)

Where to advertise edge computing jobs UK in 2026: the specialist boards and channels that reach embedded, IoT, 5G MEC and edge AI engineering talent. Edge computing sits at the intersection of embedded systems, networking, cloud infrastructure and real-time data processing — and the professionals who specialise in it are a small, highly technical community not well served by general job boards. Candidates with genuine edge and IoT expertise are rarely browsing general platforms, and roles in this space are frequently misunderstood or miscategorised by non-specialist recruiters. This guide, published by EdgeComputingJobs.co.uk, covers where to advertise edge computing roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Edge Computing Jobs UK 2026: What to Expect Over the Next 3 Years

Edge Computing Jobs UK 2026: roles, salaries and the IoT, 5G and edge AI hiring trends shaping UK edge computing careers over the next three years. Edge computing is quietly becoming one of the most consequential technology shifts of the decade — and the jobs market is starting to reflect that. As the limitations of centralised cloud infrastructure become apparent across industries that require real-time processing, ultra-low latency, and data sovereignty, the demand for professionals who can design, build, and manage computing at the edge has moved from niche to mainstream. But the edge computing jobs market of 2026 is not yet the mature, well-defined landscape that cloud computing has become. It is still forming. New architectures are emerging, standards are being established, and the range of industries deploying edge infrastructure is expanding rapidly — from manufacturing and telecommunications to healthcare, retail, autonomous vehicles, and smart cities. That creates a particular kind of opportunity for job seekers: the chance to build deep expertise in a discipline that is growing faster than the talent pipeline serving it. The candidates who will thrive over the next three years are those who understand where edge computing is heading — which use cases are driving commercial deployment, which technologies are defining the architecture of distributed systems, and how the skills required to work at the edge differ meaningfully from those that served professionals well in centralised cloud environments. This article breaks down what the UK edge computing jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.