> Markdown version of [/jobs/ext/2299806-product-security-vulnerability-response-manager-embedded-semiconductor-security](https://www.wearedevelopers.com/jobs/ext/2299806-product-security-vulnerability-response-manager-embedded-semiconductor-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Product Security Vulnerability Response Manager - Embedded & Semiconductor Security - **Company:** Nxp Semiconductors Netherlands B.v. - **Location:** Belgium - **Contract:** Permanent contract - **Skills:** Cyber Security, Hardware Security Module, Software Vulnerability Management, Software Security, Information Technology - **Published:** August 30, 2026 - **Apply:** https://www.nieuwejobs.com/job/viewjob/9464635/product-security-vulnerability-response-manager-embedded-semiconductor-security-mfd.html ## About the Role Ideally, you bring hands-on experience in product, embedded, or hardware security and possess a solid understanding of how attackers target semiconductor devices and embedded systems. You are familiar with common attack techniques and can help assess their potential impact on NXP products. * Experience in Product Security, Embedded Security, Semiconductor Security, Cybersecurity, or Secure Product Development. * Strong understanding of vulnerability management, coordinated disclosure, incident handling, or product risk management. * Ability to influence cross-functional stakeholders across engineering, product management, quality, and customer-facing teams. * Excellent communication skills and a passion for protecting innovative technology at scale. Understand Threats. Protect Products. Protect Customers. Lead Response. Reduce Risk. Build Trust. Drive Security. Create Impact. Shape Tomorrow. ## Description This role is about ensuring the resilience NXP products (Secure Chips rather then IT Systems) who are are embedded in millions of automotive, industrial, IoT, mobile, and edge devices. In this role, you will help protect products already deployed in the field, leading the response to security vulnerabilities, coordinating mitigation strategies, and strengthening customer trust throughout the post-production product lifecycle. Working at the intersection of Product Security, Engineering, R&D, Customers, and External Security Researchers, you will drive the end-to-end lifecycle of vulnerability management, from initial disclosure through risk assessment, mitigation, and customer communication. As a key member of NXP's Product Security Incident Response Team (PSIRT), you will lead the end-to-end response to security issues affecting NXP products already deployed worldwide. Partnering with engineering teams, customers, and security researchers, you will assess risk, coordinate remediation efforts, manage responsible disclosure, and help safeguard customer trust throughout the product lifecycle. Our PSIRT is committed to rapidly addressing security threats in NXP products by investigating reported issues, evaluating their potential impact, and providing customers with timely and actionable guidance. See also www.nxp.com/psirt. A snapshot of your key responsibilities and impact. * Lead the response and coordination of security vulnerabilities affecting NXP products, hardware and software. * Drive vulnerability triage, impact assessment, severity classification, and prioritization. * Collaborate with engineering and product teams to develop mitigation strategies and remediation plans. * Coordinate responsible disclosure activities with external researchers, customers, and industry partners. * Oversee security advisories, CVE processes, and customer communications. * Act as a trusted advisor to product teams on vulnerability management and product security best practices. * Continuously improve PSIRT processes, metrics, and operational excellence. ## Related Videos - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Companies in the Netherlands: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/193-best-companies-in-the-netherlands-top-25-companies-in-2023) - [The Netherlands – Europe’s powerhouse for software development?](https://www.wearedevelopers.com/magazine/31-the-netherlands-europe-s-powerhouse-for-software-development) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)