Principal Engineer - Product Security

Matchtech
Barrow-in-Furness, UK
17 days ago
Apply on find.jobs
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Compensation
£131,477.0 - £177,632.0
Working hours
Regular working hours
Job source

Tech stack

Systems Engineering Software Security

Job description

We’re recruiting for a Principal Engineer - Product Security to provide senior technical leadership across Information Assurance (IA) and Product Security activities within a highly regulated engineering programme.

This is a delivery-focused role, supporting design maturity and programme readiness through security engineering governance, security case development, and risk management., You’ll act as the focal point for product security within a complex engineering environment, working closely with engineering teams and stakeholders to ensure security engineering activities are delivered in line with agreed processes, governance, and programme milestones., * Leading and delivering product security engineering activity in line with programme plans and governance

  • Developing Interim and Final Security Cases across programme phases
  • Managing IA and security risks, including maintaining security/risk register contributions
  • Supporting design assurance, formal reviews, and lifecycle gates with robust security evidence
  • Coordinating and managing IA Technical Queries and formal communications
  • Reviewing supplier IA/cyber deliverables and providing assurance outputs
  • Planning, tracking and reporting delivery status, risks and milestones
  • Providing technical leadership and mentoring within the product security team

Requirements

We’re looking for strong experience in IA / Product Security within complex, regulated environments (e.g., defence, maritime, aerospace), including:

  • Security case development and security evidence/assurance
  • Risk management (including risk registers) and requirements gap analysis
  • Secure by Design and/or application security principles
  • Systems engineering lifecycle understanding and design assurance processes
  • Stakeholder management across multi-disciplinary engineering teams and suppliers

Desirable knowledge:

  • HM Government Information Security Standards IS1 & IS2
  • ISO 27000 series (e.g., ISO 27001)
  • IEC 62443
  • Working towards or holding NCSC CCP SIRA (or equivalent)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on find.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:08 min

Introduction to speakers and model-based systems engineering goals

Daniel Siegl +1 · LIVE

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

3:09 min

Balancing data science skillings alongside systems engineering rigor

Nico Schmidt · LIVE

43 sec

Software engineering journey and local Manchester roots

Jonathan Tang · Coffee With Developers

3:55 min

Establishing blameless dialogue surrounding critical software security vulnerabilities

Chris Heilmann Chris Heilmann +2 · LIVE

Videos

See all

Related articles

See all