Rodeo
Get started

Entrust

Staff Product Security Engineer

Cambridge
Posted about 20 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Join us at Entrust

At Entrust, we’re shaping the future of identity centric security solutions. From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration, and build solutions that help keep the world moving safely.

Get to Know Us

Headquartered in Minnesota, Entrust is an industry leader in identity-centric security solutions, serving over 150 countries with cutting-edge, scalable technologies. But our secret weapon? Our people. It’s the curiosity, dedication, and innovation that drive our success and help us anticipate the future.

Position Overview

The Staff Product Security Engineer is a senior technical leader responsible for defining and driving the security strategy, architecture, and engineering practices across Entrust's cryptographic product portfolio. This role provides technical leadership beyond individual products, influencing security decisions across multiple engineering teams and ensuring security is embedded throughout the entire product lifecycle.

The Staff Product Security Engineer serves as a recognized security subject matter expert, partnering with product management, engineering leadership, certification teams, and executive stakeholders to establish security roadmaps, enhance security capabilities, and address emerging threats. This role combines deep technical expertise in software, hardware, and cryptographic security with strong leadership and mentoring capabilities.

You will lead complex security initiatives, establish engineering standards, drive security architecture reviews, and guide teams in adopting secure-by-design principles. You will also represent security engineering in customer engagements, security audits, certification activities, and interactions with external security researchers and industry experts.

A strong background in mathematics, engineering, computer science, or information security is essential. The successful candidate will demonstrate a proven ability to influence technical direction, solve highly complex security challenges, and drive security excellence across the organization.

Responsibilities

Technical Leadership & Strategy

  • Define and drive product security strategy, architecture principles, and security engineering roadmaps across multiple products and platforms.
  • Lead the security architecture review process for new products, major feature developments, and platform changes.
  • Establish and evolve secure development standards, security design patterns, and engineering best practices.
  • Serve as the primary technical authority for complex security architecture decisions and risk-based security trade-off discussions.
  • Drive strategic security initiatives that improve security posture, development efficiency, and regulatory readiness across the organization.
  • Anticipate emerging threats, industry trends, and regulatory requirements and translate these into actionable engineering improvements.

Product Security Engineering

  • Collaborate with cross-functional teams to integrate security requirements into product design, development, deployment, and maintenance processes.
  • Lead threat modeling activities for critical systems, products, and architectures.
  • Conduct and oversee advanced security assessments, vulnerability investigations, attack surface analyses, and risk evaluations.
  • Design, implement, and review security controls, cryptographic protections, and system hardening mechanisms.
  • Lead investigations of critical security issues and provide technical direction for remediation efforts.
  • Guide secure design reviews and code review activities for business-critical products.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Security Tooling & Automation

  • Define and drive the security tooling strategy across software and hardware development environments.
  • Lead the development and adoption of advanced security testing capabilities, including fuzzing, software composition analysis (SCA), static analysis, dynamic analysis, memory safety validation, and vulnerability discovery tooling.
  • Partner with DevOps and engineering teams to embed security automation and policy enforcement into CI/CD processes.
  • Improve vulnerability detection, triage, and remediation workflows through automation and data-driven approaches.

Security Governance & Risk Management

  • Establish scalable approaches for vulnerability management, risk assessment, and security assurance across multiple product lines.
  • Provide technical leadership during security incidents, vulnerability disclosures, and coordinated remediation efforts.
  • Support product compliance and certification initiatives including FIPS 140-3, Common Criteria, PCI HSM, Cyber Resilience Act (CRA), and other applicable security standards.
  • Review and approve security exceptions, risk acceptance decisions, and compensating controls where appropriate.

Collaboration & External Engagement

  • Act as a trusted advisor to engineering leaders, architects, product managers, and executive stakeholders.
  • Represent Entrust in customer security discussions, security reviews, certification engagements, and external assessments.
  • Collaborate with external researchers, independent laboratories, certification bodies, and security consultants.
  • Contribute to industry working groups, standards development efforts, and security communities where appropriate.

Mentoring & Organizational Impact

  • Mentor senior engineers and security practitioners, fostering technical excellence across the organization.
  • Lead technical communities of practice focused on secure development and product security.
  • Influence engineering culture by promoting security-first thinking and secure-by-design principles.
  • Provide technical leadership during strategic planning, architecture reviews, and product roadmap discussions.
  • Help identify security skill gaps and contribute to workforce development initiatives.

Technical Knowledge / Skills And Experience Required

  • Extensive experience in product security, security architecture, or security engineering roles.
  • Demonstrated experience providing technical leadership across multiple teams, products, or business units.
  • Deep expertise in applied cryptography, cryptographic protocols, and security architectures.
  • Strong understanding of secure software development and software assurance practices.
  • Strong understanding of hardware security, embedded systems security, trusted execution environments, and FPGA security concepts.
  • Advanced knowledge of threat modeling methodologies and risk assessment frameworks.
  • Experience leading large-scale vulnerability management and remediation programs.
  • Expertise with security assessment methodologies, penetration testing techniques, and offensive security concepts.
  • Experience building or deploying security tooling integrated into modern software development pipelines.
  • Strong programming capability in Python, C/C++, Go, Rust, Java, or similar languages.
  • Experience supporting or leading security certification activities including FIPS 140-3, Common Criteria, PCI HSM, or equivalent frameworks.
  • Strong understanding of modern regulatory and compliance requirements impacting product security, including CRA, NIS2, and secure development frameworks.
  • Excellent communication skills with demonstrated ability to influence executive stakeholders and technical teams.
  • Proven ability to drive organizational change through technical leadership and influence.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Qualifications

  • Bachelor's degree in Computer Science, Information Security, Electrical Engineering, Mathematics, or related discipline.
  • Master's degree preferred.
  • Relevant security certifications (CISSP, CSSLP, OSCP, GIAC, CCSP, SABSA, or similar) are desirable.
  • Demonstrated track record of leading complex security initiatives with organization-wide impact.

At Entrust, we don’t just offer jobs – we offer career journeys. Here is what you can expect when you join our team:

Career Growth

  • Whether you’re a budding developer or a seasoned expert, we’re invested in your professional journey. With learning-forward initiatives and exciting challenges, your growth is our priority.

Flexibility

  • Life is all about balance. Whether you’re remote, hybrid, or on-site, we offer flexible options that fit your lifestyle.

Collaboration

  • Here, your voice matters. Our teams thrive on sharing ideas, brainstorming solutions, and working together to build a better tomorrow.

We believe in securing identities—but it doesn’t stop there. At Entrust, we’re passionate about valuing all identities. Our culture is built on diversity, inclusion, and respect. From unconscious bias training for our leaders to global affinity groups that connect colleagues across the globe, we’re creating a community where everyone is encouraged to be themselves.

Ready to Make an Impact?

If you’re excited by the prospect of innovating, growing your career, and collaborating in a dynamic environment, Entrust is the place for you. Join us in making a difference. Let’s build a more secure world—together.

Apply today!

For more information, visit www.entrust.com. Follow us on, LinkedIn, Facebook, Instagram, and YouTube

For US Roles, Or Where Applicable

Entrust is an EEO/AA/Disabled/Veterans Employer

For Canadian Roles, Or Where Applicable

Entrust values diversity and inclusion and we are committed to building a diverse workforce with wide perspectives and innovative ideas. We welcome applications from qualified individuals of all backgrounds, and we strive to provide an accessible experience for candidates of all abilities.

If you require an accommodation, contact accessibility@entrust.com.

Recruiter

Jack Steib

jack.steib@entrust.com

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Product Security
Security Architecture
Applied Cryptography
Threat Modeling
Secure Software Development
Hardware Security
Vulnerability Management
Penetration Testing
Python
C/C++
Go
Rust
Java
FIPS 140-3
Common Criteria
PCI HSM

Location

Cambridge, England, United Kingdom

Sign up to applySee more jobs like this