Senior Product Security Engineer managing security vulnerabilities across Red Hat software and OSS projects. Leading incident response and ensuring compliance with EU Cyber Resilience Act.
Responsibilities
Manage and provide timely response and disclosure of security vulnerabilities and incidents across Red Hat software, Fedora, and other OSS projects.
Ensure Red Hat Product Security processes and disclosures align with the EU Cyber Resilience Act (CRA) and other relevant regulations.
Conduct in-depth risk assessments on vulnerabilities in Red Hat OSS projects and communicate risks effectively to diverse stakeholders (engineers, architects, senior leadership).
Contribute to customer-facing security documentation, references, and data, including Common Vulnerabilities and Exposures (CVE) pages and metadata.
Provide technical leadership, mentor junior engineers, and drive continuous improvement in vulnerability management practices (e.g., contributing to SBOM generation).
Actively participate in relevant OSS working groups to shape and implement industry standards for vulnerability disclosure and coordination.
Requirements
6+ years of experience in cybersecurity incident management and coordination and/or with delivering technology-related software
Bachelor’s degree in a technical field
Industry certifications like CISSP, CSSLP, CISA/CISM, PMP are a plus
Expert knowledge and practical understanding of the Linux Operating System
Proven expertise in security vulnerabilities, risk assessment, and the Confidentiality, Integrity, and Availability (CIA) triad
Strong change management skills to identify, track, and implement improvements for continuous enhancement of incident response following security events
Ability to work effectively and autonomously in a demanding, fast-paced, and culturally diverse environment across multiple time zones
Exceptional professional written and verbal communication skills in English.
Consultor Especialista em Infraestrutura e Segurança em TI, responsável por atendimento de tickets e gestão de problemas técnicos. Suporta a infraestrutura crítica em ambientes corporativos no Brasil e Argentina.
Network and Security Specialist designing and supporting Cisco and Palo Alto solutions across Brazil. Collaborating with teams to ensure stable and secure network performance.
Lead Security and Compliance Engineer managing end - to - end security for user data. Achieving compliance and developing security architecture at a fast - paced AI startup.
Supervisor de Calidad y Regulación de Seguridad Alimentaria en Cargill asegurando cumplimiento y gestión de seguridad alimentaria. Supervisando actividades regulatorias y liderazgo en la planta.
Security Officer ensuring safety and a welcoming environment at Duke Health facilities. Responding to emergencies, monitoring premises, and supporting clinical teams in patient interventions.
Information Security Specialist focused on Azure Data Platforms and Technology Risk reporting for TD. Collaborates to mitigate security threats and ensure compliance with regulatory requirements.
Security Officer responsible for patrolling hospital grounds and ensuring personal safety of personnel and visitors. Acts as a liaison with emergency services and documents incidents.
Safety Specialist responsible for implementing safety culture and best practices at Iguá Saneamento. Engaging teams and ensuring compliance with safety regulations and practices.