Interim Product Security Manager - TrueTalent

TrueTalent

Amersfoort

On-site

EUR 110,000 - 150,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

TrueTalent is seeking an experienced Product Security Manager to lead cybersecurity across the full lifecycle of connected machines and embedded systems. You will translate the EU Cyber Resilience Act (CRA) into practical policies and secure-by-design principles, partnering with R&D, engineering, IT and QA to embed security from concept to deployment.

You will drive SBOM creation, vulnerability management and PSIRT, coordinating responses and regulatory reporting while aligning with IEC

Qualifications

  • Bachelor’s degree in Cybersecurity, IT, Engineering or related field or equivalent practical experience.
  • At least 5 years’ cybersecurity experience, preferably in product security, embedded systems or industrial environments.
  • Solid knowledge of the EU Cyber Resilience Act (CRA) and translating requirements into actionable steps.
  • Experience with SBOMs, vulnerability management, CVD/PSIRT and risk assessments.
  • Understanding of industrial automation and OT cybersecurity challenges.
  • Strong communication with engineering, IT and business stakeholders; balancing security, compliance and time-to-market.
  • Optional: IEC 62443, NIST CSF or relevant security certifications.

Responsibilities

  • Develop the product security framework and translate CRA into practical policies and standards.
  • Collaborate with R&D, engineering, IT and QA to embed security in product development from the start.
  • Define requirements for secure software development, security testing, SBOMs and documentation.
  • Lead product security risk assessments, vulnerability management and PSIRT processes.
  • Coordinate vulnerability response, reporting and regulatory compliance during incidents.
  • Ensure cybersecurity compliance with CRA, Machinery Regulation, NIS2 and IEC 62443.

Skills

Product security
Regulatory compliance
Industrial cybersecurity
Stakeholder communication
Vulnerability management
SBOMs
CVD/PSIRT processes

Education

Bachelor’s degree in Cybersecurity, IT, Engineering or related field

Tools

IEC 62443
NIST CSF
CRA knowledge

Job description

Are you an experienced Product Security Manager with a strong background in the Cyber Resilience Act (CRA), embedded systems and industrial cybersecurity? This international technology organization is looking for a product security specialist who can combine cybersecurity, engineering and regulatory compliance and translate them into a practical security approach throughout the entire product lifecycle. You will have the opportunity to shape product security from the ground up and make a lasting impact on connected machines and digital products. Read on to learn more.

This is what you will do as a Product Security Manager

As a Product Security Manager, you are responsible for cybersecurity throughout the full lifecycle of connected machines, embedded systems and digital products. You develop the product security framework and translate requirements from the EU Cyber Resilience Act (CRA) into practical policies, standards and secure-by-design principles. Working closely with R&D, engineering, IT and QA, you make sure security is embedded in product development from the start.

You define requirements for secure software development, security testing, SBOMs, technical documentation and secure IT/OT architecture. You also take the lead in product risk and vulnerability management, including vulnerability assessments, the Coordinated Vulnerability Disclosure (CVD) process and PSIRT. When vulnerabilities or incidents occur, you coordinate the response and ensure security updates, reporting and regulatory requirements are handled correctly.

In addition, you oversee product cybersecurity compliance with regulations and standards such as the CRA, Machinery Regulation, NIS2 and IEC 62443. You work with suppliers, commercial teams and customers to clarify cybersecurity requirements and responsibilities. This puts you in a key position between engineering, cybersecurity, compliance and the business, with a direct impact on the security and regulatory readiness of the organization’s products.

What you will bring
  • You have a Bachelor’s degree in Cybersecurity, IT, Engineering or a related field, or equivalent practical experience
  • You have at least 5 years of relevant cybersecurity experience, preferably in product security, embedded systems or industrial environments
  • You have solid knowledge of the EU Cyber Resilience Act (CRA) and can translate regulatory requirements into practical actions for engineering teams
  • You have experience with SBOMs, vulnerability management, CVD/PSIRT processes and product security risk assessments
  • You understand industrial automation and the cybersecurity challenges of connected machines and OT environments
  • You communicate effectively with engineering, IT and business stakeholders and know how to balance security, compliance and time-to-market
  • Experience with IEC 62443, NIST CSF or relevant security certifications is a plus
What our client offers
  • The position is open to professionals looking for either an interim assignment or a permanent role
  • For interim professionals, the hourly rate is expected to be around €125 per hour
  • A key role in shaping and further developing product security within an international technology environment
  • The opportunity to build your expertise in product cybersecurity, the Cyber Resilience Act (CRA) and secure-by-design
  • Close collaboration with experienced professionals across R&D, engineering, IT, QA and commercial teams
  • A role with significant ownership and the opportunity to influence how cybersecurity is embedded throughout the product lifecycle
About our client

Our client is an international technology organization that develops advanced machines, automation solutions and digital products for industrial environments. With its headquarters in the Netherlands and locations worldwide, the organization combines engineering, technology and customer service to support customers across international markets. Innovation and continuous product development play an important role within the organization. As machines and digital solutions become increasingly connected, cybersecurity is becoming a key part of product development and the entire product lifecycle. This creates an important role for the Product Security Manager in further developing and embedding product security across the organization.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Product Security Manager - Embedded & CRA Compliance
Product Security Manager - Embedded & CRA Compliance

TrueTalent • Amersfoort

On-site
EUR 110,000 - 150,000
Senior Product Security & Risk Consulting Manager
Senior Product Security & Risk Consulting Manager

Accenture • Amsterdam

On-site
Confidential
(Senior) Cyber Security Consulting Manager – Products Security Industries
(Senior) Cyber Security Consulting Manager – Products Security Industries

Accenture • Amsterdam

On-site
EUR 70,000 - 90,000
Cyber Security Process Analyst
Cyber Security Process Analyst

TMC • Noord-Brabant

On-site
EUR 65,000 - 90,000
Staff Product Manager – German Speaking - Managed Detection and Incident Response (m/f/x)
Staff Product Manager – German Speaking - Managed Detection and Incident Response (m/f/x)

Eye Security • Netherlands

Hybrid
GBP 110,000 - 160,000
Meaningful mission
Top-tier professionals
Strategic ownership
+6
Senior Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)
Senior Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)

Eye Security • Den Haag

Hybrid
EUR 90,000 - 150,000
Remote-friendly culture
Quarterly meetups
Annual company retreats
Staff Product Manager – German Speaking - Managed Detection and Incident Response (m/f/x)
Staff Product Manager – German Speaking - Managed Detection and Incident Response (m/f/x)

Eye Security • Den Haag

Hybrid
EUR 120,000 - 160,000
Remote-friendly culture
Quarterly meetups
Annual retreats
+3
Senior Product Manager – German Speaking - Managed Detection and Incident Response (m/f/x)
Senior Product Manager – German Speaking - Managed Detection and Incident Response (m/f/x)

Eye Security • Netherlands

Hybrid
GBP 95,000 - 130,000
Remote-friendly culture
Quarterly meetups
Annual company retreats
+2
Staff Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)
Staff Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)

Eye Security • Den Haag

Hybrid
EUR 90,000 - 130,000
Remote‑friendly culture
Quarterly meetups
Annual company retreats
+3
Staff Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)
Staff Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)

Eye Security • Netherlands

Hybrid
GBP 90,000 - 120,000
Remote-friendly
Equity participation
Wellbeing days
+1