
Senior Product Security Consultant
Posted Jul 2

Posted Jul 2
This is a fully remote position, open to applicants anywhere in the world.
• Review and authenticate security documentation (e.g., Security Targets, threat models, trust boundaries, asset inventories).
• Evaluate the completeness, precision, and risk coverage of various threat models and risk assessment frameworks (such as STRIDE, LINDDUN, OWASP, TARA, TAL, etc.).
• Confirm security requirement traceability across assets, trust boundaries, and system functionalities.
• Conduct reviews of security controls at both architectural and implementation levels (including encryption, access control, and key management).
• Execute focused security testing (both white-box and black-box) on system APIs, client/mobile applications, backend services, and cloud infrastructure.
• Validate the application of cryptographic controls, key lifecycle procedures, and secure communication protocols.
• Provide detailed, standards-compliant technical reports based on evaluation results.
• MSc or BSc in Computer Science, Electrical/Software Engineering, Cybersecurity, or a related technical field.
• Over 3 years of experience in product security, software evaluation, or penetration testing.
• Demonstrated ability to assess threat models, security requirements, and the effectiveness of mitigation strategies.
• Strong proficiency in technical writing and documentation in English.
• Exceptional analytical skills and meticulous attention to detail.
• Health insurance.
• Retirement plans.
• Paid time off.
• Professional development opportunities.
• Flexible work arrangements.
Lime
Threatscape
GFT Technologies
BeyondTrust
Get handpicked remote jobs straight to your inbox weekly.