Senior Product Security Consultant

C
CENSUS LABSCybersecurity
Location: GreeceContractSenior
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Languages
English
Experience
3+ years

Requirements

  • MSc or BSc in Computer Science, Electrical/Software Engineering, Cybersecurity, or a related technical discipline.
  • 3+ years of experience in product security, software evaluation, or penetration testing.
  • In-depth understanding of security architecture and common system design patterns.
  • Hands-on experience performing design-level security reviews.
  • Familiarity with structured security frameworks such as Common Criteria, FIPS 140, ISO 15408, OWASP ASVS, and MASVS.
  • Practical experience with security testing in diverse product environments.
  • Knowledge of authentication, authorization, identity, and secrets management technologies.
  • Proficiency in applied cryptography.
  • Strong technical writing and documentation skills in English.

Responsibilities

  • Review and validate security documentation (e.g., Security Targets, threat models, trust boundaries, asset inventories).
  • Assess the completeness, accuracy, and risk coverage of various threat models and risk assessment frameworks (STRIDE, LINDDUN, OWASP, TARA, TAL, etc.).
  • Verify security requirement traceability across assets, trust boundaries, and system functions.
  • Conduct architectural and implementation-level reviews of security controls (e.g., encryption, access control, key management).
  • Perform targeted security testing (white-box and black-box) on system APIs, client/mobile apps, backend services, and cloud infrastructure.
  • Validate implementation of cryptographic controls, key lifecycle procedures, and secure communication protocols.
  • Evaluate the use of post-quantum cryptography and hybrid models in secure key management.
  • Analyze secure deployment configurations across containerized platforms (Docker, Kubernetes), CI/CD pipelines, and cloud services.
  • Deliver comprehensive, standards-aligned technical reports based on evaluation findings.
  • Communicate product security risks clearly to both technical and non-technical audiences.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now