Principal Product Security Incident Responder

🕒 2 days ago

🇺🇸 United States – Remote

💵 $147k - $245k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of GE Vernova

GE Vernova

10,000+ employees

💼 Consulting

📦 Logistics

🏭 Manufacturing

Consulting • Logistics • Manufacturing

GE Vernova is a leader in the energy sector with over 130 years of experience, dedicated to electrifying the world while decarbonizing it. The company offers a broad portfolio of energy solutions including gas, hydro, nuclear, and wind power technologies, aimed at providing reliable, affordable, and sustainable energy. With a strong focus on innovation, GE Vernova plays a significant role in reducing the carbon footprint of global power systems and supports the transition to net-zero emissions by 2030.

📋 Description

• operate the GE Vernova PSIRT, maintaining the policies, processes, and tools to triage, track, and resolve product vulnerabilities across all business units • manage end-to-end Coordinated Vulnerability Disclosure (CVD), ensuring alignment with industry standards and mandatory EU CRA notification timelines (including ENISA/CSIRT reporting) • lead the CNA (CVE Numbering Authority) program, managing the assignment and lifecycle of CVE records to ensure timely, accurate public disclosures • lead responses to product-related cybersecurity incidents at customer sites, coordinating across engineering, legal, and customer-facing teams • maintain and exercise incident response playbooks and communication templates to ensure rapid, consistent resolution • deploy AI-powered tools to automate vulnerability scoring, incident triage, and situational awareness to handle high volumes of complex threats • align PSIRT operations with the CISO’s enterprise CERT function to ensure seamless incident handling and shared situational awareness • embed PSIRT awareness across Power, Wind, and Electrification business units by establishing liaisons and defined response protocols • define and report on PSIRT performance metrics (e.g., MTTR, disclosure compliance) for executive leadership and enterprise risk reviews

🎯 Requirements

• 8+ years of cybersecurity experience with deep expertise in PSIRT operations, vulnerability management, or product incident response in an industrial/energy context • proven experience leading a PSIRT function, including hands-on management of coordinated disclosure and customer-facing security incidents • experience engaging with law enforcement, government agencies, and national authorities regarding sensitive cybersecurity incidents • deep familiarity with CVE, CVSS, CWE, and standards like ISO/IEC 29147/30111 • bachelor’s degree in a technical discipline • direct experience with GE Vernova products or equivalent OT/industrial energy systems (preferred) • familiarity with IEC 62443 security standards and energy-sector ISACs (e.g., E-ISAC) (preferred) • experience building or scaling a PSIRT function from the ground up (preferred) • certifications such as CISSP, GCIH, GICSP, or equivalent (preferred) • advanced degree in Cybersecurity, Computer Science, or Engineering (preferred)

🏖️ Benefits

• medical, dental, vision, and prescription drug coverage • access to Health Coach from GE Vernova, a 24/7 nurse-based resource • access to the Employee Assistance Program, providing 24/7 confidential assessment, counseling and referral services • GE Vernova Retirement Savings Plan, a tax-advantaged 401(k) savings opportunity with company matching contributions and company retirement contributions • access to Fidelity resources and financial planning consultants • tuition assistance • adoption assistance • paid parental leave • disability benefits • life insurance • 12 paid holidays • permissive time off

Apply Now

Similar Jobs

🕒 2 days ago

Flock Safety

501 - 1000

🔐 Security

Drive product security initiatives and manage vulnerability disclosures for Flock's security team. Collaborate across teams to enhance product safety in connected hardware and cloud platforms.

🇺🇸 United States – Remote

💵 $185k - $230k / year

💰 $150M Series E on 2022-02

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

info

🕒 3 days ago

Honeywell

10,000+ employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Advanced Cyber Security Architect/Engineer at Honeywell managing IAM applications and SIEM operations. Working remotely as part of the global Cyber Security team.

🕒 3 days ago

Red Hat

10,000+ employees

🏢 Enterprise

Security Technical Account Manager managing support for Project Lightwell at Red Hat. Establishing relationships with customers and providing technical guidance on security practices and software interactions.

🇺🇸 United States – Remote

💵 $124.2k - $198.6k / year

💰 Corporate Round on 1999-03

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

info

🕒 3 days ago

LTS

1001 - 5000

🏥 Healthcare

💼 Consulting

📦 Logistics

Agentic AI Security Engineer focused on securing AI systems at LTS. Design safeguards and embed AI security into development processes in remote work setting.

🕒 4 days ago

Final Closures

11 - 50

👥 B2C

⚖️ Legal

☁️ SaaS

IT Security Officer ensuring robust defense mechanisms against cyber threats at Final Closures LLC. Leading security policies, incident responses, and audits in a cybersecurity-focused role.

🇺🇸 United States – Remote

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer