Humanoid

Principal Product Cybersecurity Assurance Engineer

Humanoid
Apply
4 days ago
Boston, MA, USAStaff+

Responsibilities

  • Lead and develop a cross-functional team of security engineers delivering product security services across the HMND-01 development lifecycle.
  • Define product security requirements and advise on implementation standards, techniques, and toolchains for embedded and AI-enabled robotic systems.
  • Develop security protocols, tools, and processes for robot attack surfaces, AI inference pipelines, and cloud-to-robot communications.
  • Own Security Management Plans, Threat Analysis and Risk Assessment reports, risk assessments, and Remediation Action Plans.
  • Drive lifecycle security assurance and compliance with the EU Machinery Regulation 2023/1230, IEC 62443, and the EU Cyber Resilience Act.
  • Perform independent Information Assurance reviews and risk assessments for complex cyber-physical systems.
  • Establish Product Security Incident Response, coordinated vulnerability disclosure, patch deployment, monitoring, and post-field incident analysis processes.
  • Support product-security work packages, cost estimates, bids, proposals, customer engagements, regulatory consultations, and certification-body interactions.

Requirements

  • Hands-on experience with ISO 27001, ISO 27004, ISO 27005, and the NIST Risk Management Framework applied to regulated hardware or embedded product programs.
  • Experience owning security risk management for highly regulated, safety-critical products in automotive, commercial vehicle, or industrial automation environments.
  • Working knowledge of IEC 62443 and ability to adapt ISO/SAE 21434 lifecycle methods to robotic or electromechanical products.
  • Understanding of engineering development lifecycles and the relationship between cybersecurity, systems engineering, functional safety, and hardware/software co-development.
  • Ability to interpret penetration-test reports and author structured, risk-prioritized Remediation Action Plans.
  • Strong communication skills for presenting complex security-risk arguments to technical and executive stakeholders.
  • Preferred familiarity with TARA, STRIDE, or PASTA threat modelling for embedded or convergent OT/IT systems.
  • Preferred understanding of secure-by-design principles for AI/ML systems, including inference pipelines, model integrity, and cloud-to-edge communications.
  • Preferred exposure to CAN bus, Ethernet backbone, or wireless-interface security in mobile, vehicular, or robotic systems.
  • Preferred experience establishing PSIRT or coordinated vulnerability disclosure programs.
  • Preferred knowledge of UL 4600, UL 3300, or ISO 13482 and cybersecurity evidence integration into safety cases.
  • Preferred engagement with TUV, UL, BSI, ISO TC 184, IEC TC 65, SAE, or IEEE RAS.

Benefits

  • Comprehensive health coverage for US-based employees, including fully paid medical, dental, and vision insurance, virtual care, and employee assistance resources.
  • 23 accrued PTO days, separate sick leave, and paid company holidays.
  • 401(k) retirement plan with a 4% employer match.
  • Stock options with meaningful upside as the company scales.
  • Free daily catered lunch, snacks, and drinks in the office.
  • Opportunity to collaborate with engineers, researchers, and product experts in AI and robotics, with freedom to influence the product and own key initiatives.

Categories

Humanoid

About Humanoid

201-500 employees

Humanoid develops general-purpose humanoid robots for industrial environments to automate hazardous or monotonous tasks in manufacturing, logistics, and construction. Its HMND‑01 Alpha platform is running in real industrial pilots, pointing toward a hardware-and-software product paired with deployment services. Founded in 2024 and headquartered in London, the privately held company is scaling toward wider commercialization from these pilots.

Contact me