Principal Product Cybersecurity Compliance Engineer
Listed on 2026-06-07
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
About Us
Enovation Controls specializes in complex projects, offering unparalleled expertise and innovative solutions. As a turnkey provider, we are dedicated to delivering game-changing technology and exceeding expectations. Our commitment to excellence is embedded in our core values, and we seek individuals who resonate with our values and thrive in our dynamic environment.
CultureEnovation Controls has built a company and culture by living out our core values. We are looking for hungry, humble, and smart people who will embrace our core values and thrive in a fun and rewarding culture. Enovation Controls is a learning organization that conquers complexity with high expectations and performance. The company's teams are multi-disciplined and offer a wide variety of experiences.
With diverse teams and a focus on high-performance standards, Great Place to Work has honored Enovation Controls as one of the Best Workplaces in Manufacturing & Production for six consecutive years.
Enovation Controls is seeking a Principal Product Cybersecurity Compliance Engineer that will be responsible for owning and driving the implementation, integration, and sustainment of product cybersecurity practices aligned with industry standards including ISA/IEC 62443, ISO/SAE 21434, UN R155, and the Cyber Resilience Act (CRA). This role is focused on product-level security and ensures that both hardware and software products are designed, developed, and maintained in compliance with applicable cybersecurity requirements.
This position operates with a high degree of autonomy and accountability, acting as the primary driver of cybersecurity process integration across the organization. While executive leadership maintains overall responsibility, this role is expected to independently execute, coordinate, and advance cybersecurity initiatives across engineering and product teams.
The role integrates cybersecurity processes into the organization’s Quality Implementation Procedures (QIP), updating governing documents and engineering practices to reflect risk-based security thinking. The position requires strong organizational discipline, the ability to extract and synthesize technical information from engineering teams, and excellent communication skills to align stakeholders and ensure consistent adoption of cybersecurity practices.
This role also supports customer-facing commercial activities by clearly communicating the company’s cybersecurity posture, maturity, and product-level security capabilities to build customer confidence and enable business growth. Product Management retains ownership of defining the minimum acceptable security posture for products; however, this role provides strong, influential technical input to shape those decisions.
Safety Sensitive DesignationThis position is designated as Safety Sensitive and is subject to applicable safety policies, which may include drug and alcohol testing in accordance with company policy and applicable law.
Key Job Responsibilities- Own and drive the implementation of product cybersecurity standards (ISA/IEC 62443, ISO/SAE 21434, UN R155, CRA) across the organization.
- Lead the integration of cybersecurity requirements into QIP (Quality Implementation Procedure) documents and governing processes.
- Operate autonomously to plan, execute, and track cybersecurity compliance initiatives across engineering teams.
- Extract, organize, and synthesize technical information from engineering teams to support compliance documentation and decision-making.
- Establish structured processes for collecting, managing, and validating cybersecurity compliance evidence and artifacts.
- Own and maintain the centralized cybersecurity compliance database, ensuring all required artifacts are complete, current, and auditable.
- Define standards for what constitutes sufficient compliance evidence and ensure consistency across product lines.
- Evaluate whether design methods, controls, and mitigation strategies are sufficient to address identified threats and meet applicable cybersecurity standards.
- Assess the adequacy of compliance artifacts and evidence in demonstrating effective risk mitigation and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).