Humanoid Logo

Humanoid

Principal Product Cybersecurity Assurance Engineer

Posted 2 Days Ago
Be an Early Applicant
In-Office
Boston, MA, USA
Expert/Leader
In-Office
Boston, MA, USA
Expert/Leader
Leads product cybersecurity assurance for humanoid robots across design, development, certification, deployment, and post-market operations. Responsibilities include security requirements, threat modeling, risk assessments, compliance with IEC 62443 and EU regulations, audit documentation, incident response, vulnerability disclosure, fleet monitoring, certification support, and leadership of cross-functional security engineers.
The summary above was generated by AI

Here at Humanoid, we believe in a future where robots amplify human potential. That’s why we’ve set out on a mission to build the world’s most capable, commercially-scalable, and safe humanoid robots. We’re bringing that mission to life with HMND‑01 - our rapidly developed humanoid platform being deployed in real industrial environments - and we’re growing the team to take it even further.

About the Role

We are seeking a Principal Product Cybersecurity Assurance Engineer with deep expertise in product security, threat modelling, and risk assurance for highly regulated electromechanical systems. In this role, you will lead the delivery of product cybersecurity across Humanoid's HMND 01 platform family — the Alpha Wheeled industrial robot and the Alpha Bipedal home robot — both powered by our KinetIQ VLM/VLA-based AI framework. Working alongside product, firmware, autonomy, and hardware teams as part of the Systems Engineering and Architecture Team, you will define and maintain the cybersecurity assurance strategy for all product security activities from first concept through post-market deployment. Security at Humanoid is an engineering discipline inseparable from functional safety and central to our mission of creating the world's most reliable, commercially scalable, and safe humanoid robots. To excel in this position, you must demonstrate the authority to influence security architecture decisions across complex, cross-functional programmes, the rigour to build defensible security cases for novel cyber-physical systems, and the leadership to grow and guide a cross team of security engineers operating at the frontier of robotics.

What You'll Do
  • Team Leadership & Product Security Delivery

    • Lead and develop a cross-functional team of security engineers, maintaining accountability for the delivery of product security services within product teams throughout the HMND 01 development lifecycle.

    • Define product security requirements and advise development teams on suitable implementation standards, techniques, and toolchains for embedded and AI-enabled robotic systems.

    • Partner with cross-functional teams to develop security protocols, tools, and processes that keep HMND 01 technologies ahead of emerging threats — including attack surfaces specific to the KinetIQ AI inference pipeline and cloud-to-robot communication architecture.

    • Own and maintain key security artefacts for audit-ready cybersecurity documentation including Security Management Plans, Threat Analysis and Risk Assessment (TARA) reports, Risk Assessments, and Remediation Action Plans across both platforms.

    Security Assurance & Certification

    • Drive security assurance through the full product lifecycle, ensuring every HMND 01 design is robust, compliant, and resilient. Contribute to the continual improvement of security engineering capability across the organisation.

    • Ensure compliance with cybersecurity obligations under the EU Machinery Regulation 2023/1230 where cyber controls intersect with safety-critical functions and compliance to IEC 62443 (for industrial/OT product security), and the EU Cyber Resilience Act.

    • Provide independent Information Assurance (IA) reviews and risk assessments on complex, high-impact projects — with particular focus on cyber-physical systems where a digital compromise could result in physical harm to operators or end users.

    • Review and provide guidance on security risk assessments, risk mitigation plans, mitigation gap analysis, and security management documentation in support of system cybersecurity certification.

    Incident Response & Lifecycle Security

    • Establish and maintain a Product Security Incident Response (PSIR) process, encompassing coordinated vulnerability disclosure, patch deployment pipelines, and post-field incident analysis.

    • Define and oversee security monitoring requirements for deployed fleets, ensuring field data feeds back into risk files and security artefacts in line with post-market surveillance obligations.

    Commercial & Bid Support

    • Support the production of work package descriptions and cost estimates for product bids, services, and proposals that include product security scope.

    • Represent Humanoid's security posture in customer and partner engagements, including regulatory consultations and certification body interactions.

What We're Looking For
  • Proven, hands-on experience with ISO 27001/27004/27005 and the NIST Risk Management Framework (RMF), applied to regulated hardware or embedded product programmes.

  • Experience owning a security risk management system for highly regulated, safety-critical products — with background drawn from automotive, commercial vehicle, or industrial automation environments.

  • Working knowledge of IEC 62443, with the ability to adapt ISO/SAE 21434 lifecycle methodologies to robotic or electromechanical product context.

  • Solid understanding of engineering development lifecycles and how the product cybersecurity specialism aligns with systems engineering, functional safety, and hardware/software co-development.

  • Ability to interpret Penetration Test reports and author Remediation Action Plans that address identified vulnerabilities in a structured, risk-prioritised manner.

  • Clear, structured communication skills — able to articulate complex security risk arguments to both technical engineers and executive stakeholders with equal confidence.

Preferred:

  • Familiarity with Threat Analysis and Risk Assessment (TARA) or equivalent threat modelling methodologies (STRIDE, PASTA) applied to embedded or OT/IT convergent systems.

  • Understanding of secure-by-design principles for AI/ML-enabled systems, including securing inference pipelines, model integrity, and cloud-to-edge communication paths.

  • Exposure to CAN bus, Ethernet backbone, or wireless interface security in mobile, vehicular, or robotic systems.

  • Experience contributing to or establishing a Product Security Incident Response (PSIRT) process or coordinated vulnerability disclosure programme.

  • Knowledge of UL 4600, UL 3300, or ISO 13482 and an appreciation of how cybersecurity evidence integrates into safety case arguments.

  • Prior engagement with certification bodies (TUV, UL, BSI) or standards development organisations (ISO TC 184, IEC TC 65, SAE, IEEE RAS).

What We Offer
  • Comprehensive health coverage for US‑based employees, including fully paid medical, dental, and vision insurance, with virtual care and employee assistance resources.

  • Meaningful time off to rest and recharge: 23 days of PTO (accrued), separate sick leave, and paid company holidays.

  • 401(k) retirement plan with 4% employer match.

  • Competitive equity: stock options with meaningful upside as we scale.

  • Free daily catered lunch, snacks, and drinks in‑office.

  • Collaboration with top‑tier engineers, researchers, and product experts in AI and robotics.

  • Freedom to influence the product and own key initiatives.

Similar Jobs

One Month Ago
In-Office
Boston, MA, USA
Expert/Leader
Expert/Leader
Artificial Intelligence • Robotics
Lead product cybersecurity for Humanoid's HMND 01 platform family. Define assurance strategy, threat modelling, and audit-ready security artefacts; ensure compliance with IEC 62443, EU Machinery Regulation and Cyber Resilience Act; establish PSIR/PSIRT, oversee risk assessments, remediation, and field monitoring; engage customers, certification bodies, and support bids and regulatory interactions.
Top Skills: Can BusCloud-To-Robot CommunicationEthernetIec 62443Iso 13482Iso 27001Iso 27004Iso 27005Iso/Sae 21434Kinetiq Vlm/VlaNist RmfPastaPenetration TestingPsirt/PsirStrideTaraUl 3300Ul 4600Wireless Interface Security
40 Minutes Ago
Remote or Hybrid
Boston, MA, USA
94K-176K Annually
Senior level
94K-176K Annually
Senior level
Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Owns and prioritizes the Home insurance New Quote and Issue product backlog for independent agents. Partners with experience and technology teams to translate product launches into agent-experience updates, define user stories and acceptance criteria, support Agile ceremonies, remove roadblocks, align stakeholders, and improve product KPIs and ease-of-doing-business metrics.
Top Skills: Acceptance CriteriaAgileProduct BacklogUser Stories
8 Hours Ago
Remote or Hybrid
Boston, MA, USA
98K-359K Annually
Senior level
98K-359K Annually
Senior level
Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Leads underwriting teams responsible for risk selection, portfolio profitability, renewals, acquisitions, and complex casualty accounts in sharing economy and mobility sectors. Manages and develops underwriting talent, oversees broker relationships, evaluates pricing and coverage, guides risk acceptance decisions, monitors portfolio performance, and ensures regulatory and documentation compliance. Provides strategic direction, coaching, negotiation support, and industry thought leadership while protecting company capital and driving profitable growth.

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account