Back to search
EPAM Systems Linkedin · Posted 4d ago

Product Security Technical Consultant

Lithuania

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

We are looking for a Product Security Technical Consultant to advise industrial product development teams on security requirements, regulatory compliance and AI-driven secure development practices across large, federated product portfolios.

Feel free to work remotely from anywhere across Lithuania or connect with colleagues at our Vilnius and Kaunas offices.

Responsibilities

  • Design and maintain product security requirements frameworks for large federated product portfolios including central control libraries, deviation governance workflows and risk acceptance procedures
  • Translate Cyber Resilience Act essential requirements into actionable engineering specifications covering SBOM governance, secure-by-default configurations and vulnerability handling procedures
  • Perform OT/ICS security level assessments including SL-T vs SL-A gap analysis, zone/conduit modeling and component requirement mapping
  • Lead threat modeling workshops with engineering teams using STRIDE, PASTA or MITRE ATT&CK for ICS
  • Define and implement SDL/SSDLC programs including OWASP ASVS compliance matrices, SAST/DAST/SCA toolchain integration and secure coding standards
  • Support Notified Body engagement and technical documentation preparation for CRA Class I and Class II products
  • Design and execute threat models for industrial products integrating AI/ML or LLM capabilities and apply OWASP LLM Top 10 mitigations
  • Integrate AI security controls into DevSecOps pipelines including model provenance, AI SBOM and MLOps security gates
  • Support conformity obligations for high-risk AI systems including technical documentation, human oversight mechanism design and audit trail architecture
  • Conduct engineering-level regulatory gap assessments across CRA, NIS2, EU AI Act and DORA frameworks and deliver remediation roadmaps
  • Present compliance posture and security architecture findings to senior client stakeholders and facilitate cross-functional alignment workshops
  • Contribute to external publications, white papers and industry forums to support practice capability-building

Requirements

  • 5+ years of experience in product security advisory for industrial product development
  • Knowledge of CRA, IEC 62443 and NIS2 regulatory frameworks
  • Expertise in threat modeling methodologies including STRIDE, PASTA and MITRE ATT&CK for ICS
  • Proficiency in secure SDLC practices including OWASP ASVS compliance matrices and SAST/DAST/SCA toolchain integration
  • Familiarity with AI/ML security including OWASP LLM Top 10 and AI SBOM governance
  • Understanding of EU AI Act conformity obligations for high-risk AI systems
  • Background in DevSecOps pipeline integration including CI/CD compliance checks and MLOps security gates
  • Skills in stakeholder communication and presenting findings to senior client stakeholders such as CISOs and engineering VPs
  • Capability to conduct engineering-level gap assessments and deliver remediation roadmaps across regulatory frameworks
  • Advanced English proficiency (C1 level) with exceptional written and verbal communication skills

We offer

  • Engineering Heritage: Best-in-class experts sharing a culture of engineering excellence and tackling complex engineering challenges for over 30 years
  • Advanced Tech Stack: Innovative projects where you can apply or enhance your expertise in Cloud, Data, AI, and other emerging technologies
  • World-Class Clients: Work closely with 340+ of the Forbes Global 2000 on creating disruptive solutions that make a global impact
  • Professional Growth: Exceptional support for career development with comprehensive resources for upskilling or reskilling in pioneering practices
  • GenAI Community: Strong AI competencies with 600+ experts across 55+ locations driving GenAI-enabled transformation journeys
  • Entrepreneurial Culture: If you're passionate and dedicated to improving business transformation, we provide the support you need to bring your ideas to life
  • Hybrid Setup: The flexibility to work from any location in Lithuania, whether it's your home or our dynamic offices in Vilnius and Kaunas
  • Other Benefits: Additional vacation and trust days, private health insurance, Employee Stock Purchase Plan and more

Salary range €5.6K-€7.2K gross, based on your experience and interview results.

EPAM is a leading global provider of digital platform engineering and development services. For over 30 years, our team has helped leading brands navigate the waves of digital transformation, building solutions that help them stay competitive through constant market disruption.With offices in 55+ countries, EPAM has grown in Lithuania to over 1,300+ talented innovators in just 5 years. We foster creativity and unconventional ways of doing things, welcoming like-minded professionals to join us.

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search