Product Cybersecurity Engineer / Specialist

Product Cybersecurity Engineer / Specialist

Full-Time 50000 - 65000 £ / year (est.) Home office (partial)
Agilent Technologies LDA UK Limited

At a Glance

  • Tasks: Lead cybersecurity efforts for innovative spectroscopy and vacuum products, ensuring compliance and security.
  • Company: Join Agilent Technologies, a leader in life sciences and diagnostics.
  • Benefits: Enjoy competitive pay, career growth, and a hybrid work model.
  • Other info: Collaborative Agile culture with exciting projects and global opportunities.
  • Why this job: Make a real impact in cybersecurity while working on cutting-edge technology.
  • Qualifications: 4+ years in product cybersecurity with strong analytical skills.

The predicted salary is between 50000 - 65000 £ per year.

Location: Harwell, Oxfordshire (Hybrid)

Company: Agilent Technologies - Spectroscopy & Vacuum Division

Overview

We are seeking an experienced Product Cybersecurity Engineer to lead and support cybersecurity activities across our spectroscopy and vacuum product portfolio. This role is critical to ensuring our products meet evolving global cybersecurity regulations, customer requirements, and industry best practices—particularly in regulated markets such as aviation security, customs & borders, pharmaceuticals, and defence.

You will work cross-functionally with R&D, Product Security, Agilent IT, Sales, and Marketing teams, ensuring cybersecurity is embedded throughout the product lifecycle—from design and development through to deployment and ongoing support.

You will report to the R&D Software Manager as part of the team responsible for writing the software/firmware that runs our instruments but it is expected that this will be a cross-functional and cross-product role. The role will be based out of our Harwell, Oxfordshire office in the UK. There is some expectation to be on-site for hands-on work with our products, but we operate a hybrid model (2-3 days working from home, 2-3 days on-site) as a standard option.

Key Responsibilities

  • Cybersecurity Compliance & Regulation
    • Interpret and apply global cybersecurity and privacy regulations (e.g. GDPR, EU Cyber Resilience Act). Aligning approach with Legal and the CISO organisation.
    • Act as product line lead for EU CRA readiness, including:
      • Product cybersecurity documentation
      • Policy and procedure development
      • Coordination and collaboration with product teams and central security functions
      • Own and track remediation plans to ensure continued product compliance.
      • Maintain and review cybersecurity requirements aligned to target markets (e.g. defence, aviation, customs).
      • Ensure products are GDPR compliant.
  • Sales & Customer Cybersecurity Support
    • Support Sales and Marketing with cybersecurity content for tenders and bids:
      • Contribute to cybersecurity whitepapers and standard documentation
      • Provide technical input for tender compliance submissions
      • Participate in customer-facing cybersecurity discussions, where needed.
      • Review customer and regulatory documentation and translate requirements into product development inputs.
      • Stay aligned with industry developments and best practices.
  • Secure Product Development
    • Ensure products meet:
      • Internal Agilent security policies and procedures
      • External regulatory and customer requirements
    • Drive a proactive cybersecurity approach within product development.
    • Conduct or support cybersecurity testing and assessments, identifying vulnerabilities and providing reports.
    • Collaborate with R&D to:
      • Analyse vulnerabilities
      • Identify false positives and controls
      • Conduct threat modelling
      • Define, implement and track remediation plans
      • Provide technical guidance on:
        • Encryption and key management
        • Patch management
        • Identity and user management
      • Contribute to infrastructure security (e.g. certificate and secret management).
      • Support secure product configuration tailored to customer needs.
  • DevSecOps & Security Engineering
    • Drive adoption of DevSecOps practices, including:
      • CI/CD security integration
      • Automated vulnerability scanning (e.g. Nessus)
    • Implement and maintain:
      • Static Application Security Testing (SAST)
      • Dynamic Application Security Testing (DAST)
      • Software Composition Analysis (SCA)
    • Lead Software Bill of Materials (SBOM) creation and management in the spectroscopy and vacuum product lines.
    • Perform application security and penetration testing in collaboration with the internal Product Security Program team.
  • Embedded Systems Security
    • Secure Windows 10/11 IoT-based embedded systems, including:
      • Group policy and registry hardening
      • Attack surface reduction (services, ports, etc.)
      • Patch and update management
      • Endpoint protection and antivirus
      • Mobile Device Management (e.g. Intune)
      • Implement Microsoft security features such as:
        • BitLocker
        • AppLocker
        • Unified Write Filter (UWF)
      • Support development and maintenance of embedded OS images.
      • (Desirable) Knowledge of Embedded Linux security.
  • Continuous Improvement & Future-Proofing
    • Monitor emerging threats, vulnerabilities, and regulatory changes.
    • Ensure products remain secure throughout their lifecycle.
    • Promote continuous improvement in cybersecurity practices.
  • Operational Security Activities
    • Manage OS patching and release cycles for product platforms.
    • Maintain secure embedded OS builds (e.g. FFU images).
    • Ensure regular:
      • Vulnerability scanning (e.g. Nessus)
      • Security testing and validation
      • Support CI/CD environment hardening and security patching.
  • Qualifications

    • Essential
      • Bachelor’s or master’s degree or equivalent
      • Proven experience in product cybersecurity or application security – typically 4+ years relevant experience.
      • Strong understanding of:
        • Secure software development lifecycle (SSDLC)
        • Vulnerability management and remediation
        • Regulatory compliance (GDPR, EU CRA, emerging EU and global regulations)
      • Hands-on experience with:
        • Security testing (SAST, DAST, SCA)
        • Penetration testing or vulnerability analysis
        • Threat modelling
        • Knowledge of Windows OS security (preferably embedded/IoT variants).
      • Experience working with cross-functional engineering teams.
    • Desirable
      • Relevant cybersecurity certifications (e.g. CISSP, CompTIA PenTest, ISC2 CSSLP would be beneficial
      • Familiarity with DevSecOps tools and CI/CD pipelines
      • Experience with:
        • Nessus or similar scanning tools
        • Software Bill of Materials (SBOM)
        • Embedded Linux security knowledge.
        • Exposure to regulated industries (defence, aviation, pharma, border security).
        • Experience leveraging modern AI-assisted tools (e.g. Copilot, LLMs) to enhance secure development, documentation, and cybersecurity analysis while applying appropriate engineering judgement and data security controls.

    Personal Attributes

    • Strong analytical and problem-solving skills
    • Ability to translate regulations into actionable engineering requirements
    • Excellent communication skills, including customer-facing interactions
    • Proactive, self-driven, and detail-oriented
    • Comfortable working across multiple stakeholders and geographies

    What we offer

    • Exciting projects in a multifaceted collaborative team grounded on an Agile Culture and Approach
    • Career development opportunities in an international company
    • Competitive compensation and benefits package
    • Work-Life-Balance programs
    • Permanent contract in a fast-growing global company
    • Company pension scheme
    • Private health care

    Agilent inspires and supports discoveries that advance the quality of life. We provide life science, diagnostic and applied market laboratories worldwide with instruments, services, consumables, applications, and expertise. Agilent enables customers to gain the answers and insights they seek, so they can do what they do best: improve the world around us.

    More about Agilent on www.agilent.com

    Additional Details

    • This job has a full time weekly schedule.
    • Our pay ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. During the hiring process, a recruiter can share more about the specific pay range for a preferred location. Pay and benefit information by country are available at: https://careers.agilent.com/locations
    • Agilent Technologies Inc. is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability or any other protected categories under all applicable laws.

    Travel Required: Occasional

    Shift: Day

    Duration: No End Date

    Job Function: R&D

    Product Cybersecurity Engineer / Specialist employer: Agilent Technologies LDA UK Limited

    Agilent Technologies is an exceptional employer, offering a dynamic work environment in Harwell, Oxfordshire, where innovation meets collaboration. With a strong focus on career development and a commitment to work-life balance, employees benefit from competitive compensation, private healthcare, and a supportive Agile culture that fosters continuous improvement and professional growth. Join us to be part of exciting projects that make a real impact in the world of life sciences and diagnostics.

    Agilent Technologies LDA UK Limited

    Contact Details:

    Agilent Technologies LDA UK Limited Recruitment Team

    StudySmarter Expert Advice🤫

    We think this is how you could land Product Cybersecurity Engineer / Specialist

    Tip Number 1

    Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

    Tip Number 2

    Prepare for interviews by researching the company and its products. Understand their cybersecurity needs and be ready to discuss how your skills align with their goals. Show them you’re not just another candidate, but someone who genuinely cares about their mission.

    Tip Number 3

    Practice your technical skills! Brush up on relevant tools and methodologies, especially those mentioned in the job description. Being able to demonstrate your knowledge during an interview can really set you apart from the competition.

    Tip Number 4

    Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team at Agilent Technologies.

    We think you need these skills to ace Product Cybersecurity Engineer / Specialist

    Cybersecurity Compliance
    GDPR Knowledge
    EU Cyber Resilience Act Understanding
    Technical Documentation Skills
    Vulnerability Management
    Security Testing (SAST, DAST, SCA)
    Penetration Testing

    Some tips for your application 🫡

    Tailor Your CV:Make sure your CV is tailored to the Product Cybersecurity Engineer role. Highlight relevant experience, especially in cybersecurity compliance and secure product development. We want to see how your skills align with our needs!

    Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your background makes you a great fit for Agilent. We love seeing enthusiasm and a personal touch!

    Showcase Your Technical Skills:Don’t forget to mention your hands-on experience with security testing tools and methodologies. We’re looking for someone who can hit the ground running, so make sure we know what you bring to the table!

    Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team!

    How to prepare for a job interview at Agilent Technologies LDA UK Limited

    Know Your Cybersecurity Regulations

    Make sure you brush up on global cybersecurity regulations like GDPR and the EU Cyber Resilience Act. Be ready to discuss how these regulations impact product development and compliance, as this role heavily involves aligning with legal requirements.

    Showcase Your Cross-Functional Experience

    This position requires collaboration across various teams. Prepare examples of how you've successfully worked with R&D, Sales, and Marketing in previous roles. Highlight your ability to communicate technical concepts to non-technical stakeholders.

    Demonstrate Your Technical Skills

    Be prepared to dive into specifics about secure software development lifecycle practices, vulnerability management, and security testing tools like SAST and DAST. Bring examples of past projects where you implemented these practices effectively.

    Stay Updated on Industry Trends

    Cybersecurity is a rapidly evolving field. Show your enthusiasm for continuous learning by discussing recent threats or regulatory changes you've followed. This will demonstrate your proactive approach to staying ahead in the industry.