Job Title
Principal Product Security Architect
Role Summary
Lead Arm's interactions with accredited third-party security laboratories and certification bodies to plan, execute and close product security evaluations and certification programs. Ensure products meet applicable evaluation criteria and regulatory requirements.
Relocation and visa sponsorship support is available for candidates who require it.
Experience Level
Senior — typically 10+ years in product security, security evaluation, certification, or a closely related field.
Responsibilities
Primary responsibilities include managing certification activities, validating evaluation artifacts, and coordinating cross-functional stakeholders.
- Serve as the primary technical contact with accredited external security laboratories.
- Plan, lead and coordinate end-to-end security evaluations and certification programs (planning, execution, documentation, closure).
- Prepare, verify and deliver evidence, test vectors and artefacts required for evaluations on schedule.
- Review and validate lab findings; ensure corrective actions are implemented and retested as required.
- Maintain up-to-date knowledge of certification standards and schemes relevant to Arm products.
- Document evaluation processes and certification workflows; keep them current and auditable.
- Provide guidance and mentoring on evaluation methodologies and certification readiness across engineering and product teams.
Requirements
Must-have skills and experience; followed by concise nice-to-have items.
-
Must-have: 10+ years in product security, evaluation, certification or equivalent experience.
- Practical experience with security evaluation schemes such as Common Criteria, SESIP, PSA Certified, FIPS 140-3, ISO 21434, or similar frameworks.
- Proven experience collaborating with external security laboratories and managing formal evaluations.
- Strong understanding of cryptographic primitives, secure key lifecycle management and secure provisioning workflows.
- Experience with silicon/SoC security architecture including threat modelling, attacker models and countermeasures.
- Good organisational skills for managing complex, multi-stakeholder projects and producing clear documentation.
- Strong communication, negotiation and stakeholder management skills.
-
Nice-to-have: experience with cryptography accelerators, RoT modules, HSMs, TEE/TF-M; secure firmware (secure boot, bootloaders, OP-TEE, TF-M); semiconductor manufacturing and supply-chain security; side-channel and fault-injection testing experience.
Education Requirements
Not specified.
About the Company
Company: Arm
Headquarters: Cambridge, United Kingdom
ARM is a global leader in semiconductor and software design, driving innovation in computing technology. The company specializes in designing processors and systems that provide the essential building blocks for electronic devices. ARM's architecture is widely used in smartphones, servers, and IoT devices, and its collaborative culture fosters bold thinking, diversity, and high-impact benefits for its talented workforce.

Date Posted: 2026-07-28