The Cybersecurity Engineer - Cryptography & Key Management will be primarily responsible for operating, maintaining, and expanding our Cryptographic Key Management System (CKMS) - an HSM-backed platform used to securely generate, store, and use cryptographic keys for code signing, digital signatures, and roots-of-trust across our products.
Second part of the work covers broader product cybersecurity functions within Woodward business unit(s) as described in the Secure Development Lifecycle (SDLC), including risk assessment, awareness/training, incident response, and strategic initiatives. This member also advises developers, test engineers, and supply chain resources on product cybersecurity issues.
Join our Industrial Systems Team as a Cybersecurity Engineer - Cryptography & Key Management!
What Will You Do:
Operate, administer, and maintain the CKMS, including the HSM appliances and support of client systems
Serve as resource to collaborate on CKMS crypto needs, methods, and deployment for new products and projects
Manage the cryptographic key lifecycle for products (generation, storage, distribution, rotation, backup, revocation) and support secure key provisioning to products
Administer X.509 certificates and support PKI / root-of-trust operations
Develop automation and tooling (Python, bash, PKCS#11 / Cryptoki) to streamline key operations and integrations
Contribute to CKMS networking architecture and configuration of CKMS equipment and clients
Oversee implementation of the Secure Development Lifecycle based on ISA/IEC 62443-4-1, and support product certification and internal pre-certification audits
Identify and analyze cybersecurity risks and define appropriate risk treatment
Manage security requirements: derive requirements from multiple standards, produce deliverable reports, and review hardware and software requirements
Provide product cybersecurity input into proposals and risk assessments, support new cyber tools, and help train members on relevant regulations/standards
Qualifications:
Solid PKI knowledge: X.509 certificates, CAs, CSRs, CRLs, and certificate lifecycle management
Understanding of cryptographic key applications - code signing, digital signatures, roots-of-trust, and key-exchange methods
Familiarity with Hardware Security Modules and TPM 2.0
Comfortable working in Linux and scripting in bash, working in Windows and scripting in batch files, Python scripting
Familiarity with embedded security concepts such as secure boot, firmware signing, and secure key provisioning
Knowledge of IEC 62443 and the EU Cyber Resilience Act (CRA) as a plus, and ability to identify and analyze security risks
Experience creating cybersecurity process documents (procedures, manuals, instructions)
Strong teamwork approach; fluent English and Polish in writing and speaking
What Will You Gain:
Salary range from 14 000 to 22 500 PLN gross - depending on experience
Advancement opportunities in an international team
A total rewards package that includes: private health insurance, life & accidental insurance
Multisport package
Meal Vouchers
Company performance bonus program
Work-life balance, semi-flexible working time
Remuneration structure based on creative works (Autorskie Koszty Uzyskania Przychodu / KUP 50%)
PPK: Woodward offers payment to your PPK account up to 4% of your compensation depending on seniority
Hybrid work model
Relocation & Educational Support

