Founder Sales & Business Development - Cybersecurity

Konforma Cra — Germany · Posted ~3 hours ago

Lead

Skills

sales business development cybersecurity B2B sales EU Cyber Resilience Act SBOM OSV NVD CISA

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

An entrepreneurial sales and business development role focused on bringing a cybersecurity platform to manufacturers affected by new European product-security regulation. You will build the commercial side from an early stage, develop customer relationships, and translate complex security and compliance challenges into business value.

Highlights

Founding commercial role with significant ownership, the opportunity to build a go-to-market function from an early stage, and exposure to cybersecurity, product security, and emerging European regulation.

Description

I’m looking for someone to build the commercial side of KONFORMA with me. Over the last months, I’ve built KONFORMA from scratch and brought the product live before raising external capital. Now the next challenge starts: Getting it into the hands of manufacturers. KONFORMA is building the product-security operations layer for manufacturers affected by the EU Cyber Resilience Act. The problem isn’t that manufacturers cannot find vulnerabilities. There are already plenty of scanners. The real challenge starts afterwards: A scan may return hundreds of findings. Someone still needs to determine: Does this actually affect our shipped product? What decision do we make? What evidence supports that decision? Can the decision carry over to the next release? What happens if the threat landscape changes tomorrow? And does regulatory action follow? That is where KONFORMA comes in. The platform is already built and live, covering: Release-level SBOM and vulnerability monitoringOSV, NVD and CISA KEV correlationGuided impact assessments and VEX decisionsContinuous decision validity and drift detectionRelease-to-release Decision Delta Reviews24h / 72h / 14-day CRA incident workflowsTechnical documentation and evidenceSupplier Evidence lifecycle and downstream impactCustomer-facing Product Trust RoomsAudit trail and evidence historyNow I’m looking for someone who wants to help turn this into a repeatable commercial business. What you would work onOur initial GTM has two core motions. 1. Manufacturers Embedded, IoT, industrial and software manufacturers selling products into Europe -- especially companies managing multiple supported releases without a large internal Product Security or PSIRT organisation. 2. Consultancies & test houses Cybersecurity consultancies, CRA specialists and test houses that already support manufacturers with readiness assessments, SBOMs, product security or conformity projects. The opportunity here is especially interesting: Instead of ending the customer relationship after a one-off CRA project, KONFORMA can become the continuous monitoring and decision layer across their client portfolio. You would work directly with me to: identify and approach target manufacturersbuild outbound pipeline from zeroopen conversations with CRA consultancies and test housesrun discovery callsdemo KONFORMArecruit and close our first paid design partnersdevelop partnerships and channel relationshipstest and improve positioning, messaging and pricingunderstand why prospects buy -- or why they don’tturn the first wins into a repeatable GTM motionThere is no existing sales organisation to manage. We are building the playbook from scratch. Who I’m looking forIdeally, you already have experience in areas such as: Cybersecurity Product Security Embedded / IoT Industrial technology B2B SaaS Cyber Resilience Act IEC 62443 SBOM / Vulnerability Management Testing / Certification Compliance / Conformity Assessment An existing network among European manufacturers, cybersecurity consultancies, Product Security teams or test houses would be a major advantage. But I care just as much about how you operate. I’m looking for someone who is comfortable going from: “We should target industrial manufacturers.” to: “Here are the 50 accounts, these are the people we should contact, this is the message, and I’ve already started the conversations.” Someone who creates pipeline rather than waits for it. Someone who enjoys early-stage ambiguity. Someone who wants real ownership. Stage & compensation I want to be transparent about where KONFORMA is today. The product has been built without external funding and we are currently raising our pre-seed round. That means this is initially an equity-first founding role. There is currently no market salary before financing closes. The ideal setup would be to start part-time alongside your current role while we build commercial traction together. Once funding is secured, the intention is to transition into a full-time paid Sales & Business Development leadership role, while keeping meaningful early-stage equity. The equity should reflect the fact that you joined at the stage where the commercial motion was still being created. This is not an unpaid sales internship. I’m looking for someone who wants to take meaningful ownership of building the commercial side of the company. Why KONFORMA, why now?The EU Cyber Resilience Act is creating a new operating requirement for manufacturers. But I don’t believe the winner of this market will simply be another vulnerability scanner. My thesis is: Scanners find vulnerabilities. KONFORMA manages the decisions manufacturers make about them. And more importantly: KONFORMA continuously checks whether yesterday’s decision still holds today. If a new exploit appears, a supplier document expires, a product release changes or previous evidence is no longer sufficient, the manufacturer should not have to repeat the entire compliance process. KONFORMA should tell them exactly: what changed, which decisions require attention and what needs to happen next. That is the company I’m building. And now I’m looking for the person who wants to build the GTM side with me. Interested?Send me a message -- no generic cover letter needed. Instead, tell me: 1. Which 10 manufacturers would you approach first for KONFORMA? 2. How would you get us our first 5 paying customers? 3. Which cybersecurity consultancies or test houses would you try to turn into partners? If you already have ideas while reading this, I’d like to talk. KONFORMA Product Security Operations for the CRA era usekonforma.com #Cybersecurity #ProductSecurity #Sales #BusinessDevelopment #CyberResilienceAct #CRA #GTM #B2B #SaaS #EmbeddedSystems #IoT #Startup