It might be sufficient for your kernel security engineer to have per-package upload rights to the kernel. It would be useful if a Launchpad developer could confirm that that was enough.

I feel that we ought to be able to assume that security engineers at least have upload rights to the things they're working on (and fix that if they don't).