Product Security Engineer, Associate

Boeing
Any Location, MO
Category Engineering
Job Description
The Boeing Company is seeking a Product Security Engineer, Associate to provide technical leadership and support for product cyber security and resiliency engineering for embedded systems. The role involves implementing appropriate security controls and requirements per JSIG, DoD and ICD 503 RMF, NISPOM, or DoD Overprint to the NISPOM as required by customers. The selected candidate must be able to consistently, pro-actively recognize and work through a wide range of challenges and bring to resolution.

Requirements

  • Supports development, implementation, sustainment of product security and resiliency throughout the requirements, design, build, test, production, operations & support lifecycle
  • Supports development and enhancement of system requirements, along with architectures for product security to meet all applicable certification & customer requirements
  • Supports definition/identification of product security requirements for suppliers of components and subsystems for integration into Boeing products/services
  • Coordinates with key stakeholders (customers (internal/external), suppliers, and industry) at a low level to identify risks
  • Provide insight & recommendations on improving industry/regulatory security standards
  • Supports innovative research and development activities
  • Advise customers on maintaining product security and certification, including security consequences of modifying products and services
  • Perform cyber/systems security engineering of embedded avionics products, perform threat/risk assessment that establishes threat surfaces and mitigations to maximize resiliency while minimizing vulnerability
  • Supports the establishment of testing and evaluation plans, including cyber test activities & cyber tabletop evaluations
  • Perform assessment of software assurance activities and products, to ensure the security pedigree of software solutions
  • Identifies assets and assesses risks, threats, and vulnerabilities of the product in accordance with accepted industry, professional, and government standards
  • Ensures safe/secure designs while enabling integrity, availability, confidentiality, and non-repudiation of system functions/data, and contract compliance
  • Implements appropriate security controls and requirements per JSIG, DoD and ICD 503 RMF, NISPOM, or DoD Overprint to the NISPOM as required by customers
  • Works under minimal direction
  • Travel (up to 10%) is required for meetings with customers, internal meetings, etc.
  • The role on the team may require obtaining certifications such as a CompTIA Security+ or CISSP to comply with contract requirements

Benefits

  • Relocation assistance
  • 401k Plan
  • Student Loan Match
  • Competitive base pay and variable compensation opportunities
  • Health insurance
  • Flexible spending accounts
  • Health savings accounts
  • Retirement savings plans
  • Life and disability insurance programs
  • Paid and unpaid time away from work
]]>