Security Software Engineer

Boeing Boeing · Aerospace · Swansea, IL

Security Software Engineer providing security engineering support for the GDSS program, a US Air Force Command and Control system. Responsibilities include addressing STIGs, integrating security into CI/CD pipelines, identifying and remediating vulnerabilities in AWS environments, monitoring security posture, implementing security best practices, managing security policies, designing encryption solutions, and documenting security architecture.

What you'd actually do

  1. Coordinate efforts to address quarterly Security Technical Implementation Guides (STIGs) issued by the Defense Information Systems Agency, and plans of action to reach compliance
  2. Collaborate with DevOps, engineering, and compliance teams to integrate security controls into CI/CD pipelines
  3. Identify, analyze, and remediate security vulnerabilities and misconfigurations in AWS environments
  4. Monitor Nessus scan results and coordinate necessary remediation and burndown of findings
  5. Monitor cloud security posture using AWS-native tools (e.g., AWS Security Hub, GuardDuty, Config) and third-party solutions including Trend Micro Deep Security

Skills

Required

  • implementing and sustaining secure development practices and operations
  • scanning and vulnerability remediation
  • AWS security best practices
  • Identity and Access Management (IAM)
  • security groups
  • network ACLs
  • encryption solutions
  • CompTIA Security+ Certification
  • U.S. Secret Clearance

Nice to have

  • supporting GDSS or MAFC2 Systems

What the JD emphasized

  • 5+ years of experience implementing and sustaining secure development practices and operations, including scanning and vulnerability remediation
  • Ability to obtain a U.S. Secret Clearance
  • CompTIA Security+ Certification