Senior Product Security Engineer - Avionics Development

Boeing Boeing · Aerospace · Berkeley, MO +5

This role focuses on product security engineering for avionics systems within Boeing, encompassing the entire lifecycle from requirements to sustainment. It involves developing and implementing security standards, conducting risk assessments, and coordinating with various engineering teams to ensure the cyber resilience of aircraft systems. The position requires experience with aircraft avionics, deriving technical requirements, and understanding security principles.

What you'd actually do

  1. Lead the development, implementation, and sustainment of product security for Boeing avionics systems, throughout the requirements, design, analysis, build, test, production, operations, support and sustainment lifecycle
  2. Coordinate with platforms and system-of-systems product security counterparts for requirements, activities, artifacts, and solutions
  3. Coordinate with other engineering stakeholders – systems, software, and hardware – advising on the results of security analysis – to develop secure architectures and designs
  4. Lead, establish, and integrate standards and processes for product security engineering for avionics development, and to meet applicable program and certification requirements
  5. Utilize the Risk Engineering digital thread to inform product requirements surrounding cyber survivability against specified cyber threats – by performing criticality, adversity, threat analysis for avionics systems

Skills

Required

  • Bachelor of Science degree in Engineering, Engineering Technology (including Manufacturing Technology), Computer Science, Data Science, Mathematics, Physics, Chemistry or non-US equivalent qualifications directly related to the work statement
  • 9+ years of related work experience or an equivalent combination of education and experience
  • Experience with commercial and/or military aircraft avionics
  • Experience in deriving technical requirements from customer input or eliciting customer requirements
  • Experience solving complex business problems and delivering solutions via technology
  • Experience do you have in presenting technical briefings to various audiences
  • Knowledge of security practices and principles associated with risk analysis and assessment

Nice to have

  • Active technical security certification (ex. ISC2 – International Information System Security Certification, CISSP – Certified Information Systems Security Professional, GIAC - Global Information Assurance Certification)
  • Experience designing, supporting, or executing AI, data, privacy, cybersecurity, or other technology risks assessments and translating findings into practical controls and process improvements
  • Experience in security domain, e.g. defining penetration testing, architecting product security posture
  • Experience working with and/or developing embedded systems
  • Experience in the field of Cybersecurity, anti-tamper and/or secure computing and knowledge of Department of Defense (DoD) policies and requirements related to Cybersecurity
  • Experience in combination of test planning and execution experience including; Cyber Test and Evaluation activities such as penetration testing, threat, adversity and risk analysis, and exploitation tool development, tailoring, and use and general cybersecurity engineering
  • Active U.S. Security Clearance in the past 24 months

What the JD emphasized

  • product cyber security and resiliency engineering for avionics
  • cybersecurity engineering organization
  • product security engineering
  • cyber survivability
  • cyber threats
  • security analysis
  • security requirements
  • product security risks