Product Security Engineering 2

  • Saint Charles, MO
  • Posted 15 hours ago | Updated 15 hours ago

Overview

On Site
Full Time

Skills

Privacy
SAP BASIS
Security Engineering
Risk Assessment
Risk Management
Proposal Writing
GR
Project Management
STIG
Management
Documentation
Leadership
Information System Security
Threat Analysis
Communications Security
Regulatory Compliance
Forensics
Productivity
Systems Analysis
Security Clearance
Science
Security+
GSEC
SSCP
CISSP
CISA
Cyber Security
OWASP
Analytical Skill
Collaboration
Organizational Skills
Microsoft Windows
Red Hat Enterprise Linux
Employee Self-service
HBSS
Splunk
Scripting
Auditing
Fortify
Information Security Management
FISMA
Risk Management Framework
RMF
NIST 800-53
Evaluation
Communication
FOCUS
DoD
System Testing
Data Analysis
Manufacturing Engineering
Computer Science
Data Science
Mathematics
Physics
Chemistry

Job Details

This posting is for a contract assignment and is not a full-time employment offer with Boeing. Candidates selected for roles will be employed as contract workers through a Boeing approved 3rd party for the duration of the specified project.

Boeing's Proprietary Programs in the Advanced Weapons portfolio are seeking motivated and talented contract Associate (Level 2) Product Security Engineers in St. Charles, Missouri! These positions will support the performance of product security and cybersecurity engineering for specialized Advanced Weapons Proprietary Programs which defend the United States homeland and its regional allies all over the world. Be a part of our passionate and highly motivated team who are excited to be on the forefront of defense of our nation.

Come Join Us and Build the Future!

Primary Responsibilities:

Team members will work with other industry partners in the development and execution of a comprehensive assessment program supporting the specialized Advanced Weapons Proprietary Programs in the Space, Intelligence & Weapons Systems (SIWS) organization. These individuals will act as the primary product security engineers on the program for assessing, updating, and maintaining the security posture of the programs. This team will be supporting the program's systems by interacting continuously with the cyber team compliance team to remediate any vulnerabilities found during automated or manual cyber scans. A detailed oriented individual with a strong leadership skillset is a must for this position.

Assess organization-wide security and privacy risk and update assessment results on an ongoing basis

Perform system analysis and develop system test for cyber threats, cyber test activities, and the cybersecurity of large-scale events

Ensure product security engineering development lifecycle is followed, with an emphasis on clear requirements development/verification (using CAMEO)

Perform criticality analysis to include the ability to work with suppliers, identify critical components, and integrating them into the overall system

Perform cyber risk assessments and develop risk mitigation plans (i.e., POA&Ms, SCRM, etc.) using a variety of tools including but not limited to CAMEO

Support and facilitate various ATO/IATT packages including processing IAVMs and CTOs for the same

Perform software assurance tasks, including but not limited to software assurance risk reports

Support proposal development efforts, including but not limited to: BOE generation, GR&A development, trade study analysis

Support the engineering installation & analysis of patches and various system updates and upgrades to determine system consequence of these changes

Attend, collect data from, out brief, and facilitate collaboration and project management from various program boards

Applying Security Technical Implementation Guides (STIGs)

Managing and addressing any Cyber Tasking Orders (CTOs) related to the Cyber Tools

Documentation and verification of all installation and configuration steps for the labs and operations deliveries

Providing feedback to Cyber Leadership and engineers to improve the cybersecurity tools and processes

Collaborating with local Information System Security Officers (ISSOs) to ensure compliance with relevant cybersecurity standards and regulations

Support cyber threat intelligence activities

Support the development and maintenance of cyber scanning, patching, remediation, tools and applications

Support, as required, TEMPEST, DFARS, COMSEC, CNSSI, and other compliance drivers as needed

Perform and/or support the development of tools for cyber forensics

Develop, define efficiencies and improvements to tools to improve team productivity

Perform system analysis trade studies to define technical concepts and solutions

This position requires an active Top Secret U.S. Security Clearance. (A U.S. Security Clearance that has been active in the past 24 months is considered active.)

Basic Qualifications (Required Skills/Experience):

Bachelor of Science degree from an accredited course of study in engineering, engineering technology (includes manufacturing engineering technology), chemistry, physics, mathematics, data science, or computer science.

Current DoD 8570 certification at IAT Level II / IAM Level I or higher (e.g., Security+, GSEC, SCNP, SSCP, CISSP, CISA, GSE, SCNA)

1+ years of experience in product security / cybersecurity engineering

1+ years of experience with industry standard cybersecurity frameworks (NIST, OWASP, DFARS)

Experience using analytical, collaboration, communication and organizational skills

Preferred Qualifications (Desired Skills/Experience):

Experience using CAMEO (proficiency preferred)

2+ years of experience in Windows/RHEL System admin experience, installing, tuning & troubleshooting Cyber Tools to include ESS/HBSS, ConfigOS, Splunk, etc.

2+ years of experience in configuring, running, and scripting audit tools

2+ years of experience using knowledge of Software Assurance (SwA) static and/or dynamic code analysis (e.g. Fortify)

Experience with Federal Information Security Management Act (FISMA)/RMF and National institute of Standards and Technology (NIST) 800-53 requirements

Experience leading system and component level cyber test and evaluation, including threat and security assessments, and tabletop exercises

Experienced self-starter with strong written and oral communication skills, and a focus on translating technically complex issues into simple, easy to understand concept

Growing understanding of DoD defense systems architectures and communications system concepts, mission, and common system test and data analysis techniques

Typical Education/Experience:

Associate (2): Education/experience typically acquired through advanced technical education from an accredited course of study in engineering, engineering technology (includes manufacturing engineering technology), computer science, engineering data science, mathematics, physics or chemistry (e.g. Bachelor) and typically 2 or more years' related work experience or an equivalent combination of technical education and experience or non-US equivalent qualifications. In the USA, ABET accreditation is the preferred, although not required, accreditation standard.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.