Salary
💰 $107,950 - $212,750 per year
About the role
- Support the development and enhancement of product security requirements and architectures to meet certification and customer requirements
- Conduct product security risk assessments, attack surface analyses, and vulnerability evaluations for embedded and IT systems
- Assist in security audits and assessments of applications, components, and subsystems integrated into Boeing products and services
- Coordinate with governments, customers, suppliers, and industry partners to identify risks and improve security standards and regulatory compliance
- Analyze and triage product security incidents, identifying attack indicators and escalating potential breaches
- Perform trend analysis and support the development of detection and mitigation capabilities against evolving threats
- Prepare and present technical reports and briefings tailored to technical teams and senior leadership
- Collaborate with cross-functional teams to integrate security practices into the product lifecycle
- Stay current with emerging threats, vulnerabilities, and security technologies to continuously improve security posture
- Support research and development activities that result in innovative solutions to enhance product security
- Travel to other Boeing sites within the U.S. may be required (estimated ~10% travel time)
Requirements
- Bachelor’s degree in Cybersecurity, or related technical discipline
- Bachelor’s degree and 5+ years’ experience or Master’s and 3+ years (IC-3); Bachelor’s degree and 9+ years’ experience or Master’s and 7+ years (IC-4); Bachelor’s degree and 14+ years’ experience or Master’s and 12+ years (IC-5)
- 3+ years of experience in product security analysis, risk assessment, vulnerability management, or related fields
- Must obtain a CompTIA Security+, a CISSP certification or equivalent Cyber Security certification within 6 months of employment in this role
- Ability to obtain a U.S. Security Clearance (interim U.S. Secret Pre-Start and final U.S. Secret Post-Start required); U.S. Citizenship required for clearance
- Export control requirement: must meet "U.S. Person" definition per 22 C.F.R. §120.15 (U.S. Citizen, lawful permanent resident, refugee, or asylee)
- Employer will not sponsor applicants for employment visa status
- Experience in software and system security, rapid prototyping, and supporting system development, integration, and testing
- Familiarity with malware analysis, attack surface reduction, and security audit methodologies
- Experience with security incident response and trend analysis
- Strong communication, analytical, and problem-solving skills
- Ability to present complex technical information to diverse audiences, including senior leadership
- Experience leading security projects or teams (preferred for IC-4 and IC-5)