
Cyber Security Architect – Product Security
Honeywell
full-time
Posted on:
Location Type: Hybrid
Location: Phoenix • Arizona • United States
Visit company websiteExplore more
Tech Stack
About the role
- Lead efforts with development teams to manage product risk and implement appropriate security controls.
- Drive best-in-class security requirements into product and service offerings.
- Provide architecture and best practices guidance for building secure Honeywell products.
- Support product security process activities, including threat modeling, security requirements, security reviews, threat vulnerability assessments, and risk management for PA applications.
- Possess a product architecture and development background with experience in the Secure Software Development Lifecycle.
- Maintain an understanding of security-by-design principles and architecture-level security concepts, along with up-to-date knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities.
- Work with containers and VMs through secure configurations and conduct periodic security reviews.
- Mentor and train the engineering development community, facilitating the adoption of shift-left security practices.
- Lead new initiatives that enhance Secure Development Lifecycle processes and procedures.
Requirements
- Bachelor’s degree from an accredited institution in a technical discipline such as science, technology, engineering, mathematics, computer science, or 3 years of experience in Cyber Security.
- 2 or more years of experience in mechanical design and development or equivalent work experience in Cyber Security or Information Technology.
- Strong interpersonal skills with the ability to facilitate diverse groups, negotiate priorities, and resolve conflicts among stakeholders.
- Understanding of Agile software development practices.
- 1 or more years of experience with DevSecOps and a solid working knowledge of tooling specific to CI/CD pipelines and security tooling.
- 1 or more years of experience with cryptography, encryption algorithms, Public Key Infrastructure (PKI), secure boot, and open-source risk management.
- Information Security accreditation (CISSP/CSSLP or other security-related certifications).
- Experience with widely used security tools such as SD Elements, BlackDuck Hub, Microsoft Threat Modeling Tool, SAST (Coverity, SonarQube), DAST (Burp, ZAP, AppSpider), fuzzing, vulnerability management, and continuous monitoring tools.
Benefits
- employer subsidized Medical, Dental, Vision, and Life Insurance
- Short-Term and Long-Term Disability
- 401(k) match
- Flexible Spending Accounts
- Health Savings Accounts
- EAP
- Educational Assistance
- Parental Leave
- Paid Time Off (for vacation, personal business, sick time, and parental leave)
- 12 Paid Holidays
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Secure Software Development Lifecyclethreat modelingsecurity requirementssecurity reviewsthreat vulnerability assessmentsrisk managementcryptographyencryption algorithmsPublic Key Infrastructure (PKI)secure boot
Soft Skills
interpersonal skillsfacilitate diverse groupsnegotiate prioritiesresolve conflicts
Certifications
CISSPCSSLP