Company:
The Boeing CompanyBoeing Defense Space & Security (BDS) is seeking an associate, experienced or senior Product Security Analyst to support the P-8A program in Richardson, TX. The candidate will join a team supporting product cybersecurity efforts across multiple systems and labs for both training and development efforts. The BDS Product Security Engineering team is responsible for the cybersecurity and resiliency of Boeing products and services, bridging the gap between high level security policies/requirements and technical/operational implementation of those requirements. The work is multi-disciplinary and includes activities in cyber and systems security analysis, engineering, test, and vulnerability assessments and mitigation.
At Boeing, we innovate and collaborate to make the world a better place. By joining our team, you will become an integral part of an organization that deeply values teamwork, fosters creativity, and upholds the highest standards of engineering technical excellence to ensure our products are secure. Contribute to work that matters with a company where diversity, equity and inclusion are shared values. Find your future with us!
Position Responsibilities:
Analyze customer and regulatory information system security requirements and decompose them into system security design specifications.
Interface directly with the customers and lead engineers to ensure that security requirements are designed into the products and evaluated for effectiveness.
Perform as the key system security focal throughout the DevSecOps framework.
Develop IT architecture deliverables, specific to information security countermeasure implementations, for operational systems and systems under development.
Provide technical cyber security engineering guidance to IT Administrators, Systems Architect, Systems Engineers, and Software Developers.
Provide system security engineering guidance on the design and implementation of technical policies for user/computer groups and network devices.
Responsible for the design and implementation of security systems across the entire organization's networks, including IDS, firewalls, log capture, host-based protections, vulnerability scanning tools, and more.
Conduct assessments of existing IT architecture for compliance with security requirements from applicable security frameworks.
Analyzes, triages, aggregates, escalates, and reports relevant product security and anti-tamper data and other information sources for attack indicators and potential security breaches.
Provide ISSO and IT administrators with system security level expertise to assist with the gathering/securing of data to support incident investigation and response.
Assist ISSO in monitoring, interpreting, and reacting to security device outputs, create documentation in support of authorization/accreditation packages, and deploy security policies, standards, and guidance.
This position is expected to be 100% onsite. The selected candidate will be required to work onsite at one of the listed location options.
This position requires an active U.S. Top Secret Security Clearance (US Citizenship Required). (A U.S. Security Clearance that has been active in the past 24 months is considered active.)
Basic Qualifications (Required Skills & Experience): (see required education and experience for the levels below)
CompTIA Security+ Certification
1 or more years experience with the implementation of security controls IAW DoD Risk Management Framework (RMF).
1 or more years experience with common DoD vulnerability and compliance assessment tools (e.g., SCAP, STIGs, ACAS) and processes.
1 or more years experience in security control test plan development and execution.
Preferred Qualifications (Desired Skills/Experience):
BS technical degree or 4 or more year of relevant experience.
DoD 8570.01-M IAT Level II Certification
DoD 8570.01-M IAT Level III Certification (e.g., CASP+ CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSP); and IASAE Level II (e.g., CASP+ CE, CISSP (or Associate), CSSLP)
Experience acting as a Test Engineer or Software Assurance Engineer.
Experience with development and implementation of Anti-Tamper technologies and security controls.
Experience with software development tools, such as, DOORS, ClearCase, GitLab, Jira, Coverity, etc.
Experience with developing Threat Modeling, Attack Profiles, Threat and Risk Assessments on aircraft platforms and weapon systems.
Experience with evaluating and refining customer security requirements.
Experience capturing/documenting system security designs throughout the System Development Lifecycle (SDLC) process (e.g., System Diagrams, System Security Plans, Hardware Baselines, Software Baselines, Network Diagrams, Security Controls Traceability Matrices, Standard Operating Procedures, etc.)
Ability to work independently, actively participate on integrated teams, and lead a task, project, or small team. Requires guidance and direction from more senior level technicians, specialists, and managers only when dealing with new, uncertain situations.
Experience working in a customer facing role executing Information System Security Vulnerability Assessments, to include conducting customer out briefs and generating reports.
Experience working with multiple technologies such as RHEL 8 and above, and/or CISCO IOS/NXOS, and/or Windows server 2019 and above, and/or Windows 10 or newer.
Experience with multiple scripting languages (e.g., PowerShell, Python, Bash, Ansible, etc.)
Experience creating system security implementation solutions against customer requirements.
Experience with installation and configuration of Splunk Enterprise; to include creation of Apps and Dashboards to audit analysis specifications.
Experience in Group Policy Management and implementation.
Experience with Agile development within a DevSecOps environment
Typical Education/Experience:
Level 2 - Bachelor’s degree and 2+ years’ experience or Master’s
Level 3 - Bachelor’s degree and 5+ years’ experience or Master’s & 3+ years
Level 4 - Bachelor’s degree and 9+ years’ experience or Master’s & 7+ years
Drug Free Workplace:
Boeing is a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies.
Relocation:
Relocation assistance is not a negotiable benefit for this position. Candidates must live in the immediate area or relocate at their own expense.
Pay & Benefits:
At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities.
The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work.
The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements.
Pay is based upon candidate experience and qualifications, as well as market and business considerations.
Summary pay range (level 2): $88,400 - $119,600
Summary pay range (Level 3): $107,950 - $146,050
Summary pay range (Level 4): $131,750 - $178,250
Language Requirements:
Not ApplicableEducation:
Not ApplicableRelocation:
Relocation assistance is not a negotiable benefit for this position.Export Control Requirement:
This is not an Export Control position.Safety Sensitive:
This is not a Safety Sensitive Position.Security Clearance:
This position requires an active U.S. Top Secret Security Clearance (U.S. Citizenship Required). (A U.S. Security Clearance that has been active in the past 24 months is considered active)Visa Sponsorship:
Employer will not sponsor applicants for employment visa status.Contingent Upon Award Program
This position is not contingent upon program awardShift:
Shift 1 (United States of America)Stay safe from recruitment fraud! The only way to apply for a position at Boeing is via our Careers website. Learn how to protect yourself from recruitment fraud - Recruitment Fraud Warning
Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law.
Boeing Participates in E – Verify
Right to Work Statement
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Boeing is looking for a seasoned KC-46 Support Integration Specialist to lead sustainment programs and collaborate cross-functionally within their aerospace defense services.
Lead and coordinate strategic operations excellence initiatives at Boeing's Global Real Estate, Planning, and Strategy team in a hybrid role.
Contribute to clinical technology and workflow innovation as an Application Analyst I, specializing in Epic Beacon at Memorial Sloan Kettering Cancer Center.
Seeking an Insider Threat Analyst with a strong background in User Activity Monitoring and DoD cybersecurity standards to enhance detection and investigation capabilities for a federal contractor.
Lead Wheaton College's enterprise application strategy and delivery to advance institutional technology and data initiatives in a mission-driven environment.
Radford University is hiring a Computer Support Specialist to deliver expert technology support and maintain computer labs for the campus community.
OMES is looking for a strategic Director of Digital Engineering to drive modernization and improve application delivery across Oklahoma state agencies.
Innovate and develop cutting-edge digital collaboration and AI automation solutions at Bristol Myers Squibb as a Power Platform Developer.
Lead critical security engineering initiatives at HealthVerity, securing healthcare data in a hybrid role with significant technical and leadership impact.
Comcast Spectacor is looking for an experienced IT Application Support Engineer 2 to ensure effective operation and integration of enterprise applications while providing technical leadership.
Experienced Service Desk Technician II needed at Verathon to deliver advanced IT support and collaborate within a dynamic healthcare-focused technology team.
Seeking a skilled Big Data Architect experienced with Kafka, Spark, and Java to lead architectural solutions at Sonsoft, Inc. in Plano, TX.
Seeking a skilled Oracle B2C Service Cloud DevOps Lead to drive implementation and support initiatives onsite at Johnson Controls in Glendale, WI.
Lead public safety cybersecurity efforts for the City of Philadelphia ensuring secure, compliant, and resilient information systems.
Lead the engineering efforts to enhance Operational Technology asset visibility and cybersecurity for a major infrastructure client, driving strategy and technical implementation.
The story of our company is woven together from thousands of individual stories of engineers and technicians. Scientists and thinkers. Innovators and dreamers. Equity, diversity and inclusion are crucial to our employees, our stakeholders, and our...
264 jobs