> Markdown version of [/jobs/ext/1296408-cyber-security-architect-engineer-ii](https://www.wearedevelopers.com/jobs/ext/1296408-cyber-security-architect-engineer-ii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Architect/Engineer II - **Company:** Honeywell International Inc. - **Location:** Phoenix, AZ, United States - **Contract:** Permanent contract - **Skills:** Agile Methodology, Cyber Security, Fuzz Testing, Open Source Technology, Public Key Infrastructure, SAP Sales and Distribution, Secure Coding, Software Engineering, SonarQube, Software Vulnerability Management, Information Technology, Synopsys Black Duck, U-Boot, Devsecops, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** July 16, 2026 - **Apply:** https://www.juju.com/job/00000000ggr3f2 ## About the Role + Bachelor's degree from an accredited institution in a technical discipline such as science, technology, engineering, mathematics, computer science, or 3 years of experience in Cyber Security. + 2 or more years of experience in mechanical design and development or equivalent work experience in Cyber Security or Information Technology. + Strong interpersonal skills with the ability to facilitate diverse groups, negotiate priorities, and resolve conflicts among stakeholders. + Understanding of Agile software development practices. + Understanding of cryptography, encryption algorithms, Public Key Infrastructure (PKI), secure boot, and open-source risk management. WE VALUE + Information Security accreditation (CISSP/CSSLP or other security-related certifications). + Experience with widely used security tools such as SD Elements, BlackDuck Hub, Microsoft Threat Modeling Tool, SAST (Coverity, SonarQube), DAST (Burp, ZAP, AppSpider), fuzzing, vulnerability management, and continuous monitoring tools. + 1 or more years of experience with DevSecOps and a solid working knowledge of tooling specific to CI/CD pipelines and security tooling. ## Description You will report directly to our Product Security Manager and you'll work out of our Phoenix, Deer Valley location on a Hybrid work schedule. In this role, you will impact the security posture of our products by leading efforts with development teams to manage product risk and implement appropriate security controls, driving best-in-class security requirements into our offerings, and providing guidance on secure product architecture., + Lead efforts with development teams to manage product risk and implement appropriate security controls. + Drive best-in-class security requirements into product and service offerings. + Provide architecture and best practices guidance for building secure Honeywell products. + Support product security process activities, including threat modeling, security requirements, security reviews, threat vulnerability assessments, and risk management for PA applications. + Possess a product architecture and development background with experience in the Secure Software Development Lifecycle. + Maintain an understanding of security-by-design principles and architecture-level security concepts, along with up-to-date knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities. + Work with containers and VMs through secure configurations and conduct periodic security reviews. + Mentor and train the engineering development community, facilitating the adoption of shift-left security practices. + Lead new initiatives that enhance Secure Development Lifecycle processes and procedures. ## Related Videos - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Automated Code Quality Checks with Custom SonarQube Rules](https://www.wearedevelopers.com/videos/428-automated-code-quality-checks-with-custom-sonarqube-rules) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)