Mid-Level Software Security Engineer

Boeing Company
Seattle, WA, United States
16 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
1 year minimum
Compensation
$137,700.0 - $186,300.0
Working hours
Regular working hours
Job source

Tech stack

Systems Engineering Cyber Security Continuous Integration Hardware Security Module Public Key Infrastructure Systems Development Life Cycle Security Information and Event Management Software Engineering Product Software Implementation Methods Technical Data Management Systems Software Security Information Technology
+1 more
Devsecops

Job description

  • Assesses the adversity faced by software subsystems in the context of the larger system
  • Secures cloud-based software development environments
  • Manages risk in accordance with accepted industry, professional, and government standards to ensure security design integrity, availability, confidentiality, and regulatory compliance
  • Develops security requirements and coordinate with multiple system stakeholders to identify and properly implement and verify security measures to mitigate the risks, threats and vulnerabilities
  • Performs requirements verification on software security engineering products using inspection, analysis, demonstration, and test methods
  • Performs Common Vulnerabilities and Exploits (CVE) analysis and coordinate with system stakeholders to appropriately mitigate and address to reduce likelihood and consequences of CVE impacting system operation
  • Deploys DevSecOps best practices into Program pipelines, including tool selection, configuration, and analysis
  • Provides technical data and develop documentation in accordance with requirements and system security engineering processes and procedures for internal reference and external delivery
  • Supports Product Security Incident Response Team to respond to security events
  • Defines and deploys consistent software security standards within the Software Development Lifecycle
  • Identifies improvements to ensure software implementation is aligned to industry and Boeing software assurance best practices

Requirements

  • Bachelor of Science degree in Engineering, Engineering Technology (including Manufacturing Technology), Computer Science, Data Science, Mathematics, Physics, Chemistry or non-US equivalent qualifications directly related to the work statement
  • 5+ years of related work experience or an equivalent combination of education and experience
  • 1+ years of experience factoring and applying confidentiality, integrity and availability considerations within the system development lifecycle
  • Experience with the Software Development Lifecycle (SDLC), * Experience with system security engineering or systems engineering
  • Experience with security infrastructure, product and cybersecurity systems analysis, design, development, and testing
  • Working knowledge in Public Key Infrastructure operations through hardware security modules, certificate authorities and all supporting hardware and software
  • Experience with DevSecOps and Continuous Integration and Continuous Deployment (CI/CD) tools and execution, This position must meet U.S. export control compliance requirements. To meet U.S. export control compliance requirements, a “U.S. Person” as defined by 22 C.F.R. §120.62 is required., Bachelor’s Degree or Equivalent Required

Benefits & conditions

Boeing is a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies.

Pay & Benefits:

At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities.

The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work.

The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements.

Pay is based upon candidate experience and qualifications, as well as market and business considerations.

Summary Pay Range: $137,700 - $186,300

About the company

At Boeing, we innovate and collaborate to make the world a better place. We’re committed to fostering an environment for every teammate that’s welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us.

The Boeing Company is looking for a Mid-Level Software Security Engineer to join the Enterprise Product Security Software organization in Seattle, WA or Everett, WA , to support Secure Coding, Certification, and Software Assurance across various programs in Boeing Commercial Airplanes (BCA).

The successful candidate will be responsible for driving the development, implementation, and sustainment of product security and resiliency throughout the software development lifecycle, protecting our commercial airplanes’ products and the aviation ecosystem.

As a member of the Enterprise Product Security Software organization, you will have support from security experts across all business units, and exposure to a large variety of products and services. With a focus on Software Security, you will be accountable for the security of software products and pipelines across the world’s leading portfolio of commercial and defense airplanes, satellites and weapons.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all