Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via email$ 164000 - 164000
1 Vacancy
Date Posted:
Country:
United States of AmericaLocation:
CO901: 6859 North Foothills 6859 North Foothills Highway Boulder CO 80302 USAPosition Role Type:
OnsiteAt Raytheon the foundation of everything we do is rooted in our values and a higher calling to help our nation and allies defend freedoms and deter aggression. We bring the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of todays mission and stay ahead of tomorrows threat. Our team solves tough meaningful problems that create a safer more secure world.
Raytheon is seeking a wellqualified Senior Cyber Security EngineerP3 to join the Cyber Security Engineering team securing some very interesting systems. The position provides secure software cybersecurity expertise; as well as guiding the secure implementation of databases. The successful candidate is expected to have proven experience implementing secure coding standards the Defense Information Systems Agency (DISA) Application Security and Development Security Technical Implementation Guide (ASD STIG) database security Python coding and experience with the Risk Management Framework (RMF) process and artifact development leading to a successful Authorization to Operate (ATO). Continuous Integration / Continuous Deployment (CI/CD) pipeline and DevSecOps experience is highly desired; as is the ability to effectively perform in a dynamic agile development environment. This position requires work onsite in Boulder CO.
What You Will Do
Perform security analysis of software applications using both automated tooling (static code analysis software composition analysis fuzzing) and manual code and design review
Support integration of tools and processes into DevSecOps pipelines
Design implement and integrate improvements to software analysis continuous integration tooling
Perform/analyze compliance scans and generate reports (e.g. STIG SCAP SCA vulnerability scans etc.
Support software developers in remediating issues identified during code analysis & support software developers in integrating security into system designs
Qualifications You Must Have
Typically requires a Bachelors degree in Science Technology Engineering or Mathematics (STEM) and 5 years of engineering experience in cyber security
Active and transferable U.S. government issued Secret Security clearance is required prior to start date. U.S. citizenship is required as only U.S. citizens are eligible for a security clearance
Experience with Risk Management Framework (RMF) NIST 80037 Continuous Monitoring IAW NIST 800137 Patching IAW NIST 80040 NIST 80053 and CNSSI 1253
Experience with one or more of the following programming languages: C Python JavaScript (or TypeScript) Rust
Experience with using and configuring static code analysis tooling (e.g. Coverity Klockwork SonarQube etc.
Experience with vulnerability discovery using fuzzing (AFL AFL honggfuzz etc.
Required Security Certification in accordance with DoD 8570.01 IASAEI for a Linux environment (e.g. CASP CE and Linux OS Certification); NOTE: Obtaining IASAEI certification is required at fstart
Qualifications We Prefer
An active and transferable U.S. government issued Top Secret/SCI Security Clearance is preferred
Develop and augment automation through scripting or programming and collaborating w/ teams for security functionality to meet cyber requirements
Experience identifying exploiting and remediating application vulnerabilities
Experience with cyber security engineering projects (specifically focused on software security) and programs for U.S. Government clients
Knowledge of secure coding practices and enforcement through DevSecOps pipelines
Experience identifying exploiting and remediating application vulnerabilities
Experience with application debugging runtime instrumentation (Strace eBPF) and reverse engineering (Ghidra IDA Pro)
Familiarity with threat modeling tools such as the MITRE ATT&CK framework
Ability to work in a team environment and work collaboratively across traditional engineering disciplines
Must be a selfstarter capable of multitasking and efficiently managing your time
What We Offer
Our values drive our actions behaviors and performance with a vision for a safer more connected world. At RTX we value: Trust Respect Accountability Collaboration and Innovation
Relocation Eligible Relocation assistance is available
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity national origin age disability or veteran status or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Required Experience:
Senior IC
Full-Time