Zachary Piper Solutions is seeking an experienced Product Security Engineer to support a leading aerospace and defense organization delivering advanced command-and-control capabilities for a mission-critical U.S. government defense program. This role is fully onsite in Colorado Springs, CO (NO FLEXIBILITY) and requires an active Top Secret clearance w/ SCI eligibility*
The Product Security Engineer will support the integration, testing, and validation of cybersecurity capabilities across a mission-critical defense platform, working across engineering and test teams to ensure security requirements are properly implemented, vulnerabilities are remediated, and solutions meet applicable cybersecurity standards and controls.
Responsibilities of the Product Security Engineer:
- Partner with Cyber Engineering teams to integrate and validate cybersecurity solutions across a mission-critical defense platform, ensuring security controls are properly implemented and fully tested.
- Serve as a primary liaison between cyber engineering and test organizations, coordinating test events, validating test plans, briefing program leadership on findings, and identifying cybersecurity requirements needed for successful execution.
- Support the timely delivery and implementation of cybersecurity capabilities while maintaining a strong focus on vulnerability management and remediation.
- Manage vulnerability and security requirements end-to-end, including IAVM tickets, Cyber Tasking Orders (CTOs), CVE remediation, vendor patch integration, and implementation and verification of DISA STIG configurations.
Qualifications for the Product Security Engineer:
- 3+ years of related cybersecurity experience; post-secondary education or training in a related discipline preferred.
- Strong knowledge of cybersecurity capabilities including patch management, MFA, host-based security, intrusion detection, security event management, active/passive scanning, defense-in-depth, and GPO management.
- Experience with vulnerability assessment and remediation, cyber audit/configuration tools, and implementation of cybersecurity controls.
- Knowledge of Information Assurance technologies, NIST standards, DoDI 8500.2, and Risk Management Framework (RMF) security controls.
- Hands-on Agile/Scrum experience, including requirements development, user stories, sprint planning, daily stand-ups, and sprint reviews.
- Experience reviewing, validating, and executing test plans/cases and providing actionable feedback to ensure cybersecurity requirements are met.
- Strong understanding of SDLC methodologies, testing processes, and cybersecurity software tools.
- Active Top Secret (w/ SCI eligibility) or active TS/SCI clearance*
- IAT Level II certification (Sec+, CCNA, CySA+, etc...)
- Ability & Willingness to work fully onsite in Colorado Springs, CO.
- Demonstrated ability to independently solve complex technical problems, develop effective solutions, and work directly with internal and external stakeholders on critical project requirements.
Compensation for the Product Security Engineer:
- Salary Range: $110,000 - $130,000 *depending on experience*
- Comprehensive Benefits: Medical, Dental, Vision, 401k Plan, PTO, Holidays, Sick Leave if required by law
This job opens for applications on 09/10. Applications for this job will be accepted for at least 30 days from the posting date.