Date Posted: 2026-06-15 Country: United States of America Location: US-MA-TEWKSBURY-TB1 50 Apple Hill Dr ASSABET BLDG Position Role Type: Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Security Clearance Type: Secret - Current Security Clearance Status: Active and existing security clearance required on day 1 At RTX, the world's largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world's most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Raytheon brings the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. We deliver solutions that help our nation and allies defend freedoms and deter aggression, creating a safer, more secure world. Join us and help shape the future of aerospace and defense. Raytheon is seeking a well-qualified Senior Systems Security Engineer (Anti-Tamper/Program Protection) - P3 to join our elite Systems Security Engineering (SSE) team in developing solutions to protect the Warfighter's technology advantage. Systems Security Engineering creates holistic security solutions leveraging Cyber Security, Software Assurance and Supply Chain Risk Management to support Program Protection Implementation on embedded weapons systems. Join our highly visible team and perform technically challenging assignments, which will directly contribute to protecting our nation and our Warfighters. This is an onsite position at Raytheon in Massachusetts. What You Will Do Interact with the customer to define SSE requirements, solutions, trades, costs, implementation, system impacts, and effectiveness Support compliance with National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) controls Consult and assist program management with SSE architecture and issues Support the development of bids and proposals Support security development and test efforts implementation of security controls of networking devices, databases, operating systems, and hardware and software component Integrate cybersecurity development activities Qualifications You Must Have Typically requires a Bachelor's Degree in Science, Technology, Engineering or Mathematics (STEM) and 5 years of prior relevant experience Active and transferable U.S. government issued Secret security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Experience in the fields of System Security Engineering, computer technology reverse engineering, anti-tamper, cybersecurity, program protection or embedded security Qualifications We Prefer DoD Top Secret clearance with current SSBI within last 5 years desired Experience in design, development and fielding of SSE systems Software, Firmware, & Microelectronics Engineering, Cryptography and FPGA design Attack threat modeling / Critical Program Information Assessments Experience in the implementation and business growth of SSE implementation throughout the entire life cycle Experience in solutions meeting robust SSE systems security requirements Cyber Certifications in accordance with DoDD 8570/DoDD 8140 such as CISSP, GSLC, CEH Broad understanding of technology and working knowledge of DODI-S-5230.28 Aircraft/weapons integration experience Strategic planning and proposal writing skills Candidate must exhibit an exceptional degree of ingenuity, creativity, and resourcefulness Excellent interpersonal skills with the ability to interact positively with coworkers, suppliers, stakeholders, and customers in a team environment Experience contributing in a team environment for the purpose of developing creative solutions to technical problems What We Offer Our values drive our actions, behaviors, and performance with a vision for a safer, more connected world. At RTX we value: Trust, Respect, Accountability, Collaboration, and Innovation Relocation Eligible - Relocation assistance is available As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote. The salary range for this role is 86,800 USD - 165,200 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills. Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement. Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance. This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply. RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window. RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act. Privacy Policy and Terms: Click on this link to read the Policy and Terms
09/24/2026
Full time
Date Posted: 2026-06-15 Country: United States of America Location: US-MA-TEWKSBURY-TB1 50 Apple Hill Dr ASSABET BLDG Position Role Type: Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Security Clearance Type: Secret - Current Security Clearance Status: Active and existing security clearance required on day 1 At RTX, the world's largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world's most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Raytheon brings the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. We deliver solutions that help our nation and allies defend freedoms and deter aggression, creating a safer, more secure world. Join us and help shape the future of aerospace and defense. Raytheon is seeking a well-qualified Senior Systems Security Engineer (Anti-Tamper/Program Protection) - P3 to join our elite Systems Security Engineering (SSE) team in developing solutions to protect the Warfighter's technology advantage. Systems Security Engineering creates holistic security solutions leveraging Cyber Security, Software Assurance and Supply Chain Risk Management to support Program Protection Implementation on embedded weapons systems. Join our highly visible team and perform technically challenging assignments, which will directly contribute to protecting our nation and our Warfighters. This is an onsite position at Raytheon in Massachusetts. What You Will Do Interact with the customer to define SSE requirements, solutions, trades, costs, implementation, system impacts, and effectiveness Support compliance with National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) controls Consult and assist program management with SSE architecture and issues Support the development of bids and proposals Support security development and test efforts implementation of security controls of networking devices, databases, operating systems, and hardware and software component Integrate cybersecurity development activities Qualifications You Must Have Typically requires a Bachelor's Degree in Science, Technology, Engineering or Mathematics (STEM) and 5 years of prior relevant experience Active and transferable U.S. government issued Secret security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Experience in the fields of System Security Engineering, computer technology reverse engineering, anti-tamper, cybersecurity, program protection or embedded security Qualifications We Prefer DoD Top Secret clearance with current SSBI within last 5 years desired Experience in design, development and fielding of SSE systems Software, Firmware, & Microelectronics Engineering, Cryptography and FPGA design Attack threat modeling / Critical Program Information Assessments Experience in the implementation and business growth of SSE implementation throughout the entire life cycle Experience in solutions meeting robust SSE systems security requirements Cyber Certifications in accordance with DoDD 8570/DoDD 8140 such as CISSP, GSLC, CEH Broad understanding of technology and working knowledge of DODI-S-5230.28 Aircraft/weapons integration experience Strategic planning and proposal writing skills Candidate must exhibit an exceptional degree of ingenuity, creativity, and resourcefulness Excellent interpersonal skills with the ability to interact positively with coworkers, suppliers, stakeholders, and customers in a team environment Experience contributing in a team environment for the purpose of developing creative solutions to technical problems What We Offer Our values drive our actions, behaviors, and performance with a vision for a safer, more connected world. At RTX we value: Trust, Respect, Accountability, Collaboration, and Innovation Relocation Eligible - Relocation assistance is available As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote. The salary range for this role is 86,800 USD - 165,200 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills. Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement. Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance. This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply. RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window. RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act. Privacy Policy and Terms: Click on this link to read the Policy and Terms
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver on a scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate need for a Network Engineer at the journeyman level who will be primarily responsible for supporting the AFLCMC Air Force Security Assistance Directorate at Wright Patterson AFB, OH. The Air Force Security Assistance Directorate (AFSAC) delivers airpower capabilities to strengthen international partnerships and advance national security by providing Foreign Military Sales (FMS) support to all United States (US) partner nations, world-wide. Responsibilities include, but are not limited to the duties listed below: Provide primary network configuration and maintenance support to WPAFB's Site AF JWICS Infrastructure, including on-site support to all SCIFs located on WPAFB requiring AF JWICS access via the WPAFB Site project. Provide remote AF JWICS network advisement to regionally co-located industry partners utilizing the WPAFB Site project and remote AF JWICS network assistance to geographically separated Government SCIFs responsible to the WPAFB SSO and SIO, with travel authorized if mission and budget demands allow. Perform design, configuration, installation, upgrades, monitoring, troubleshooting, and routine change management functions for WPAFB Site AF JWICS network infrastructure. Interface and coordinate with the WPAFB Site AF JWICS ISSM for cybersecurity policy and Risk Management Framework (RMF) control implementation. Interface and coordinate with 88 CS, NASIC, AF IC, 690 ISS, ACC/A25J, and other agencies as necessary. Develop processes, conduct investigative research, and perform trend analysis actions as directed by the DAO, CISO, ISSM, SIO, or appointed Government official. Manage cybersecurity network management and monitoring tools, including Infoblox, SolarWinds, GEMONE, ISE, and similar tools. Develop and draft network-related artifacts required for continued Authority to Operate (ATO) and higher headquarters-issued taskings. Assist information technology specialists with troubleshooting and maintenance of collateral LAN systems, including NIPR, SIPR, and related systems, as required. Perform cryptographic equipment maintenance, hardware upgrades and replacement, firmware updates, and system configuration changes remotely or in person as required for supported locations. Perform COMSEC Responsible Officer (CRO) duties for AFLCMC/IN customers located in Buildings 11, 20, and 556 only. Work with the Site ISSM to acquire an ATO and comply with continuous monitoring criteria. Requirements Must have an active or current Top Secret security clearance with Sensitive Compartmented Information (TS/SCI) eligibility, Bachelor's or Master's Degree in a related field and at least three (3) years of experience in the respective technical / professional discipline being performed, three (3) of which must be in the DoD OR, seven (7) years of directly related experience with proper certifications as described in the PWS labor category performance requirements, five (5) of which must be in the DoD. Specialized knowledge and experience required . Position-appropriate certification/qualification for DoD 8140 primary work role code 441-Network Operations at Intermediate proficiency level, secondary work role code 451-System Administrator at Intermediate proficiency level, and third work role code 411-Technical Support Specialist at Intermediate proficiency level. Meet DoD 8140 criteria for foundational, residential, and continuous professional development to remain qualified, and maintain all certifications and training requirements in good standing as determined by DoD, DAF, and IC policy. Be familiar with current security policy and manuals, with the ability to work in a dynamic environment and effectively interact with DoD, military/civilian personnel, and industry partners. Possess a high degree of originality, creativity, and initiative requiring minimal supervision. Be able to lift up to 50 pounds. Be willing to travel within the organizational geographic Area of Responsibility (AOR), including potential ground and air transportation. Must be eligible for access to Special Access Program (SAP) information if required and be willing to submit to a counterintelligence polygraph. Must be able to maintain elevated privileged access to information technology systems. Must have the means to travel to and from required work locations to perform assigned tasks, as a Government vehicle is not available. Battery-operated vehicles are available for use on Area B if personnel meet minimum operating requirements. Why This Role Matters Real-World Impact - Your work will support defense and health agencies where AI solutions directly contribute to national security and public well-being. Growth-Oriented Environment - Learn from technical leaders, innovate within Agentic AI, and mentor those around you in AI best practices. Culture of Empowerment - You'll be part of a team that values innovation, trust, collaboration, and mission success. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development
09/24/2026
Full time
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver on a scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate need for a Network Engineer at the journeyman level who will be primarily responsible for supporting the AFLCMC Air Force Security Assistance Directorate at Wright Patterson AFB, OH. The Air Force Security Assistance Directorate (AFSAC) delivers airpower capabilities to strengthen international partnerships and advance national security by providing Foreign Military Sales (FMS) support to all United States (US) partner nations, world-wide. Responsibilities include, but are not limited to the duties listed below: Provide primary network configuration and maintenance support to WPAFB's Site AF JWICS Infrastructure, including on-site support to all SCIFs located on WPAFB requiring AF JWICS access via the WPAFB Site project. Provide remote AF JWICS network advisement to regionally co-located industry partners utilizing the WPAFB Site project and remote AF JWICS network assistance to geographically separated Government SCIFs responsible to the WPAFB SSO and SIO, with travel authorized if mission and budget demands allow. Perform design, configuration, installation, upgrades, monitoring, troubleshooting, and routine change management functions for WPAFB Site AF JWICS network infrastructure. Interface and coordinate with the WPAFB Site AF JWICS ISSM for cybersecurity policy and Risk Management Framework (RMF) control implementation. Interface and coordinate with 88 CS, NASIC, AF IC, 690 ISS, ACC/A25J, and other agencies as necessary. Develop processes, conduct investigative research, and perform trend analysis actions as directed by the DAO, CISO, ISSM, SIO, or appointed Government official. Manage cybersecurity network management and monitoring tools, including Infoblox, SolarWinds, GEMONE, ISE, and similar tools. Develop and draft network-related artifacts required for continued Authority to Operate (ATO) and higher headquarters-issued taskings. Assist information technology specialists with troubleshooting and maintenance of collateral LAN systems, including NIPR, SIPR, and related systems, as required. Perform cryptographic equipment maintenance, hardware upgrades and replacement, firmware updates, and system configuration changes remotely or in person as required for supported locations. Perform COMSEC Responsible Officer (CRO) duties for AFLCMC/IN customers located in Buildings 11, 20, and 556 only. Work with the Site ISSM to acquire an ATO and comply with continuous monitoring criteria. Requirements Must have an active or current Top Secret security clearance with Sensitive Compartmented Information (TS/SCI) eligibility, Bachelor's or Master's Degree in a related field and at least three (3) years of experience in the respective technical / professional discipline being performed, three (3) of which must be in the DoD OR, seven (7) years of directly related experience with proper certifications as described in the PWS labor category performance requirements, five (5) of which must be in the DoD. Specialized knowledge and experience required . Position-appropriate certification/qualification for DoD 8140 primary work role code 441-Network Operations at Intermediate proficiency level, secondary work role code 451-System Administrator at Intermediate proficiency level, and third work role code 411-Technical Support Specialist at Intermediate proficiency level. Meet DoD 8140 criteria for foundational, residential, and continuous professional development to remain qualified, and maintain all certifications and training requirements in good standing as determined by DoD, DAF, and IC policy. Be familiar with current security policy and manuals, with the ability to work in a dynamic environment and effectively interact with DoD, military/civilian personnel, and industry partners. Possess a high degree of originality, creativity, and initiative requiring minimal supervision. Be able to lift up to 50 pounds. Be willing to travel within the organizational geographic Area of Responsibility (AOR), including potential ground and air transportation. Must be eligible for access to Special Access Program (SAP) information if required and be willing to submit to a counterintelligence polygraph. Must be able to maintain elevated privileged access to information technology systems. Must have the means to travel to and from required work locations to perform assigned tasks, as a Government vehicle is not available. Battery-operated vehicles are available for use on Area B if personnel meet minimum operating requirements. Why This Role Matters Real-World Impact - Your work will support defense and health agencies where AI solutions directly contribute to national security and public well-being. Growth-Oriented Environment - Learn from technical leaders, innovate within Agentic AI, and mentor those around you in AI best practices. Culture of Empowerment - You'll be part of a team that values innovation, trust, collaboration, and mission success. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development
Job Description Job Description K2 is building the largest and highest-power satellites ever flown, unlocking performance levels previously out of reach across every orbit. Backed by over $1 billion in total funding from leading investors including Altimeter Capital, ICONIQ, Kleiner Perkins, Lightspeed Venture Partners, Redpoint Ventures, and T. Rowe Price - and with over $1 billion in signed contracts across commercial and US government customers, we're mass-producing the highest-power satellite platforms ever built for missions from LEO to deep space. The rise of heavy-lift launch vehicles is shifting the industry from an era of mass constraint to one of mass abundance, and we believe this new era demands a fundamentally different class of spacecraft. Engineered to survive the harshest radiation environments and to fully capitalize on today's and tomorrow's massive rockets, K2 satellites deliver unmatched capability at constellation scale and across multiple orbits. With multiple launches in 2027 and plans to scale to 100 satellites a year, we're Building Bigger - helping develop the solar system and build toward a Kardashev Type II (K2) civilization. If you are a motivated individual who thrives in a fast-paced environment and you're excited about contributing to the success of a high-growth Series D-funded company, we'd love for you to apply. The Role As K2's Crypto Engineer, you will own the architecture and design of our Type-1 cryptographic integrations across the spacecraft and ground segment. You will carry these designs cradle-to-grave - from concept and trade studies, through implementation and integration, to NSA certification and accreditation, and into on-orbit operations. You'll define how K2's satellites protect command, telemetry, and mission data; partner with NSA, government customers, and certification authorities; and ensure our COMSEC architecture meets the bar for national-security missions while fitting the pace and scale of a high-volume satellite production line. This is a foundational role: you'll set the cryptographic standards the rest of the program builds against. Responsibilities Own the end-to-end architecture and design of Type-1 cryptographic integrations across the spacecraft, payload, and ground segment Lead crypto designs from concept and trade studies through implementation, integration, certification, and on-orbit operations Define COMSEC architecture for command, telemetry, and mission data protection, including encryption, key management, and key loading approaches Serve as K2's primary technical interface to NSA, certification authorities, and government customers on cryptographic certification and accreditation Drive the certification and accreditation effort, developing the artifacts, test evidence, and documentation required to achieve and maintain approval to operate Partner with flight software, avionics, RF, ground, and security teams to integrate cryptographic functions into the broader system architecture Support COMSEC handling, key management planning, and operational procedures for on-orbit fleet operations Identify and mitigate cryptographic and supply-chain risks across design and production Establish reusable cryptographic standards, interfaces, and processes that scale across K2's satellite production line Qualifications Bachelor's degree or higher in electrical engineering, computer engineering, computer science, or a related discipline 5+ years of engineering experience with cryptographic systems, COMSEC, or secure communications Direct experience with NSA Type-1 cryptographic equipment, integration, and certification processes Working knowledge of key management, key loading, and COMSEC handling requirements Experience taking a hardware or system design through certification and accreditation to operational use Strong systems-level thinking with the ability to reason from first principles across hardware, software, and RF boundaries Ability to work in a fast-paced, autonomously driven, and demanding startup atmosphere with competing priorities and aggressive schedules Nice to Have Experience with spacecraft, satellite, or other space-system cryptographic integrations Familiarity with cryptographic modernization initiatives and current NSA-approved algorithms and equipment Experience with RMF/ATO, JSIG, or other accreditation frameworks Background in RF, link design, or secure command and telemetry systems Experience supporting on-orbit or fielded operations Additional Requirements Ability to travel up to 25% of the time Active Top Secret or Top Secret SCI clearance required; ability to obtain and maintain access to additional programs as needed Ability to work irregular business hours to support critical project timelines or operations This role requires access to information controlled under ITAR/EAR; applicants must be a U.S. Person as defined by applicable regulations Compensation and Benefits Base salary range for this role is $160,000 - $245,000 + equity in the company Salary will be based on several factors including, but not limited to: knowledge and skills, education, and experience level Comprehensive benefits package including paid time off, medical/dental/vision coverage, life insurance, paid parental leave, and many other perks If you don't meet 100% of the preferred skills and experience, we encourage you to still apply! Building a spacecraft unlike any other requires a team unlike any other and non-traditional career twists and turns are encouraged! If you need a reasonable accommodation as part of your application for employment or interviews with us, please let us know. Export Compliance As defined in the ITAR, "U.S. Persons" include U.S. citizens, lawful permanent residents (i.e., Green Card holders), and certain protected individuals (e.g., refugees/asylees, American Samoans). Please consult with a knowledgeable advisor if you are unsure whether you are a "U.S. Person." The person hired for this role will have access to information and items controlled by U.S. export control regulations, including the export control regulations outlined in the International Traffic in Arms Regulation (ITAR). The person hired for this role must therefore either be a "U.S. person" as defined by 22 C.F.R. 120.15 or otherwise eligible for a federally issued export control license. Equal Opportunity K2 Space is an Equal Opportunity Employer; employment with K2 Space is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.
09/24/2026
Full time
Job Description Job Description K2 is building the largest and highest-power satellites ever flown, unlocking performance levels previously out of reach across every orbit. Backed by over $1 billion in total funding from leading investors including Altimeter Capital, ICONIQ, Kleiner Perkins, Lightspeed Venture Partners, Redpoint Ventures, and T. Rowe Price - and with over $1 billion in signed contracts across commercial and US government customers, we're mass-producing the highest-power satellite platforms ever built for missions from LEO to deep space. The rise of heavy-lift launch vehicles is shifting the industry from an era of mass constraint to one of mass abundance, and we believe this new era demands a fundamentally different class of spacecraft. Engineered to survive the harshest radiation environments and to fully capitalize on today's and tomorrow's massive rockets, K2 satellites deliver unmatched capability at constellation scale and across multiple orbits. With multiple launches in 2027 and plans to scale to 100 satellites a year, we're Building Bigger - helping develop the solar system and build toward a Kardashev Type II (K2) civilization. If you are a motivated individual who thrives in a fast-paced environment and you're excited about contributing to the success of a high-growth Series D-funded company, we'd love for you to apply. The Role As K2's Crypto Engineer, you will own the architecture and design of our Type-1 cryptographic integrations across the spacecraft and ground segment. You will carry these designs cradle-to-grave - from concept and trade studies, through implementation and integration, to NSA certification and accreditation, and into on-orbit operations. You'll define how K2's satellites protect command, telemetry, and mission data; partner with NSA, government customers, and certification authorities; and ensure our COMSEC architecture meets the bar for national-security missions while fitting the pace and scale of a high-volume satellite production line. This is a foundational role: you'll set the cryptographic standards the rest of the program builds against. Responsibilities Own the end-to-end architecture and design of Type-1 cryptographic integrations across the spacecraft, payload, and ground segment Lead crypto designs from concept and trade studies through implementation, integration, certification, and on-orbit operations Define COMSEC architecture for command, telemetry, and mission data protection, including encryption, key management, and key loading approaches Serve as K2's primary technical interface to NSA, certification authorities, and government customers on cryptographic certification and accreditation Drive the certification and accreditation effort, developing the artifacts, test evidence, and documentation required to achieve and maintain approval to operate Partner with flight software, avionics, RF, ground, and security teams to integrate cryptographic functions into the broader system architecture Support COMSEC handling, key management planning, and operational procedures for on-orbit fleet operations Identify and mitigate cryptographic and supply-chain risks across design and production Establish reusable cryptographic standards, interfaces, and processes that scale across K2's satellite production line Qualifications Bachelor's degree or higher in electrical engineering, computer engineering, computer science, or a related discipline 5+ years of engineering experience with cryptographic systems, COMSEC, or secure communications Direct experience with NSA Type-1 cryptographic equipment, integration, and certification processes Working knowledge of key management, key loading, and COMSEC handling requirements Experience taking a hardware or system design through certification and accreditation to operational use Strong systems-level thinking with the ability to reason from first principles across hardware, software, and RF boundaries Ability to work in a fast-paced, autonomously driven, and demanding startup atmosphere with competing priorities and aggressive schedules Nice to Have Experience with spacecraft, satellite, or other space-system cryptographic integrations Familiarity with cryptographic modernization initiatives and current NSA-approved algorithms and equipment Experience with RMF/ATO, JSIG, or other accreditation frameworks Background in RF, link design, or secure command and telemetry systems Experience supporting on-orbit or fielded operations Additional Requirements Ability to travel up to 25% of the time Active Top Secret or Top Secret SCI clearance required; ability to obtain and maintain access to additional programs as needed Ability to work irregular business hours to support critical project timelines or operations This role requires access to information controlled under ITAR/EAR; applicants must be a U.S. Person as defined by applicable regulations Compensation and Benefits Base salary range for this role is $160,000 - $245,000 + equity in the company Salary will be based on several factors including, but not limited to: knowledge and skills, education, and experience level Comprehensive benefits package including paid time off, medical/dental/vision coverage, life insurance, paid parental leave, and many other perks If you don't meet 100% of the preferred skills and experience, we encourage you to still apply! Building a spacecraft unlike any other requires a team unlike any other and non-traditional career twists and turns are encouraged! If you need a reasonable accommodation as part of your application for employment or interviews with us, please let us know. Export Compliance As defined in the ITAR, "U.S. Persons" include U.S. citizens, lawful permanent residents (i.e., Green Card holders), and certain protected individuals (e.g., refugees/asylees, American Samoans). Please consult with a knowledgeable advisor if you are unsure whether you are a "U.S. Person." The person hired for this role will have access to information and items controlled by U.S. export control regulations, including the export control regulations outlined in the International Traffic in Arms Regulation (ITAR). The person hired for this role must therefore either be a "U.S. person" as defined by 22 C.F.R. 120.15 or otherwise eligible for a federally issued export control license. Equal Opportunity K2 Space is an Equal Opportunity Employer; employment with K2 Space is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.
Job Description Job Description Benefits: 401(k) 401(k) matching Dental insurance Health insurance Paid time off Profit sharing Training & development Tuition assistance Vision insurance Job Description SarelaTech is seeking an experienced Network Engineer (SME) to join our Integrated Information Technology Support Services (I3TS) team, who will support an extensive digital modernization program critical to Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA. The Network Engineer will work closely with the Leidos and Government technical leadership team to help drive innovation, growth, and efficiencies within the I3TS portfolio. Primary Responsibilities: The Commercial Solutions for Classified (CSfC) Network & Security Engineer will architect and operate secure, dual-layer cryptographic boundaries utilizing Cisco and Aruba IPsec/SSL VPNs and dynamic routing (BGP/OSPF) in strict compliance with NSA Capability Packages. In this role, you will author and tune Palo Alto NGFW security policies and IDS/IPS threat prevention signatures, implement enterprise network access control and 802.1X policies via Cisco ISE and Aruba ClearPass, integrate enterprise PKI/OCSP services and hardened NTP, and generate key engineering artifacts required for NSA CSfC PMO registration and compliance auditing. Architect, deploy, and maintain CSfC infrastructure operating within Black/Gray/Red networks. Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Mobile Access (MA), Multi-Sight (MSC) Capability Packages, with Campus Wireless LAN (WLAN) experience a bonus. Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Understanding of NIAP approved list and monitors for changes Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Capability Packages (MSC, MA, and CWLAN). Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Implement enterprise routing protocols (BGP, OSPF) alongside redundant outer and inner IPsec VPN tunnels across Cisco and Aruba appliances. Configure remote access SSL VPNs and ensure end-to-end traffic separation. Author, optimize, and audit Palo Alto Next-Generation Firewall (NGFW) security policies, App-ID, User-ID, and URL filtering. Configure and tune Palo Alto IDS/IPS threat signatures, anti-spyware, and vulnerability protection. Architect and manage Cisco Identity Services Engine (ISE) and Aruba ClearPass policy managers for 802.1X network access control, RADIUS/TACACS+ administration, posture assessment, and endpoint profiling. Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate lifecycles, Certificate Authorities (CAs), CRL/OCSP validation, and hardened, authenticated Network Time Protocol (NTP) infrastructure. Prepare CSfC compliance artifacts, Key Management Plans (KMPs), Continuous Monitoring Plans (CMPs), and registration packages for NSA CSfC PMO submission. Required Qualifications: Bachelor's degree or higher in Computer Science, Information Technology, Engineering, Engineering Management, Management Information Systems, or related STEM degree program, and 12-15 years of relevant experience. Specific experience, education and training may be considered in lieu of degree. 12+ years of progressive network engineering experience within DoD/DoW, federal, or defense contractor enterprise environments Active TS/SCI Clearance Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+ CE, CySA+, CASP+, or CISSP). Active Computing Environment certification, including one or more of: Cisco CCNA, CCNP, Aruba ACSA or ACSP Proven expertise configuring Cisco (IOS-XE/ASR) and Aruba (Mobility Controllers/Gateways) IPsec and SSL VPNs, including IKEv2, Suite B/CNSA cryptography, and dynamic routing (BGP, OSPF). Demonstrated engineering experience with Palo Alto Networks firewalls (PAN-OS), Panorama central management, and advanced IDS/IPS inspection profiles. Hands-on deployment experience with both Cisco ISE and/or Aruba ClearPass implementing 802.1X, EAP-TLS authentication, and role-based access policies. Strong working knowledge of X.509 certificates, CA hierarchy integration, certificate revocation lists (CRLs), OCSP, and secure NTP stratum synchronization. Direct prior experience preparing and successfully registering NSA CSfC Capability Package solutions (Mobile Access, Multi-Site Connectivity, or Campus WLAN). Deep understanding of Commercial National Security Algorithm (CNSA) Suite requirements, post-quantum readiness considerations, and hardware security modules (HSMs). Familiarity with Ansible, for automating network device configuration backups, policy compliance checks, and certificate rotations. Certified in any of the following - Cisco CCNP/CCIE (Security or Enterprise), Palo Alto PCNSE, Aruba Certified ClearPass Expert (ACCX), or Aruba Certified Mobility Expert (ACMX).
09/24/2026
Full time
Job Description Job Description Benefits: 401(k) 401(k) matching Dental insurance Health insurance Paid time off Profit sharing Training & development Tuition assistance Vision insurance Job Description SarelaTech is seeking an experienced Network Engineer (SME) to join our Integrated Information Technology Support Services (I3TS) team, who will support an extensive digital modernization program critical to Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA. The Network Engineer will work closely with the Leidos and Government technical leadership team to help drive innovation, growth, and efficiencies within the I3TS portfolio. Primary Responsibilities: The Commercial Solutions for Classified (CSfC) Network & Security Engineer will architect and operate secure, dual-layer cryptographic boundaries utilizing Cisco and Aruba IPsec/SSL VPNs and dynamic routing (BGP/OSPF) in strict compliance with NSA Capability Packages. In this role, you will author and tune Palo Alto NGFW security policies and IDS/IPS threat prevention signatures, implement enterprise network access control and 802.1X policies via Cisco ISE and Aruba ClearPass, integrate enterprise PKI/OCSP services and hardened NTP, and generate key engineering artifacts required for NSA CSfC PMO registration and compliance auditing. Architect, deploy, and maintain CSfC infrastructure operating within Black/Gray/Red networks. Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Mobile Access (MA), Multi-Sight (MSC) Capability Packages, with Campus Wireless LAN (WLAN) experience a bonus. Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Understanding of NIAP approved list and monitors for changes Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Capability Packages (MSC, MA, and CWLAN). Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Implement enterprise routing protocols (BGP, OSPF) alongside redundant outer and inner IPsec VPN tunnels across Cisco and Aruba appliances. Configure remote access SSL VPNs and ensure end-to-end traffic separation. Author, optimize, and audit Palo Alto Next-Generation Firewall (NGFW) security policies, App-ID, User-ID, and URL filtering. Configure and tune Palo Alto IDS/IPS threat signatures, anti-spyware, and vulnerability protection. Architect and manage Cisco Identity Services Engine (ISE) and Aruba ClearPass policy managers for 802.1X network access control, RADIUS/TACACS+ administration, posture assessment, and endpoint profiling. Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate lifecycles, Certificate Authorities (CAs), CRL/OCSP validation, and hardened, authenticated Network Time Protocol (NTP) infrastructure. Prepare CSfC compliance artifacts, Key Management Plans (KMPs), Continuous Monitoring Plans (CMPs), and registration packages for NSA CSfC PMO submission. Required Qualifications: Bachelor's degree or higher in Computer Science, Information Technology, Engineering, Engineering Management, Management Information Systems, or related STEM degree program, and 12-15 years of relevant experience. Specific experience, education and training may be considered in lieu of degree. 12+ years of progressive network engineering experience within DoD/DoW, federal, or defense contractor enterprise environments Active TS/SCI Clearance Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+ CE, CySA+, CASP+, or CISSP). Active Computing Environment certification, including one or more of: Cisco CCNA, CCNP, Aruba ACSA or ACSP Proven expertise configuring Cisco (IOS-XE/ASR) and Aruba (Mobility Controllers/Gateways) IPsec and SSL VPNs, including IKEv2, Suite B/CNSA cryptography, and dynamic routing (BGP, OSPF). Demonstrated engineering experience with Palo Alto Networks firewalls (PAN-OS), Panorama central management, and advanced IDS/IPS inspection profiles. Hands-on deployment experience with both Cisco ISE and/or Aruba ClearPass implementing 802.1X, EAP-TLS authentication, and role-based access policies. Strong working knowledge of X.509 certificates, CA hierarchy integration, certificate revocation lists (CRLs), OCSP, and secure NTP stratum synchronization. Direct prior experience preparing and successfully registering NSA CSfC Capability Package solutions (Mobile Access, Multi-Site Connectivity, or Campus WLAN). Deep understanding of Commercial National Security Algorithm (CNSA) Suite requirements, post-quantum readiness considerations, and hardware security modules (HSMs). Familiarity with Ansible, for automating network device configuration backups, policy compliance checks, and certificate rotations. Certified in any of the following - Cisco CCNP/CCIE (Security or Enterprise), Palo Alto PCNSE, Aruba Certified ClearPass Expert (ACCX), or Aruba Certified Mobility Expert (ACMX).
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
09/24/2026
Full time
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you'd like, where you'll be supported and inspired by a collaborative community of colleagues around the world, and where you'll be able to reimagine what's possible. Join us and help the world's leading organizations unlock the value of technology and build a more sustainable, more inclusive world. Job Description About us New Co is a new AI-native product organization within Capgemini Financial Services. We build products, not projects: software for insurance claims, payment operations, and health operations, sold to banks, insurers, and health plans. Three product lines run on one shared platform, built by a deliberately small, senior team. Our engineering model is agentic: engineers author the specifications, tooling, evaluation suites, and guardrails, and AI agents do most of the implementation. Humans own every consequential decision, and in our regulated domains some decisions are human-only by design. The role Three product lines, one platform. You will own the platform that Claims, Payments, and Health run on: the agentic AI floor (model gateway, agent runtime, evaluation infrastructure, guardrails) and the shared product services around it (case management and work queues, integration connectors, multi-tenancy, metering). You run the platform as a product whose customers are our product teams, and you are its first and most senior engineer-leader. Every hour of claims handling or payment processing our products automate rests on infrastructure your group builds. What you will own The strategic vision, roadmap, and end-to-end lifecycle of the platform: from the model gateway and agent runtime to shared workflow, tenancy, and metering services A competitive engineering strategy at the frontier: you track research and model releases as they land, decide what the platform adopts versus builds, and keep our capability curve ahead of what clients could assemble themselves The closed improvement loops: production signals and evaluation verdicts feed reinforcement learning and fine-tuning pipelines that produce our own LLMs and SLMs; product loops run automated end to end, with humans holding the gates Build-vs-buy decisions across open-source and commercial AI infrastructure, and the boundary between what the platform provides and what product lines build themselves A disciplined operating model: a published capacity split between product-team requests, platform quality, and strategic initiatives; services graduate to self-service only when they are ready Platform adoption outcomes: your group is measured by the delivery metrics of its consumers, not its own output Compliance posture of the platform in regulated environments: model risk documentation, audit trails, and responsible-AI practices that bank and insurer risk teams can examine; no AI capability ships ungoverned or unevaluated, including the models we train ourselves Hiring and growing the platform group, and the engineering standards it sets for the whole organization What you will need A track record leading platform or infrastructure teams that ran production systems for multiple product teams, with accountability for adoption, not just delivery Hands-on credibility in modern AI infrastructure: LLM inference and serving, model gateways, vector search, guardrails, and evaluation systems Frontier research fluency: you read post-training, reinforcement learning, and agentic-systems work as it lands and can turn it into engineering strategy; an engineer who reads research, not a researcher at engineering distance Cloud platform depth (AWS, Azure, or GCP) with Kubernetes and infrastructure-as-code at production scale Experience delivering in a regulated industry, ideally financial services, or demonstrable fluency in what model-risk and security review requires of a platform A platform-as-product mindset: you can talk about golden paths, voluntary adoption, and developer research as naturally as architecture Daily, hands-on use of AI coding assistants in your own work What sets you apart You have owned both an AI platform floor and shared business services (workflow, tenancy, billing/metering) in one charter You have taken a model through post-training (RLHF, RLAIF, fine-tuning, or distillation to smaller models) into production Published or open-source work in agent infrastructure or evaluation tooling Cost management (FinOps) experience for LLM workloads Financial services domain depth: you have shipped production systems for banks, insurers, or payment providers The reference stack The reference technology stack for this role is our supported paved road: self-hosted Lang Smith and Lang Graph Platform as the agent runtime and evaluation plane, model providers behind a swappable gateway seam, PostgreSQL with pg vector plus Click House and S3-compatible object storage as the data platform, Neo4j Enterprise as the semantic knowledge graph, an agent memory plane serving episodic and precedent memory over MCP, MCP-native connectors, Open Telemetry and Grafana for observability, all on CNCF-conformant Kubernetes with Helm and Argo CD, deployable to any hyper scaler or on-prem. A tool-for-tool match is not expected: analogous experience counts fully. If you have built and operated systems of this shape on comparable components (a different orchestration framework, graph engine, evaluation platform, or serving stack), you have what we are looking for. How we work Engineers write specs, harnesses, evals, and guardrails; AI agents execute the implementation loops. Review, not typing, is where engineering judgment goes. Three human gates govern everything we ship: spec approval, merge, and release. Regulated code paths (money movement, authentication, cryptography, secrets) are always human-owned. Small and senior by design. No separate QA function, no scrum masters; quality comes from evaluation gates and whole-team review rituals. Domain experts (claims practitioners, payment scheme experts, clinicians) are full-time members of the product teams you will serve. Success in year one The first product line ships to its first enterprise client on platform services it chose to use, with platform cost attributed per line Platform adoption is voluntary and measured; product teams' deployment frequency and change-failure rates improve after adoption Bank or insurer model-risk teams accept the platform's evidence pack on first review A written engineering strategy exists, is re-argued each quarter against frontier developments, and the first New Co-tuned model (LLM or SLM) serves production traffic behind evaluation gates The base compensation range for this role in the posted location is 141546 - 203155 Capgemini provides compensation range information in accordance with applicable national, state, provincial, and local pay transparency laws. The base compensation range listed for this position reflects the minimum and maximum target compensation Capgemini, in good faith, believes it may pay for the role at the time of this posting. This range may be subject to change as permitted by law. The actual compensation offered to any candidate may fall outside of the posted range and will be determined based on multiple factors legally permitted in the applicable jurisdiction. These may include, but are not limited to: Geographic location, Education and qualifications, Certifications and licenses, Relevant experience and skills, Seniority and performance, Market and business consideration, Internal pay equity. It is not typical for candidates to be hired at or near the top of the posted compensation range. In addition to base salary, this role may be eligible for additional compensation such as variable incentives, bonuses, or commissions, depending on the position and applicable laws. Capgemini offers a comprehensive, non-negotiable benefits package to all regular, full-time employees. In the U.S. and Canada, available benefits are determined by local policy and eligibility and may include: Paid time off based on employee grade (A-F), defined by policy: Vacation: 12-25 days, depending on grade, Company paid holidays, Personal Days, Sick Leave Medical, dental, and vision coverage (or provincial healthcare coordination in Canada) Retirement savings plans (e.g., 401(k) in the U.S., RRSP in Canada) Life and disability insurance Employee assistance programs Other benefits as provided by local policy and eligibility Important Notice: Compensation (including bonuses, commissions, or other forms of incentive pay) is not considered earned, vested, or payable until it becomes due under the terms of applicable plans or agreements and is subject to Capgemini's discretion, consistent with applicable laws. The Company reserves the right to amend or withdraw compensation programs at any time, within the limits of applicable legislation. Disclaimers Capgemini is an Equal Opportunity Employer encouraging inclusion in the workplace. Capgemini also participates in the Partnership Accreditation in Indigenous Relations (PAIR) program which supports meaningful engagement with Indigenous communities across Canada by promoting fairness, accessibility, inclusion and respect. We value the rich cultural heritage and contributions of Indigenous Peoples and actively work to create a welcoming and respectful environment . click apply for full job details
09/23/2026
Full time
Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you'd like, where you'll be supported and inspired by a collaborative community of colleagues around the world, and where you'll be able to reimagine what's possible. Join us and help the world's leading organizations unlock the value of technology and build a more sustainable, more inclusive world. Job Description About us New Co is a new AI-native product organization within Capgemini Financial Services. We build products, not projects: software for insurance claims, payment operations, and health operations, sold to banks, insurers, and health plans. Three product lines run on one shared platform, built by a deliberately small, senior team. Our engineering model is agentic: engineers author the specifications, tooling, evaluation suites, and guardrails, and AI agents do most of the implementation. Humans own every consequential decision, and in our regulated domains some decisions are human-only by design. The role Three product lines, one platform. You will own the platform that Claims, Payments, and Health run on: the agentic AI floor (model gateway, agent runtime, evaluation infrastructure, guardrails) and the shared product services around it (case management and work queues, integration connectors, multi-tenancy, metering). You run the platform as a product whose customers are our product teams, and you are its first and most senior engineer-leader. Every hour of claims handling or payment processing our products automate rests on infrastructure your group builds. What you will own The strategic vision, roadmap, and end-to-end lifecycle of the platform: from the model gateway and agent runtime to shared workflow, tenancy, and metering services A competitive engineering strategy at the frontier: you track research and model releases as they land, decide what the platform adopts versus builds, and keep our capability curve ahead of what clients could assemble themselves The closed improvement loops: production signals and evaluation verdicts feed reinforcement learning and fine-tuning pipelines that produce our own LLMs and SLMs; product loops run automated end to end, with humans holding the gates Build-vs-buy decisions across open-source and commercial AI infrastructure, and the boundary between what the platform provides and what product lines build themselves A disciplined operating model: a published capacity split between product-team requests, platform quality, and strategic initiatives; services graduate to self-service only when they are ready Platform adoption outcomes: your group is measured by the delivery metrics of its consumers, not its own output Compliance posture of the platform in regulated environments: model risk documentation, audit trails, and responsible-AI practices that bank and insurer risk teams can examine; no AI capability ships ungoverned or unevaluated, including the models we train ourselves Hiring and growing the platform group, and the engineering standards it sets for the whole organization What you will need A track record leading platform or infrastructure teams that ran production systems for multiple product teams, with accountability for adoption, not just delivery Hands-on credibility in modern AI infrastructure: LLM inference and serving, model gateways, vector search, guardrails, and evaluation systems Frontier research fluency: you read post-training, reinforcement learning, and agentic-systems work as it lands and can turn it into engineering strategy; an engineer who reads research, not a researcher at engineering distance Cloud platform depth (AWS, Azure, or GCP) with Kubernetes and infrastructure-as-code at production scale Experience delivering in a regulated industry, ideally financial services, or demonstrable fluency in what model-risk and security review requires of a platform A platform-as-product mindset: you can talk about golden paths, voluntary adoption, and developer research as naturally as architecture Daily, hands-on use of AI coding assistants in your own work What sets you apart You have owned both an AI platform floor and shared business services (workflow, tenancy, billing/metering) in one charter You have taken a model through post-training (RLHF, RLAIF, fine-tuning, or distillation to smaller models) into production Published or open-source work in agent infrastructure or evaluation tooling Cost management (FinOps) experience for LLM workloads Financial services domain depth: you have shipped production systems for banks, insurers, or payment providers The reference stack The reference technology stack for this role is our supported paved road: self-hosted Lang Smith and Lang Graph Platform as the agent runtime and evaluation plane, model providers behind a swappable gateway seam, PostgreSQL with pg vector plus Click House and S3-compatible object storage as the data platform, Neo4j Enterprise as the semantic knowledge graph, an agent memory plane serving episodic and precedent memory over MCP, MCP-native connectors, Open Telemetry and Grafana for observability, all on CNCF-conformant Kubernetes with Helm and Argo CD, deployable to any hyper scaler or on-prem. A tool-for-tool match is not expected: analogous experience counts fully. If you have built and operated systems of this shape on comparable components (a different orchestration framework, graph engine, evaluation platform, or serving stack), you have what we are looking for. How we work Engineers write specs, harnesses, evals, and guardrails; AI agents execute the implementation loops. Review, not typing, is where engineering judgment goes. Three human gates govern everything we ship: spec approval, merge, and release. Regulated code paths (money movement, authentication, cryptography, secrets) are always human-owned. Small and senior by design. No separate QA function, no scrum masters; quality comes from evaluation gates and whole-team review rituals. Domain experts (claims practitioners, payment scheme experts, clinicians) are full-time members of the product teams you will serve. Success in year one The first product line ships to its first enterprise client on platform services it chose to use, with platform cost attributed per line Platform adoption is voluntary and measured; product teams' deployment frequency and change-failure rates improve after adoption Bank or insurer model-risk teams accept the platform's evidence pack on first review A written engineering strategy exists, is re-argued each quarter against frontier developments, and the first New Co-tuned model (LLM or SLM) serves production traffic behind evaluation gates The base compensation range for this role in the posted location is 141546 - 203155 Capgemini provides compensation range information in accordance with applicable national, state, provincial, and local pay transparency laws. The base compensation range listed for this position reflects the minimum and maximum target compensation Capgemini, in good faith, believes it may pay for the role at the time of this posting. This range may be subject to change as permitted by law. The actual compensation offered to any candidate may fall outside of the posted range and will be determined based on multiple factors legally permitted in the applicable jurisdiction. These may include, but are not limited to: Geographic location, Education and qualifications, Certifications and licenses, Relevant experience and skills, Seniority and performance, Market and business consideration, Internal pay equity. It is not typical for candidates to be hired at or near the top of the posted compensation range. In addition to base salary, this role may be eligible for additional compensation such as variable incentives, bonuses, or commissions, depending on the position and applicable laws. Capgemini offers a comprehensive, non-negotiable benefits package to all regular, full-time employees. In the U.S. and Canada, available benefits are determined by local policy and eligibility and may include: Paid time off based on employee grade (A-F), defined by policy: Vacation: 12-25 days, depending on grade, Company paid holidays, Personal Days, Sick Leave Medical, dental, and vision coverage (or provincial healthcare coordination in Canada) Retirement savings plans (e.g., 401(k) in the U.S., RRSP in Canada) Life and disability insurance Employee assistance programs Other benefits as provided by local policy and eligibility Important Notice: Compensation (including bonuses, commissions, or other forms of incentive pay) is not considered earned, vested, or payable until it becomes due under the terms of applicable plans or agreements and is subject to Capgemini's discretion, consistent with applicable laws. The Company reserves the right to amend or withdraw compensation programs at any time, within the limits of applicable legislation. Disclaimers Capgemini is an Equal Opportunity Employer encouraging inclusion in the workplace. Capgemini also participates in the Partnership Accreditation in Indigenous Relations (PAIR) program which supports meaningful engagement with Indigenous communities across Canada by promoting fairness, accessibility, inclusion and respect. We value the rich cultural heritage and contributions of Indigenous Peoples and actively work to create a welcoming and respectful environment . click apply for full job details
Are you looking to Optimize your life? Start your exciting path to a rewarding career today! We are Optimum, a leader in the fast-paced world of connectivity, and we're seeking driven and enthusiastic professionals to join our team, empower lives, fuel businesses, and drive innovation. Connectivity is now longer a luxury, but a necessity. A career at Optimum means you'll be enabling progress and enhancing lives by providing reliable, high-speed connectivity solutions that keep the world connected. Our successes, now and in the future, are powered by our amazing product, a commitment to our people and culture, and the connections we make in our communities. If you are resourceful, collaborative, and passionate about delivering consistent excellence, Optimum is for you! Job Summary Optimum is a leading provider of Mobile, Broadband (DOCSIS, Fiber) and Video services in the United States for Business and Residential Customers. We are looking for a passionate and engaged individual who is willing to take on the challenge of scaling product security at a Fortune 500 company and building the cyber security foundation that will allow our development teams to Go Fast! The Product Security organization helps Optimum move faster, securely. We're a team of engineers who work to enable other teams to build products as quickly as possible while continuing to protect our customers. We support developers in shipping secure code by building security tools and services, providing security training and expertise, and advocating for best practices in authentication, authorization, and safe data handling across the company. As a Product Security Engineer focusing on embedded systems security for video, broadband, and Wi-Fi products, you'll be a trusted partner, collaborating closely with engineering and product teams to ensure security is a cornerstone of every product. You will partner with leadership to shape product strategy, advocate for strong security controls, and influence future product iterations, and serve as an industry expert in device security engineering practices and standards. By leveraging your deep industry knowledge, you'll lead the charge in implementing secure architecture and design principles, ensuring early detection and prevention of vulnerabilities. Your expertise in security assessments and software engineering will help identify and mitigate potential threats, while your mentorship and training efforts will foster a security-first culture. Responsibilities Collaborate with engineering and product teams to integrate security and secure-by-default guardrails into the product lifecycle, ensuring that security is a core consideration in all design and development decisions. Conduct Threat Modeling and Risk Assessments from the early stages of the product development lifecycle to identify, assess, and prioritize security risks, enabling proactive mitigation strategies. Perform rigorous security testing and reviews to uncover and address security weaknesses. Lead initiatives automating security processes from the developer workstation to cloud, SaaS, and datacenter environments. Foster a security-first culture by educating and empowering engineering and product teams through training, awareness campaigns, and mentorship, cultivating a strong security mindset. Stay updated on the latest security threats, vulnerabilities, and technology trends, and proactively implement improvements. Contribute to incident response efforts, investigate root causes, and implement corrective actions to minimize impact and prevent future occurrences. Conduct penetration testing, reverse engineering, and vulnerability research against firmware, hardware interfaces, and device software to surface real-world attack paths before adversaries do. Establish and operate Software Bill of Materials (SBOM) management, CVE triage, and coordinated vulnerability disclosure processes for connected devices throughout their lifecycle. Define and uphold secure-by-design requirements aligned to recognized IoT and embedded security standards (e.g., NIST IR 8259, ETSI EN , OWASP IoT Top 10). Qualifications Bachelor's degree in Computer Science, Electrical Engineering, or a related field. Master's degree is a plus. 5+ years of hands-on experience in software engineering and designing and delivering security-critical systems for internet-connected embedded devices. Proven expertise in embedded systems and product security, with a strong understanding of modern software development processes and methods, security best practices, threat modeling, and risk assessment. Excellent communication skills, both written and verbal, and the ability to communicate complex security concepts to technical and non-technical audiences, including senior leadership. Proven ability to establish credibility and build trust with engineers and operational staff. Expertise in conducting comprehensive threat modeling, risk assessments, and code reviews to identify and mitigate vulnerabilities. Experience utilizing and securing AI/ML models and AI-integrated solutions, a general understanding of AI concepts, AI governance and risk management, and a willingness to learn more. Proficiency in secure SDLC practices and practical experience with CI/CD pipelines and DevOps tools. Experience overseeing vulnerability and threat management at the platform and device levels. Strong understanding of cryptography and key management use cases. In-depth knowledge of networking protocols, peripheral and firmware security, secure boot, embedded Linux security, Android or iOS security, and PKI. Experience working with special purpose security hardware such as Trusted Platform Modules (TPMs) and Hardware Security Modules (HSMs). Proficiency in C and C++ for embedded software development and one or more modern programming languages like Golang, Python, Node, and Java. Hands-on experience with hardware-level security testing techniques, including JTAG/SWD, UART, SPI/I2C debug interfaces, firmware extraction, fault injection, and side-channel analysis. Working knowledge of reverse engineering and analysis tooling such as Ghidra, IDA Pro, Binary Ninja, binwalk, QEMU, and common debuggers across ARM, MIPS, and RISC-V architectures. At Optimum, every action and interaction we take part in, is driven by our three Guiding Principles: Do What's Right, Drive One Optimum, and Make It Happen. These aren't just words, they help us build trust, create real community, and embrace new ways of thinking. Our employees are empowered to do the right thing for our customers and co-workers and to recognize and reward these behaviors when we see them. It's all part of the bigger picture of "Be The Difference" where each employee knows they have the power to enact real change, share new ideas, and understand that learning never stop. If you have the drive to succeed and are ready to embark on a thrilling career, seize this opportunity today, and join our winning team. Together, we'll shape the future of connectivity. All job descriptions and required skills, qualifications and responsibilities for a particular position are subject to modification by the Company from time to time, in the Company's discretion based on business necessity. We are an Equal Opportunity Employer committed to recruiting, hiring and promoting qualified people of all backgrounds regardless of gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other basis protected by federal, state, or local law. The Company collects personal information about its applicants for employment that may include personal identifiers, professional or employment related information, photos, education information and/or protected classifications under federal and state law. This information is collected for employment purposes, including identification, work authorization, FCRA-compliant background screening, human resource administration and compliance with federal, state and local law. Applicants for employment with The Company will never be asked to provide money (even if reimbursable) as part of the job application or hiring process. Please review our Fraud FAQ for further details. We appreciate your interest in this opportunity. Applicants must be authorized to work for ANY employer in the U.S. Please note that at this time, we do not provide visa sponsorship for employment.
09/23/2026
Full time
Are you looking to Optimize your life? Start your exciting path to a rewarding career today! We are Optimum, a leader in the fast-paced world of connectivity, and we're seeking driven and enthusiastic professionals to join our team, empower lives, fuel businesses, and drive innovation. Connectivity is now longer a luxury, but a necessity. A career at Optimum means you'll be enabling progress and enhancing lives by providing reliable, high-speed connectivity solutions that keep the world connected. Our successes, now and in the future, are powered by our amazing product, a commitment to our people and culture, and the connections we make in our communities. If you are resourceful, collaborative, and passionate about delivering consistent excellence, Optimum is for you! Job Summary Optimum is a leading provider of Mobile, Broadband (DOCSIS, Fiber) and Video services in the United States for Business and Residential Customers. We are looking for a passionate and engaged individual who is willing to take on the challenge of scaling product security at a Fortune 500 company and building the cyber security foundation that will allow our development teams to Go Fast! The Product Security organization helps Optimum move faster, securely. We're a team of engineers who work to enable other teams to build products as quickly as possible while continuing to protect our customers. We support developers in shipping secure code by building security tools and services, providing security training and expertise, and advocating for best practices in authentication, authorization, and safe data handling across the company. As a Product Security Engineer focusing on embedded systems security for video, broadband, and Wi-Fi products, you'll be a trusted partner, collaborating closely with engineering and product teams to ensure security is a cornerstone of every product. You will partner with leadership to shape product strategy, advocate for strong security controls, and influence future product iterations, and serve as an industry expert in device security engineering practices and standards. By leveraging your deep industry knowledge, you'll lead the charge in implementing secure architecture and design principles, ensuring early detection and prevention of vulnerabilities. Your expertise in security assessments and software engineering will help identify and mitigate potential threats, while your mentorship and training efforts will foster a security-first culture. Responsibilities Collaborate with engineering and product teams to integrate security and secure-by-default guardrails into the product lifecycle, ensuring that security is a core consideration in all design and development decisions. Conduct Threat Modeling and Risk Assessments from the early stages of the product development lifecycle to identify, assess, and prioritize security risks, enabling proactive mitigation strategies. Perform rigorous security testing and reviews to uncover and address security weaknesses. Lead initiatives automating security processes from the developer workstation to cloud, SaaS, and datacenter environments. Foster a security-first culture by educating and empowering engineering and product teams through training, awareness campaigns, and mentorship, cultivating a strong security mindset. Stay updated on the latest security threats, vulnerabilities, and technology trends, and proactively implement improvements. Contribute to incident response efforts, investigate root causes, and implement corrective actions to minimize impact and prevent future occurrences. Conduct penetration testing, reverse engineering, and vulnerability research against firmware, hardware interfaces, and device software to surface real-world attack paths before adversaries do. Establish and operate Software Bill of Materials (SBOM) management, CVE triage, and coordinated vulnerability disclosure processes for connected devices throughout their lifecycle. Define and uphold secure-by-design requirements aligned to recognized IoT and embedded security standards (e.g., NIST IR 8259, ETSI EN , OWASP IoT Top 10). Qualifications Bachelor's degree in Computer Science, Electrical Engineering, or a related field. Master's degree is a plus. 5+ years of hands-on experience in software engineering and designing and delivering security-critical systems for internet-connected embedded devices. Proven expertise in embedded systems and product security, with a strong understanding of modern software development processes and methods, security best practices, threat modeling, and risk assessment. Excellent communication skills, both written and verbal, and the ability to communicate complex security concepts to technical and non-technical audiences, including senior leadership. Proven ability to establish credibility and build trust with engineers and operational staff. Expertise in conducting comprehensive threat modeling, risk assessments, and code reviews to identify and mitigate vulnerabilities. Experience utilizing and securing AI/ML models and AI-integrated solutions, a general understanding of AI concepts, AI governance and risk management, and a willingness to learn more. Proficiency in secure SDLC practices and practical experience with CI/CD pipelines and DevOps tools. Experience overseeing vulnerability and threat management at the platform and device levels. Strong understanding of cryptography and key management use cases. In-depth knowledge of networking protocols, peripheral and firmware security, secure boot, embedded Linux security, Android or iOS security, and PKI. Experience working with special purpose security hardware such as Trusted Platform Modules (TPMs) and Hardware Security Modules (HSMs). Proficiency in C and C++ for embedded software development and one or more modern programming languages like Golang, Python, Node, and Java. Hands-on experience with hardware-level security testing techniques, including JTAG/SWD, UART, SPI/I2C debug interfaces, firmware extraction, fault injection, and side-channel analysis. Working knowledge of reverse engineering and analysis tooling such as Ghidra, IDA Pro, Binary Ninja, binwalk, QEMU, and common debuggers across ARM, MIPS, and RISC-V architectures. At Optimum, every action and interaction we take part in, is driven by our three Guiding Principles: Do What's Right, Drive One Optimum, and Make It Happen. These aren't just words, they help us build trust, create real community, and embrace new ways of thinking. Our employees are empowered to do the right thing for our customers and co-workers and to recognize and reward these behaviors when we see them. It's all part of the bigger picture of "Be The Difference" where each employee knows they have the power to enact real change, share new ideas, and understand that learning never stop. If you have the drive to succeed and are ready to embark on a thrilling career, seize this opportunity today, and join our winning team. Together, we'll shape the future of connectivity. All job descriptions and required skills, qualifications and responsibilities for a particular position are subject to modification by the Company from time to time, in the Company's discretion based on business necessity. We are an Equal Opportunity Employer committed to recruiting, hiring and promoting qualified people of all backgrounds regardless of gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other basis protected by federal, state, or local law. The Company collects personal information about its applicants for employment that may include personal identifiers, professional or employment related information, photos, education information and/or protected classifications under federal and state law. This information is collected for employment purposes, including identification, work authorization, FCRA-compliant background screening, human resource administration and compliance with federal, state and local law. Applicants for employment with The Company will never be asked to provide money (even if reimbursable) as part of the job application or hiring process. Please review our Fraud FAQ for further details. We appreciate your interest in this opportunity. Applicants must be authorized to work for ANY employer in the U.S. Please note that at this time, we do not provide visa sponsorship for employment.
Are you looking to Optimize your life? Start your exciting path to a rewarding career today! We are Optimum, a leader in the fast-paced world of connectivity, and we're seeking driven and enthusiastic professionals to join our team, empower lives, fuel businesses, and drive innovation. Connectivity is now longer a luxury, but a necessity. A career at Optimum means you'll be enabling progress and enhancing lives by providing reliable, high-speed connectivity solutions that keep the world connected. Our successes, now and in the future, are powered by our amazing product, a commitment to our people and culture, and the connections we make in our communities. If you are resourceful, collaborative, and passionate about delivering consistent excellence, Optimum is for you! Job Summary Optimum is a leading provider of Mobile, Broadband (DOCSIS, Fiber) and Video services in the United States for Business and Residential Customers. We are looking for a passionate and engaged individual who is willing to take on the challenge of scaling product security at a Fortune 500 company and building the cyber security foundation that will allow our development teams to Go Fast! The Product Security organization helps Optimum move faster, securely. We're a team of engineers who work to enable other teams to build products as quickly as possible while continuing to protect our customers. We support developers in shipping secure code by building security tools and services, providing security training and expertise, and advocating for best practices in authentication, authorization, and safe data handling across the company. As a Product Security Engineer focusing on embedded systems security for video, broadband, and Wi-Fi products, you'll be a trusted partner, collaborating closely with engineering and product teams to ensure security is a cornerstone of every product. You will partner with leadership to shape product strategy, advocate for strong security controls, and influence future product iterations, and serve as an industry expert in device security engineering practices and standards. By leveraging your deep industry knowledge, you'll lead the charge in implementing secure architecture and design principles, ensuring early detection and prevention of vulnerabilities. Your expertise in security assessments and software engineering will help identify and mitigate potential threats, while your mentorship and training efforts will foster a security-first culture. Responsibilities Collaborate with engineering and product teams to integrate security and secure-by-default guardrails into the product lifecycle, ensuring that security is a core consideration in all design and development decisions. Conduct Threat Modeling and Risk Assessments from the early stages of the product development lifecycle to identify, assess, and prioritize security risks, enabling proactive mitigation strategies. Perform rigorous security testing and reviews to uncover and address security weaknesses. Lead initiatives automating security processes from the developer workstation to cloud, SaaS, and datacenter environments. Foster a security-first culture by educating and empowering engineering and product teams through training, awareness campaigns, and mentorship, cultivating a strong security mindset. Stay updated on the latest security threats, vulnerabilities, and technology trends, and proactively implement improvements. Contribute to incident response efforts, investigate root causes, and implement corrective actions to minimize impact and prevent future occurrences. Conduct penetration testing, reverse engineering, and vulnerability research against firmware, hardware interfaces, and device software to surface real-world attack paths before adversaries do. Establish and operate Software Bill of Materials (SBOM) management, CVE triage, and coordinated vulnerability disclosure processes for connected devices throughout their lifecycle. Define and uphold secure-by-design requirements aligned to recognized IoT and embedded security standards (e.g., NIST IR 8259, ETSI EN , OWASP IoT Top 10). Qualifications Bachelor's degree in Computer Science, Electrical Engineering, or a related field. Master's degree is a plus. 5+ years of hands-on experience in software engineering and designing and delivering security-critical systems for internet-connected embedded devices. Proven expertise in embedded systems and product security, with a strong understanding of modern software development processes and methods, security best practices, threat modeling, and risk assessment. Excellent communication skills, both written and verbal, and the ability to communicate complex security concepts to technical and non-technical audiences, including senior leadership. Proven ability to establish credibility and build trust with engineers and operational staff. Expertise in conducting comprehensive threat modeling, risk assessments, and code reviews to identify and mitigate vulnerabilities. Experience utilizing and securing AI/ML models and AI-integrated solutions, a general understanding of AI concepts, AI governance and risk management, and a willingness to learn more. Proficiency in secure SDLC practices and practical experience with CI/CD pipelines and DevOps tools. Experience overseeing vulnerability and threat management at the platform and device levels. Strong understanding of cryptography and key management use cases. In-depth knowledge of networking protocols, peripheral and firmware security, secure boot, embedded Linux security, Android or iOS security, and PKI. Experience working with special purpose security hardware such as Trusted Platform Modules (TPMs) and Hardware Security Modules (HSMs). Proficiency in C and C++ for embedded software development and one or more modern programming languages like Golang, Python, Node, and Java. Hands-on experience with hardware-level security testing techniques, including JTAG/SWD, UART, SPI/I2C debug interfaces, firmware extraction, fault injection, and side-channel analysis. Working knowledge of reverse engineering and analysis tooling such as Ghidra, IDA Pro, Binary Ninja, binwalk, QEMU, and common debuggers across ARM, MIPS, and RISC-V architectures. At Optimum, every action and interaction we take part in, is driven by our three Guiding Principles: Do What's Right, Drive One Optimum, and Make It Happen. These aren't just words, they help us build trust, create real community, and embrace new ways of thinking. Our employees are empowered to do the right thing for our customers and co-workers and to recognize and reward these behaviors when we see them. It's all part of the bigger picture of "Be The Difference" where each employee knows they have the power to enact real change, share new ideas, and understand that learning never stop. If you have the drive to succeed and are ready to embark on a thrilling career, seize this opportunity today, and join our winning team. Together, we'll shape the future of connectivity. All job descriptions and required skills, qualifications and responsibilities for a particular position are subject to modification by the Company from time to time, in the Company's discretion based on business necessity. We are an Equal Opportunity Employer committed to recruiting, hiring and promoting qualified people of all backgrounds regardless of gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other basis protected by federal, state, or local law. The Company collects personal information about its applicants for employment that may include personal identifiers, professional or employment related information, photos, education information and/or protected classifications under federal and state law. This information is collected for employment purposes, including identification, work authorization, FCRA-compliant background screening, human resource administration and compliance with federal, state and local law. Applicants for employment with The Company will never be asked to provide money (even if reimbursable) as part of the job application or hiring process. Please review our Fraud FAQ for further details. We appreciate your interest in this opportunity. Applicants must be authorized to work for ANY employer in the U.S. Please note that at this time, we do not provide visa sponsorship for employment.
09/23/2026
Full time
Are you looking to Optimize your life? Start your exciting path to a rewarding career today! We are Optimum, a leader in the fast-paced world of connectivity, and we're seeking driven and enthusiastic professionals to join our team, empower lives, fuel businesses, and drive innovation. Connectivity is now longer a luxury, but a necessity. A career at Optimum means you'll be enabling progress and enhancing lives by providing reliable, high-speed connectivity solutions that keep the world connected. Our successes, now and in the future, are powered by our amazing product, a commitment to our people and culture, and the connections we make in our communities. If you are resourceful, collaborative, and passionate about delivering consistent excellence, Optimum is for you! Job Summary Optimum is a leading provider of Mobile, Broadband (DOCSIS, Fiber) and Video services in the United States for Business and Residential Customers. We are looking for a passionate and engaged individual who is willing to take on the challenge of scaling product security at a Fortune 500 company and building the cyber security foundation that will allow our development teams to Go Fast! The Product Security organization helps Optimum move faster, securely. We're a team of engineers who work to enable other teams to build products as quickly as possible while continuing to protect our customers. We support developers in shipping secure code by building security tools and services, providing security training and expertise, and advocating for best practices in authentication, authorization, and safe data handling across the company. As a Product Security Engineer focusing on embedded systems security for video, broadband, and Wi-Fi products, you'll be a trusted partner, collaborating closely with engineering and product teams to ensure security is a cornerstone of every product. You will partner with leadership to shape product strategy, advocate for strong security controls, and influence future product iterations, and serve as an industry expert in device security engineering practices and standards. By leveraging your deep industry knowledge, you'll lead the charge in implementing secure architecture and design principles, ensuring early detection and prevention of vulnerabilities. Your expertise in security assessments and software engineering will help identify and mitigate potential threats, while your mentorship and training efforts will foster a security-first culture. Responsibilities Collaborate with engineering and product teams to integrate security and secure-by-default guardrails into the product lifecycle, ensuring that security is a core consideration in all design and development decisions. Conduct Threat Modeling and Risk Assessments from the early stages of the product development lifecycle to identify, assess, and prioritize security risks, enabling proactive mitigation strategies. Perform rigorous security testing and reviews to uncover and address security weaknesses. Lead initiatives automating security processes from the developer workstation to cloud, SaaS, and datacenter environments. Foster a security-first culture by educating and empowering engineering and product teams through training, awareness campaigns, and mentorship, cultivating a strong security mindset. Stay updated on the latest security threats, vulnerabilities, and technology trends, and proactively implement improvements. Contribute to incident response efforts, investigate root causes, and implement corrective actions to minimize impact and prevent future occurrences. Conduct penetration testing, reverse engineering, and vulnerability research against firmware, hardware interfaces, and device software to surface real-world attack paths before adversaries do. Establish and operate Software Bill of Materials (SBOM) management, CVE triage, and coordinated vulnerability disclosure processes for connected devices throughout their lifecycle. Define and uphold secure-by-design requirements aligned to recognized IoT and embedded security standards (e.g., NIST IR 8259, ETSI EN , OWASP IoT Top 10). Qualifications Bachelor's degree in Computer Science, Electrical Engineering, or a related field. Master's degree is a plus. 5+ years of hands-on experience in software engineering and designing and delivering security-critical systems for internet-connected embedded devices. Proven expertise in embedded systems and product security, with a strong understanding of modern software development processes and methods, security best practices, threat modeling, and risk assessment. Excellent communication skills, both written and verbal, and the ability to communicate complex security concepts to technical and non-technical audiences, including senior leadership. Proven ability to establish credibility and build trust with engineers and operational staff. Expertise in conducting comprehensive threat modeling, risk assessments, and code reviews to identify and mitigate vulnerabilities. Experience utilizing and securing AI/ML models and AI-integrated solutions, a general understanding of AI concepts, AI governance and risk management, and a willingness to learn more. Proficiency in secure SDLC practices and practical experience with CI/CD pipelines and DevOps tools. Experience overseeing vulnerability and threat management at the platform and device levels. Strong understanding of cryptography and key management use cases. In-depth knowledge of networking protocols, peripheral and firmware security, secure boot, embedded Linux security, Android or iOS security, and PKI. Experience working with special purpose security hardware such as Trusted Platform Modules (TPMs) and Hardware Security Modules (HSMs). Proficiency in C and C++ for embedded software development and one or more modern programming languages like Golang, Python, Node, and Java. Hands-on experience with hardware-level security testing techniques, including JTAG/SWD, UART, SPI/I2C debug interfaces, firmware extraction, fault injection, and side-channel analysis. Working knowledge of reverse engineering and analysis tooling such as Ghidra, IDA Pro, Binary Ninja, binwalk, QEMU, and common debuggers across ARM, MIPS, and RISC-V architectures. At Optimum, every action and interaction we take part in, is driven by our three Guiding Principles: Do What's Right, Drive One Optimum, and Make It Happen. These aren't just words, they help us build trust, create real community, and embrace new ways of thinking. Our employees are empowered to do the right thing for our customers and co-workers and to recognize and reward these behaviors when we see them. It's all part of the bigger picture of "Be The Difference" where each employee knows they have the power to enact real change, share new ideas, and understand that learning never stop. If you have the drive to succeed and are ready to embark on a thrilling career, seize this opportunity today, and join our winning team. Together, we'll shape the future of connectivity. All job descriptions and required skills, qualifications and responsibilities for a particular position are subject to modification by the Company from time to time, in the Company's discretion based on business necessity. We are an Equal Opportunity Employer committed to recruiting, hiring and promoting qualified people of all backgrounds regardless of gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other basis protected by federal, state, or local law. The Company collects personal information about its applicants for employment that may include personal identifiers, professional or employment related information, photos, education information and/or protected classifications under federal and state law. This information is collected for employment purposes, including identification, work authorization, FCRA-compliant background screening, human resource administration and compliance with federal, state and local law. Applicants for employment with The Company will never be asked to provide money (even if reimbursable) as part of the job application or hiring process. Please review our Fraud FAQ for further details. We appreciate your interest in this opportunity. Applicants must be authorized to work for ANY employer in the U.S. Please note that at this time, we do not provide visa sponsorship for employment.
We anticipate the application window for this opening will close on - 29 Sep 2026 Careers that change lives start here. Medtronic is a global leader in healthcare technology with a Mission to alleviate pain, restore health, and extend life. Our 95,000 employees work across more than 150 countries to put patients first - developing innovative medical technologies that improve the lives of 72+ million patients each year. Your unique talents will help shape the future of healthcare while building a career grounded in purpose, growth, and impact. A Day in the Life The Sr DevSecOps Engineer defines, implements, and governs secure embedded software platform practices for regulated medical device programs. This role provides technical leadership across CI/CD automation, embedded Linux security, software supply chain controls, vulnerability management, cybersecurity risk analysis, and release evidence generation to support safe, secure, and compliant medical device development. Overview The Sr DevSecOps Engineer will join the Embedded OS Platforms and DevOps Team to implement secure embedded platform DevOps workflows for new and existing medical device development programs. The Embedded OS Platforms and DevOps Team delivers the software infrastructure and foundational system components that enable operation of product application software. This role is responsible for advancing reusable DevSecOps frameworks, secure CI/D pipelines and software supply chain practices, embedded Linux security capabilities, and cybersecurity lifecycle processes across multiple products. The successful candidate will serve as a technical lead who partners with OS and application software developers, systems, product security, quality, regulatory, and program teams to deliver secure, maintainable, and compliant platform solutions. Key Responsibilities Define and own the DevSecOps architecture and roadmap for embedded capital equipment platforms, including secure CI/CD pipelines, build infrastructure, security automation, and release evidence. Establish secure software supply chain practices, including SBOM generation, SOUP/OTS component tracking, license awareness, vulnerability monitoring, end-of-support tracking, and remediation workflows. Develop reusable CI/CD templates and pipeline controls for static analysis, software composition analysis, unit test automation, artifact signing, provenance tracking, cybersecurity evidence capture, and release readiness. Lead threat modeling and cybersecurity risk analysis for embedded platform components, including asset identification, attack surface analysis, exploitability assessment, security controls, and traceability to risk mitigations. Drive CVE intake, enrichment, asset mapping, triage, risk scoring, remediation planning, validation, and reporting in partnership with Product Security, SWQA, Systems, and program teams. Design and implement secure boot, firmware signing, cryptographic configuration, key/certificate lifecycle support, authenticated update mechanisms, and secure device communication patterns. Define runtime security monitoring requirements and support post-market cybersecurity monitoring and vulnerability response workflows. Review reported anomalies, assess cybersecurity impact, and support incident-response activities as needed. Support regulatory submissions and audits by ensuring cybersecurity, software lifecycle, and DevSecOps evidence is complete, traceable, reproducible, and aligned with internal quality system expectations. Collaborate with external vendors and internal partners to evaluate security tooling, embedded Linux support models, vulnerability intelligence, penetration testing outputs, and long-term maintenance approaches. Provide technical leadership and mentoring to software engineers, DevOps engineers, and platform teams on secure coding, build automation, vulnerability handling, and regulated software development practices. Technologies & Tools AMD Zynq and Zynq UltraScale+ SoCs, NVIDIA ORIN, SafeRTOS, FreeRTOS Yocto-based embedded Linux package development Embedded hypervisors, Linux device drivers, BSPs, and boot flows Custom build systems and CI/CD pipelines Docker, Snyk, SonarQube, and software composition analysis tools Static analysis, software composition analysis, artifact signing, and vulnerability management tools Python, Bash, and Go Atlassian tools including Bitbucket, Jira, Bamboo, and Confluence GitHub and GitLab Networking security, secure boot, firmware signing, and secure update technologies Preferred Qualifications Hands-on experience with cloud infrastructure (AWS or similar) and modern DevOps practices. Proficiency with infrastructure-as-code and secure CI/CD tooling. Familiarity with monitoring, observability, and incident management. Experience with security technologies and practices including certificates, secrets management, and compliance support. Experience developing DevSecOps workflows in regulated safety-critical environments such as aerospace, medical, automotive, or industrial controls. Understanding of FDA cybersecurity expectations, IEC 62304, ISO 14971, ISO 13485, SOUP/OTS software management, SBOM practices, and software lifecycle evidence generation. Experience implementing security automation in CI/CD pipelines, including SAST, SCA, container scanning, artifact signing, build reproducibility, traceability, and vulnerability reporting. Experience with threat modeling, vulnerability assessment, cybersecurity risk analysis, and secure-by-design architecture reviews. Ability to collaborate across hardware, software, systems, product security, quality, regulatory, program management, and product management stakeholders. Strong debugging, problem-solving, and root-cause analysis skills. Strong technical communication skills with the ability to translate cybersecurity and DevSecOps risks into actionable engineering and leadership decisions. TECHNICAL SPECIALIST CAREER STREAM: An individual contributor with responsibility in technical functions to advance existing technology or introduce new technology and therapies. Formulates, delivers, and manages projects assigned, and works with stakeholders to achieve desired results. May act as a mentor to colleagues or direct the work of other professionals. The majority of time is spent delivering R&D, systems, or initiatives related to new technologies or therapies from design to implementation while adhering to policies and using specialized knowledge and skills. For Baccalaureate degrees earned outside of the United States, a degree that satisfies the requirements of 8 C.F.R. 214.2(h)(4)(iii)(A) is required. Physical Job Requirements The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position. The physical demands described within the Responsibilities section of this job description are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. For Office Roles: While performing the duties of this job, the employee is regularly required to be independently mobile. The employee is also required to interact with a computer, and communicate with peers and co-workers. Contact your manager or local HR to understand the Work Conditions and Physical requirements that may be specific to each role. U.S. Work Authorization & Sponsorship At Medtronic, we are committed to fostering an environment where employees can thrive and make a meaningful impact. In alignment with our enterprise-wide workforce planning approach, U.S. work authorization sponsorship (H-1B, TN, J, etc.) is offered exclusively for Principal-level roles and above, where specialized expertise aligns with long-term business needs. Roles below the Principal level require candidates to possess unrestricted U.S. work authorization at the time of hire and for the duration of employment. Recruitment Fraud Alert We are aware of phishing scams targeting job seekers. Please keep the following in mind: Apply only through official Medtronic channels. All legitimate Medtronic recruiting communications come from approved Medtronic platforms and email addresses. Medtronic will never ask for payment or sensitive personal information (such as bank account or Social Security details) during early stages of the hiring process. Any such requests are not legitimate. If you receive a suspicious message claiming to be from Medtronic, do not respond, click links, or open attachments. If you have any questions, concerns regarding the authenticity of a communication alleged to have been made by or on behalf of Medtronic, please contact us immediately at . Benefits & Compensation Medtronic offers a competitive Salary and flexible Benefits Package A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage. Salary ranges for U.S (excl . click apply for full job details
09/23/2026
Full time
We anticipate the application window for this opening will close on - 29 Sep 2026 Careers that change lives start here. Medtronic is a global leader in healthcare technology with a Mission to alleviate pain, restore health, and extend life. Our 95,000 employees work across more than 150 countries to put patients first - developing innovative medical technologies that improve the lives of 72+ million patients each year. Your unique talents will help shape the future of healthcare while building a career grounded in purpose, growth, and impact. A Day in the Life The Sr DevSecOps Engineer defines, implements, and governs secure embedded software platform practices for regulated medical device programs. This role provides technical leadership across CI/CD automation, embedded Linux security, software supply chain controls, vulnerability management, cybersecurity risk analysis, and release evidence generation to support safe, secure, and compliant medical device development. Overview The Sr DevSecOps Engineer will join the Embedded OS Platforms and DevOps Team to implement secure embedded platform DevOps workflows for new and existing medical device development programs. The Embedded OS Platforms and DevOps Team delivers the software infrastructure and foundational system components that enable operation of product application software. This role is responsible for advancing reusable DevSecOps frameworks, secure CI/D pipelines and software supply chain practices, embedded Linux security capabilities, and cybersecurity lifecycle processes across multiple products. The successful candidate will serve as a technical lead who partners with OS and application software developers, systems, product security, quality, regulatory, and program teams to deliver secure, maintainable, and compliant platform solutions. Key Responsibilities Define and own the DevSecOps architecture and roadmap for embedded capital equipment platforms, including secure CI/CD pipelines, build infrastructure, security automation, and release evidence. Establish secure software supply chain practices, including SBOM generation, SOUP/OTS component tracking, license awareness, vulnerability monitoring, end-of-support tracking, and remediation workflows. Develop reusable CI/CD templates and pipeline controls for static analysis, software composition analysis, unit test automation, artifact signing, provenance tracking, cybersecurity evidence capture, and release readiness. Lead threat modeling and cybersecurity risk analysis for embedded platform components, including asset identification, attack surface analysis, exploitability assessment, security controls, and traceability to risk mitigations. Drive CVE intake, enrichment, asset mapping, triage, risk scoring, remediation planning, validation, and reporting in partnership with Product Security, SWQA, Systems, and program teams. Design and implement secure boot, firmware signing, cryptographic configuration, key/certificate lifecycle support, authenticated update mechanisms, and secure device communication patterns. Define runtime security monitoring requirements and support post-market cybersecurity monitoring and vulnerability response workflows. Review reported anomalies, assess cybersecurity impact, and support incident-response activities as needed. Support regulatory submissions and audits by ensuring cybersecurity, software lifecycle, and DevSecOps evidence is complete, traceable, reproducible, and aligned with internal quality system expectations. Collaborate with external vendors and internal partners to evaluate security tooling, embedded Linux support models, vulnerability intelligence, penetration testing outputs, and long-term maintenance approaches. Provide technical leadership and mentoring to software engineers, DevOps engineers, and platform teams on secure coding, build automation, vulnerability handling, and regulated software development practices. Technologies & Tools AMD Zynq and Zynq UltraScale+ SoCs, NVIDIA ORIN, SafeRTOS, FreeRTOS Yocto-based embedded Linux package development Embedded hypervisors, Linux device drivers, BSPs, and boot flows Custom build systems and CI/CD pipelines Docker, Snyk, SonarQube, and software composition analysis tools Static analysis, software composition analysis, artifact signing, and vulnerability management tools Python, Bash, and Go Atlassian tools including Bitbucket, Jira, Bamboo, and Confluence GitHub and GitLab Networking security, secure boot, firmware signing, and secure update technologies Preferred Qualifications Hands-on experience with cloud infrastructure (AWS or similar) and modern DevOps practices. Proficiency with infrastructure-as-code and secure CI/CD tooling. Familiarity with monitoring, observability, and incident management. Experience with security technologies and practices including certificates, secrets management, and compliance support. Experience developing DevSecOps workflows in regulated safety-critical environments such as aerospace, medical, automotive, or industrial controls. Understanding of FDA cybersecurity expectations, IEC 62304, ISO 14971, ISO 13485, SOUP/OTS software management, SBOM practices, and software lifecycle evidence generation. Experience implementing security automation in CI/CD pipelines, including SAST, SCA, container scanning, artifact signing, build reproducibility, traceability, and vulnerability reporting. Experience with threat modeling, vulnerability assessment, cybersecurity risk analysis, and secure-by-design architecture reviews. Ability to collaborate across hardware, software, systems, product security, quality, regulatory, program management, and product management stakeholders. Strong debugging, problem-solving, and root-cause analysis skills. Strong technical communication skills with the ability to translate cybersecurity and DevSecOps risks into actionable engineering and leadership decisions. TECHNICAL SPECIALIST CAREER STREAM: An individual contributor with responsibility in technical functions to advance existing technology or introduce new technology and therapies. Formulates, delivers, and manages projects assigned, and works with stakeholders to achieve desired results. May act as a mentor to colleagues or direct the work of other professionals. The majority of time is spent delivering R&D, systems, or initiatives related to new technologies or therapies from design to implementation while adhering to policies and using specialized knowledge and skills. For Baccalaureate degrees earned outside of the United States, a degree that satisfies the requirements of 8 C.F.R. 214.2(h)(4)(iii)(A) is required. Physical Job Requirements The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position. The physical demands described within the Responsibilities section of this job description are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. For Office Roles: While performing the duties of this job, the employee is regularly required to be independently mobile. The employee is also required to interact with a computer, and communicate with peers and co-workers. Contact your manager or local HR to understand the Work Conditions and Physical requirements that may be specific to each role. U.S. Work Authorization & Sponsorship At Medtronic, we are committed to fostering an environment where employees can thrive and make a meaningful impact. In alignment with our enterprise-wide workforce planning approach, U.S. work authorization sponsorship (H-1B, TN, J, etc.) is offered exclusively for Principal-level roles and above, where specialized expertise aligns with long-term business needs. Roles below the Principal level require candidates to possess unrestricted U.S. work authorization at the time of hire and for the duration of employment. Recruitment Fraud Alert We are aware of phishing scams targeting job seekers. Please keep the following in mind: Apply only through official Medtronic channels. All legitimate Medtronic recruiting communications come from approved Medtronic platforms and email addresses. Medtronic will never ask for payment or sensitive personal information (such as bank account or Social Security details) during early stages of the hiring process. Any such requests are not legitimate. If you receive a suspicious message claiming to be from Medtronic, do not respond, click links, or open attachments. If you have any questions, concerns regarding the authenticity of a communication alleged to have been made by or on behalf of Medtronic, please contact us immediately at . Benefits & Compensation Medtronic offers a competitive Salary and flexible Benefits Package A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage. Salary ranges for U.S (excl . click apply for full job details
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. Northrop Grumman Defense Systems is seeking a System States and Controls Capability Lead (Staff Systems Engineer - Level 5) to join the team located in Roy UT, Bellevue NE, Huntsville, AL or Manhattan Beach, CA in support of the Sentinel program. Northrop Grumman supports the Air Force's sustainment, development, production and deployment of hardware and system modifications for Intercontinental Ballistic Missile (ICBM,) Ground and Airborne Launch Control Systems, Launch Facilities, and associated infrastructure. What you will get to do: The Sentinel program has an exciting opportunity for a System States & Controls Capability Lead Staff Systems Engineer (Level 5) to join the Command Systems team leading activities including requirements definition / allocation, functional decomposition, interface definition, verification & validation, and requirements traceability across the ground segment of the Sentinel Weapon System. Specific duties to include, but are not limited to the following: Lead a small team of systems engineers to develop systems engineering artifacts across wing-wide maintenance, operations, initialize, fault detection, and shutdown capabilities Work with both technical teams and stakeholders to develop and mature off-nominal system use cases and states deriving full-scope functionality for the wing and preliminary product selection and development Help develop and incorporate the appropriate requirements for the system and ensure that they are properly represented in the model. Develop systems architecture using Cameo Enterprise Architecture (behavioral, structural, analytical). Contribute to system requirements development, management, and analysis. Develop unifying model techniques, procedures, and processes (for model development, tool integration, and team integration). Basic Qualifications: Bachelor's degree in STEM (Science, Technology, Engineering, and Mathematics) with 12 years of experience; or master's degree with 10 years of experience; or PhD with 8 years of experience Must be a US Citizen with an active DoD Secret Clearance, at time of application, current and within scope, with an investigation date within the last 6 years. Must have the ability to obtain Special Access Program (SAP) approval within a reasonable period, as determined by the company to meet its business needs. 4 years of experience with requirements management/analysis/allocations 3 years of experience with Model-Based Engineering / Model-Based Systems Engineering (MBE/MBSE) practices, languages and/or tools such as Cameo, Rhapsody or MagicDraw 5 years of experience with one or more of the following: Command & Control (C2), physical security, cybersecurity, Nuclear Command, Control, and Communications (NC3) systems/processes, communications systems, facility design, military aerospace development (e.g. Sentinel, Minute Man III, B-2, B-21 delivery systems) Preferred Qualifications: Active DoD Top Secret Clearance Demonstrated understanding of the Systems Engineering Vee Model 3+ years of experience in model-based systems engineering; thread-based system decomposition, requirements engineering, system modeling in SysML Experience in documenting Interface Control Documents, Interface Requirement Specifications, and Interface Description Documents Understanding of Object-Oriented Systems Engineering Methodology and systems thinking Excellent collaboration skills and experience working across product, design, and systems engineering teams with various stakeholder communities Proven technical leadership in designing, modeling, and verifying complex, hierarchical State Machines for distributed, real-time command and control architectures. This includes defining clear, deterministic state transitions for critical mission sequences (e.g., Power-On, Daily Monitoring, Targeting/Planning, Countdown, Launch, Abort, and Shutdown) Extensive experience developing automated FDIR frameworks and Built-In Test (BIT) strategies (Periodic, Initiated, and Continuous) for high-consequence systems. This includes leveraging fault-tree analysis to design algorithms that isolate anomalous behavior down to the specific LRU or software. Demonstrated understanding of the systematic challenges of distributed system synchronization - specifically how a network of geographically separated ground nodes initially coordinates clocks, shares state telemetry, loads cryptographic keys, and handles simultaneous, secure shutdowns Experience with ICBM weapon system engineering and integration Experience with complex system development on large programs As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including: - Medical, Dental & Vision coverage - 401k - Educational Assistance - Life Insurance - Employee Assistance Programs & Work/Life Solutions - Paid Time Off - Health & Wellness Resources - Employee Discounts This position's standard work schedule is 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off. Primary Level Salary Range: $152,900.00 - $229,300.00 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business. The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
09/23/2026
Full time
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. Northrop Grumman Defense Systems is seeking a System States and Controls Capability Lead (Staff Systems Engineer - Level 5) to join the team located in Roy UT, Bellevue NE, Huntsville, AL or Manhattan Beach, CA in support of the Sentinel program. Northrop Grumman supports the Air Force's sustainment, development, production and deployment of hardware and system modifications for Intercontinental Ballistic Missile (ICBM,) Ground and Airborne Launch Control Systems, Launch Facilities, and associated infrastructure. What you will get to do: The Sentinel program has an exciting opportunity for a System States & Controls Capability Lead Staff Systems Engineer (Level 5) to join the Command Systems team leading activities including requirements definition / allocation, functional decomposition, interface definition, verification & validation, and requirements traceability across the ground segment of the Sentinel Weapon System. Specific duties to include, but are not limited to the following: Lead a small team of systems engineers to develop systems engineering artifacts across wing-wide maintenance, operations, initialize, fault detection, and shutdown capabilities Work with both technical teams and stakeholders to develop and mature off-nominal system use cases and states deriving full-scope functionality for the wing and preliminary product selection and development Help develop and incorporate the appropriate requirements for the system and ensure that they are properly represented in the model. Develop systems architecture using Cameo Enterprise Architecture (behavioral, structural, analytical). Contribute to system requirements development, management, and analysis. Develop unifying model techniques, procedures, and processes (for model development, tool integration, and team integration). Basic Qualifications: Bachelor's degree in STEM (Science, Technology, Engineering, and Mathematics) with 12 years of experience; or master's degree with 10 years of experience; or PhD with 8 years of experience Must be a US Citizen with an active DoD Secret Clearance, at time of application, current and within scope, with an investigation date within the last 6 years. Must have the ability to obtain Special Access Program (SAP) approval within a reasonable period, as determined by the company to meet its business needs. 4 years of experience with requirements management/analysis/allocations 3 years of experience with Model-Based Engineering / Model-Based Systems Engineering (MBE/MBSE) practices, languages and/or tools such as Cameo, Rhapsody or MagicDraw 5 years of experience with one or more of the following: Command & Control (C2), physical security, cybersecurity, Nuclear Command, Control, and Communications (NC3) systems/processes, communications systems, facility design, military aerospace development (e.g. Sentinel, Minute Man III, B-2, B-21 delivery systems) Preferred Qualifications: Active DoD Top Secret Clearance Demonstrated understanding of the Systems Engineering Vee Model 3+ years of experience in model-based systems engineering; thread-based system decomposition, requirements engineering, system modeling in SysML Experience in documenting Interface Control Documents, Interface Requirement Specifications, and Interface Description Documents Understanding of Object-Oriented Systems Engineering Methodology and systems thinking Excellent collaboration skills and experience working across product, design, and systems engineering teams with various stakeholder communities Proven technical leadership in designing, modeling, and verifying complex, hierarchical State Machines for distributed, real-time command and control architectures. This includes defining clear, deterministic state transitions for critical mission sequences (e.g., Power-On, Daily Monitoring, Targeting/Planning, Countdown, Launch, Abort, and Shutdown) Extensive experience developing automated FDIR frameworks and Built-In Test (BIT) strategies (Periodic, Initiated, and Continuous) for high-consequence systems. This includes leveraging fault-tree analysis to design algorithms that isolate anomalous behavior down to the specific LRU or software. Demonstrated understanding of the systematic challenges of distributed system synchronization - specifically how a network of geographically separated ground nodes initially coordinates clocks, shares state telemetry, loads cryptographic keys, and handles simultaneous, secure shutdowns Experience with ICBM weapon system engineering and integration Experience with complex system development on large programs As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including: - Medical, Dental & Vision coverage - 401k - Educational Assistance - Life Insurance - Employee Assistance Programs & Work/Life Solutions - Paid Time Off - Health & Wellness Resources - Employee Discounts This position's standard work schedule is 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off. Primary Level Salary Range: $152,900.00 - $229,300.00 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business. The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
P-1124 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 9+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $228,400-$303,550 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
09/22/2026
Full time
P-1124 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 9+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $228,400-$303,550 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
P-1124 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 9+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $217,200-$288,400 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
09/22/2026
Full time
P-1124 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 9+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $217,200-$288,400 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
P-1125 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 10+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $278,200-$339,250 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
09/22/2026
Full time
P-1125 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 10+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $278,200-$339,250 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
P-1137 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Founded in 2013 by the original creators of Apache Spark, Databricks has grown from a tiny corner office in Berkeley, CA to a global organization with over 1500 employees. Thousands of organizations, from small to Fortune 100, trust Databricks with their mission-critical workloads, making us one of the fastest-growing SaaS companies in the world. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 5+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 5+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $164,200-$225,700 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
09/22/2026
Full time
P-1137 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Founded in 2013 by the original creators of Apache Spark, Databricks has grown from a tiny corner office in Berkeley, CA to a global organization with over 1500 employees. Thousands of organizations, from small to Fortune 100, trust Databricks with their mission-critical workloads, making us one of the fastest-growing SaaS companies in the world. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 5+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 5+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $164,200-$225,700 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
P-1126 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 9+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $232,000-$313,000 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
09/22/2026
Full time
P-1126 Summary At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to cancer drug development. We do this by building and running the world's best data and AI infrastructure platform, so our customers can focus on the high-value challenges that are central to their missions. Our engineering teams build highly technical products that fulfill real, important needs in the world. We constantly push the boundaries of data and AI technology, while simultaneously operating with the resilience, security, and scale that is critical to making customers successful on our platform. Customers trust Databricks with their most valuable data and Trust & Safety has the mission to build the most trusted data analytics and ML platform in the world. Security Engineering is an integral part of Trust & Safety and has a critical role to play in keeping customer data from bad actors. We are looking for senior leaders such as yourselves to create the vision and define the strategy for this space. The impact you will have: Make Databricks safer for our customers by identifying and plugging key gaps in our infrastructure and services Attract top talent from across the industry. Represent the security engineering discipline throughout the organization, having a powerful voice to make us more data-driven Represent Databricks at academic and industry conferences & events What we look for: 9+ years of experience in Data Security or related areas and expertise in two or more of the following Cryptography, Kubernetes Security, Web Security, Governance, Privacy, Trust, Safety, Authentication, Identity Management, Access Control, Key Management, Inter-Service Authentication, Secure Application Frameworks, Detection & Response. Experience building systems at large scale internet companies is a huge plus. 15+ years of experience building large scale distributed systems with high availability Leadership skills and experience to lead across functional and organizational lines Strong communication skills to explain and evangelize Data Security to senior leaders across the company Bias to action and passion for delivering high-quality solutions MS or Ph.D. in Computer Science or related fields Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Local Pay Range $232,000-$313,000 USD About Databricks Databricks is the Data and AI company. More than 20,000 organizations worldwide - including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 - rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn, X, YouTube, and Instagram. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. Northrop Grumman Defense Systems is seeking a Facility & Platform Integration Capability Lead (Staff Systems Engineer - Level 5) to join the team located in Roy UT, Bellevue NE, Huntsville, AL or Manhattan Beach, CA in support of the Sentinel program. Northrop Grumman supports the Air Force's sustainment, development, production and deployment of hardware and system modifications for Intercontinental Ballistic Missile (ICBM,) Ground and Airborne Launch Control Systems, Launch Facilities, and associated infrastructure. What you will get to do: The Sentinel program has an exciting opportunity for a Facility & Platform Integration Capability Lead Staff Systems Engineer (Level 5) to join the Command Systems team leading activities including requirements definition / allocation, functional decomposition, interface definition, verification & validation, and requirements traceability across the ground segment of the Sentinel Weapon System. Specific duties to include, but are not limited to the following: Lead a small team of systems engineers to develop systems engineering artifacts across the Electromagnetic Environmental Effects (E3) and Ground Systems threads Work with both technical teams and stakeholders to develop and mature allocation of shielding / filtering / grounding / TEMPEST requirements and associated facility architecture considerations, including grounding schematics and capital electrical design integration across Command and Launch Systems Help develop and incorporate the appropriate requirements for the system and ensure that they are properly represented in the model. Develop systems architecture using Cameo Enterprise Architecture (behavioral, structural, analytical). Contribute to system requirements development, management, and analysis. Develop unifying model techniques, procedures, and processes (for model development, tool integration, and team integration). Basic Qualifications: Bachelor's degree in STEM (Science, Technology, Engineering, and Mathematics) with 12 years of experience; or master's degree with 10 years of experience; or PhD with 8 years of experience Must be a US Citizen with an active DoD Secret Clearance, at time of application, current and within scope, with an investigation date within the last 6 years. Must have the ability to obtain Special Access Program (SAP) approval within a reasonable period, as determined by the company to meet its business needs. 4 years of experience with requirements management/analysis/allocations 3 years of experience with Model-Based Engineering / Model-Based Systems Engineering (MBE/MBSE) practices, languages and/or tools such as Cameo, Rhapsody or MagicDraw 5 years of experience with one or more of the following: Command & Control (C2), physical security, cybersecurity, Nuclear Command, Control, and Communications (NC3) systems/processes, communications systems, facility design, military aerospace development (e.g. Sentinel, Minute Man III, B-2, B-21 delivery systems) Preferred Qualifications: Active DoD Top Secret Clearance Demonstrated understanding of the Systems Engineering Vee Model 3+ years of experience in model-based systems engineering; thread-based system decomposition, requirements engineering, system modeling in SysML Experience in documenting Interface Control Documents, Interface Requirement Specifications, and Interface Description Documents Understanding of Object-Oriented Systems Engineering Methodology and systems thinking Excellent collaboration skills and experience working across product, design, and systems engineering teams with various stakeholder communities Proven technical leadership in designing, modeling, and verifying complex, hierarchical State Machines for distributed, real-time command and control architectures. This includes defining clear, deterministic state transitions for critical mission sequences (e.g., Power-On, Daily Monitoring, Targeting/Planning, Countdown, Launch, Abort, and Shutdown) Extensive experience developing automated FDIR frameworks and Built-In Test (BIT) strategies (Periodic, Initiated, and Continuous) for high-consequence systems. This includes leveraging fault-tree analysis to design algorithms that isolate anomalous behavior down to the specific LRU or software. Demonstrated understanding of the systematic challenges of distributed system synchronization - specifically how a network of geographically separated ground nodes initially coordinates clocks, shares state telemetry, loads cryptographic keys, and handles simultaneous, secure shutdowns Experience with ICBM weapon system engineering and integration Experience with complex system development on large programs As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including: - Medical, Dental & Vision coverage - 401k - Educational Assistance - Life Insurance - Employee Assistance Programs & Work/Life Solutions - Paid Time Off - Health & Wellness Resources - Employee Discounts This position's standard work schedule is 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off. Primary Level Salary Range: $152,900.00 - $229,300.00 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business. The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
09/18/2026
Full time
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. Northrop Grumman Defense Systems is seeking a Facility & Platform Integration Capability Lead (Staff Systems Engineer - Level 5) to join the team located in Roy UT, Bellevue NE, Huntsville, AL or Manhattan Beach, CA in support of the Sentinel program. Northrop Grumman supports the Air Force's sustainment, development, production and deployment of hardware and system modifications for Intercontinental Ballistic Missile (ICBM,) Ground and Airborne Launch Control Systems, Launch Facilities, and associated infrastructure. What you will get to do: The Sentinel program has an exciting opportunity for a Facility & Platform Integration Capability Lead Staff Systems Engineer (Level 5) to join the Command Systems team leading activities including requirements definition / allocation, functional decomposition, interface definition, verification & validation, and requirements traceability across the ground segment of the Sentinel Weapon System. Specific duties to include, but are not limited to the following: Lead a small team of systems engineers to develop systems engineering artifacts across the Electromagnetic Environmental Effects (E3) and Ground Systems threads Work with both technical teams and stakeholders to develop and mature allocation of shielding / filtering / grounding / TEMPEST requirements and associated facility architecture considerations, including grounding schematics and capital electrical design integration across Command and Launch Systems Help develop and incorporate the appropriate requirements for the system and ensure that they are properly represented in the model. Develop systems architecture using Cameo Enterprise Architecture (behavioral, structural, analytical). Contribute to system requirements development, management, and analysis. Develop unifying model techniques, procedures, and processes (for model development, tool integration, and team integration). Basic Qualifications: Bachelor's degree in STEM (Science, Technology, Engineering, and Mathematics) with 12 years of experience; or master's degree with 10 years of experience; or PhD with 8 years of experience Must be a US Citizen with an active DoD Secret Clearance, at time of application, current and within scope, with an investigation date within the last 6 years. Must have the ability to obtain Special Access Program (SAP) approval within a reasonable period, as determined by the company to meet its business needs. 4 years of experience with requirements management/analysis/allocations 3 years of experience with Model-Based Engineering / Model-Based Systems Engineering (MBE/MBSE) practices, languages and/or tools such as Cameo, Rhapsody or MagicDraw 5 years of experience with one or more of the following: Command & Control (C2), physical security, cybersecurity, Nuclear Command, Control, and Communications (NC3) systems/processes, communications systems, facility design, military aerospace development (e.g. Sentinel, Minute Man III, B-2, B-21 delivery systems) Preferred Qualifications: Active DoD Top Secret Clearance Demonstrated understanding of the Systems Engineering Vee Model 3+ years of experience in model-based systems engineering; thread-based system decomposition, requirements engineering, system modeling in SysML Experience in documenting Interface Control Documents, Interface Requirement Specifications, and Interface Description Documents Understanding of Object-Oriented Systems Engineering Methodology and systems thinking Excellent collaboration skills and experience working across product, design, and systems engineering teams with various stakeholder communities Proven technical leadership in designing, modeling, and verifying complex, hierarchical State Machines for distributed, real-time command and control architectures. This includes defining clear, deterministic state transitions for critical mission sequences (e.g., Power-On, Daily Monitoring, Targeting/Planning, Countdown, Launch, Abort, and Shutdown) Extensive experience developing automated FDIR frameworks and Built-In Test (BIT) strategies (Periodic, Initiated, and Continuous) for high-consequence systems. This includes leveraging fault-tree analysis to design algorithms that isolate anomalous behavior down to the specific LRU or software. Demonstrated understanding of the systematic challenges of distributed system synchronization - specifically how a network of geographically separated ground nodes initially coordinates clocks, shares state telemetry, loads cryptographic keys, and handles simultaneous, secure shutdowns Experience with ICBM weapon system engineering and integration Experience with complex system development on large programs As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including: - Medical, Dental & Vision coverage - 401k - Educational Assistance - Life Insurance - Employee Assistance Programs & Work/Life Solutions - Paid Time Off - Health & Wellness Resources - Employee Discounts This position's standard work schedule is 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off. Primary Level Salary Range: $152,900.00 - $229,300.00 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business. The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.