Talent.com
Senior System Security Engineer
Senior System Security EngineerDraper Labs • Cambridge, MA, United States
Senior System Security Engineer

Senior System Security Engineer

Draper Labs • Cambridge, MA, United States
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Overview :

Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+ employees of Draper tackle important national challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering, lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative environment that inspires the cross-fertilization of ideas necessary for true innovation. For more information about Draper, visit www.draper.com .

Job Description Summary :

The High Availability Architecture Group within the Systems Engineering directorate is seeking a Senior System Security Engineer to guide and facilitate concept development, mission-system analysis, and requirement definition & compliance for critical, yet novel & disruptive cyber resilient technologies. This handpicked candidate must possess a unified System Security, Cybersecurity, and Cryptography expertise that can expand Draper's insight to address national security threats which remain prevalent throughout critical enterprises, infrastructure, systems, and operations. A successful candidate will be equipped to propose modern solutions embedded with security awareness, that adhere to NIST, NSA, and DoD standards, to proactively mitigate unacceptable loss and unrecoverable downtime throughout their lifecycle. The multidisciplinary proficiencies supporting this initiative are System Security Concepts & Design Principles, Resilient Architecture, Anomaly & Contingency Management, and Cryptography & Key Management.

Job Description :

Daily Responsibilities

  • Leveraging System Theoretic Process Analysis (STPA) for Attack Surface Analysis (ASA) to improve "blue team" designs and attack vector insights
  • On-time delivery and maturating of System Security work packages such as : Attack Surface Traceability | Security Requirements | Security Architecture | Off-Nominal & Contingency scenarios | Anomaly Management policies
  • Socializing and demystifying System Security, Cybersecurity, & Cryptography best practices and techniques to internal cross-disciplinary stakeholders such as : System Architecture | Avionics | Software | Hardware design teams
  • Advocating for System Security best practices, to internal and external stakeholders & customers
  • Quick turn application of critical thinking for problem framing, analyzing, and synthesizing complex problems qualitatively and quantitatively
  • Documenting insights, findings, lessons learned, and maintaining a knowledge base of contributions within Draper's collaborative Digital Engineering tool suite

General Duties

  • Develop, execute and track the performance of security measures to protect information and network infrastructure and computer systems.
  • Design computer security strategy and engineer comprehensive cybersecurity architecture.
  • Identify, define and document system security requirements and recommend solutions to management.
  • Monitor systems for irregular behavior and set up preventive measures.
  • Plan, develop, implement and update company's information security strategy.
  • Educate and train staff on information system security best practices.
  • Able to take ownership of assignments and guide others as needed; successfully lead tasks while tracking priorities, scope, cost and schedule.
  • Derive plans and approaches to solving complex problems across a program lifecycle, capturing all assumptions and adapting appropriately to changes in requirements with limited direction.
  • Independently contributes high quality content for technical reports and presentations which shows an understanding of their task and an awareness of the intended audience. Demonstrates both confidence and success when presenting technical information during meetings with internal and external stakeholders.
  • Identify program / system-level technical risks and develop and execute mitigation strategies for them.
  • Actively mentor less experienced engineers and provide thoughtful, constructive feedback
  • Skills / Abilities

  • Curiosity-driven approach to solving complex, industry and customer-driven problems as part of a multi-disciplinary team.
  • Collaborate and communicate effectively and openly with multi-disciplinary program team members. program leadership, and non-technical personnel
  • Team player able to work in a fast-paced environment.
  • Ability to balance multiple competing tasks and demands.
  • Education

    Requires a bachelor's degree in Electrical Engineering, Computer Engineering, Mechanical Engineering, Systems Engineering, Applied Physics, or related field. Master's degree preferred.

    Experience

  • Bachelor's degree requires 5-10 years' experience of working on System Security Engineer or other relevant position.
  • Master's degree requires 3-5 years' experience of working on System Security Engineer or other relevant position.
  • Additional Job Description :

    Preferred Qualifications :

  • Proficiency applying System Theoretic Process Analysis for Security (STPA-Sec) to industry challenge problems
  • Proficiency with Model-based System Engineering toolkits, such as Cameo / MagicDraw, DOORs / DoorsNG, Jama Connect for the purposes of attack surface modeling and rapid impact & gap analysis for validation
  • An astute understanding of the applications of cryptography for complex weapon and space systems, cryptographic key management, Public Key Infrastructure (PKI) and the NSA's Key Management Infrastructure
  • Experience documenting compliance towards parent specifications and standards (i.e. : NIST SP 800.160, NIST Cybersecurity Framework (CSF) 2.0, DoD Cyber Tabletop Guide, NIST SP 800-57, NIST 800.53 & Risk Management Framework (RMF), MITRE Attack Framework, and DoD Instruction 3150.02)
  • Proficiency in requirement derivation, definition, and analysis for System Security, Network Security, and Data Security needs
  • Experience integrating vulnerability remediation, risk mitigation, and incident response within the Systems Engineering process.
  • Experience drafting innovative R&D proposals to commercial government sponsors
  • Applicants selected for this position will be required to obtain and maintain a government securityGovernment security clearance.

    Connect With Draper for Future Opportunities! If you don't find the right posting in our Career Opportunities, you may submit your resume for future consideration.

    Job Location - City :

    Cambridge

    Job Location - State :

    Massachusetts

    Job Location - Postal Code :

    02139-3563

    The US base salary range for this full-time position is

    $82,300.00 - $205,750.00

    Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Union ranges will be in compliance with the collective bargaining agreement's approved rates by location and role. Your recruiter can share more about the specific salary range for your preferred location during the hiring process. Please note that the compensation details listed in US role postings reflect the base salary only, and does not include bonuses or benefits.

    Our work is very important to us, but so is our life outside of work. Draper supports many programs to improve work-life balance including workplace flexibility, employee clubs ranging from photography to yoga, health and finance workshops, off site social events and discounts to local museums and cultural activities. If this specific job opportunity and the chance to work at a nationally renowned R&D innovation company appeals to you, apply now www.draper.com / careers .

    Draper is committed to creating an inclusive environment. We understand the value of inclusivity and its impact on a high-performance culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, national origin, veteran status, or genetic information. Draper is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation, please contact hr@draper.com .

    [job_alerts.create_a_job]

    Senior System Engineer • Cambridge, MA, United States

    [internal_linking.similar_jobs]
    Senior Security Engineer / IR / Blue Team

    Senior Security Engineer / IR / Blue Team

    7AI, Inc. • Boston, MA, United States
    [job_card.full_time]
    We are seeking a Senior AI Security Engineer to join our team, focusing on defining security workflows and incident response (IR) strategies. Our AI Security Engineers are at the forefront of the Ag...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Information Systems Security Engineer (ISSE)

    Information Systems Security Engineer (ISSE)

    STR • Woburn, MA, US
    [job_card.full_time]
    The Security team at STR is comprised of highly skilled professionals who are responsible for maintaining compliance with Government protocol and directives. The Classified Cybersecurity (CCS) team ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Network Security Engineer

    Network Security Engineer

    Granite Telecommunications • Quincy, MA, United States
    [job_card.full_time]
    Granite delivers advanced communications and technology solutions to businesses and government agencies throughout the United States and Canada. We provide exceptional customized service with an emp...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Software Engineer, IAM & Cloud Security (Hybrid)

    Senior Software Engineer, IAM & Cloud Security (Hybrid)

    Sonos LLC • Boston, MA, United States
    [job_card.full_time]
    A leading technology company seeks an experienced engineer to enhance their cloud infrastructure and bolster security systems in Boston. In this hybrid role, you will collaborate with teams across m...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr. Application Security Engineer

    Sr. Application Security Engineer

    OpenGov • Boston, MA, United States
    [job_card.full_time]
    OpenGov is the leader in AI and ERP solutions for local and state governments in the U.More than 2,000 cities, counties, state agencies, school districts, and special districts rely on the OpenGov ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Security Engineer - North America

    Senior Security Engineer - North America

    Quantexa • Boston, MA, US
    [job_card.full_time]
    Do you ever have the urge to do things better than the last time? We do.And it’s this urge that drives us every day.Our environment of discovery and innovation means we’re able to creat...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Security Engineer, Cloud Infrastructure

    Senior Security Engineer, Cloud Infrastructure

    Klaviyo • Boston, MA, United States
    [job_card.full_time]
    Senior Security Engineer, Cloud Infrastructure.Senior Security Engineer, Cloud Infrastructure.We’re Klaviyo (pronounced clay-vee‑oh). We empower creators to own their destiny by making first‑party d...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Embedded Security Engineer

    Senior Embedded Security Engineer

    Webster & Webster Associates • Boston, MA, United States
    [job_card.full_time]
    Webster & Webster Associates has been engaged by a company at the forefront of embedded technology to identify an accomplished Senior Embedded Security Engineer. This role offers a unique opportunit...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Embedded Systems Engineer (Remote)

    Security Embedded Systems Engineer (Remote)

    FortifyIQ • Salem, MA, US
    [filters.remote]
    [job_card.full_time]
    We're seeking an Embedded Systems Engineer with a passion for secure hardware design and cryptography.In this role, you'll work at the intersection of hardware and software, contributing to...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Product Security Engineer

    Senior Product Security Engineer

    Mondo • Danvers, MA, US
    [job_card.full_time]
    Apply now : Senior Product Security Engineer, location is Remote.The start date is February 24th for this contract position. Senior Product Security Engineer.February 24th (to participate in a three-...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    Relativity • Boston, MA, United States
    [job_card.full_time]
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Security Engineer - Zero-Trust & Cloud Defense

    Senior Security Engineer - Zero-Trust & Cloud Defense

    Henderson Scott • Boston, MA, United States
    [job_card.full_time]
    A technology services provider is seeking a Senior Security Engineer to enhance security posture in cloud-native and hybrid environments. Responsibilities include platform integration, threat detect...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Senior Information Security Engineer

    Senior Information Security Engineer

    Whoop • Boston, MA, US
    [job_card.full_time]
    At WHOOP, we're on a mission to unlock human performance.WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.WHOOP is seeking a Se...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Security Engineer, Cloud Infrastructure

    Senior Security Engineer, Cloud Infrastructure

    Klaviyo Inc. • Boston, MA, United States
    [job_card.full_time]
    At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair sh...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Systems Engineer

    Senior Systems Engineer

    COMTECH TELECOMMUNICATIONS • Stoughton, MA, US
    [job_card.full_time]
    Comtech Telecommunications Corp.Our unique culture of innovation and employee empowerment unleashes a relentless passion for customer success. With multiple facilities located in technology corridor...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Principal SaaS Security Engineer

    Principal SaaS Security Engineer

    PTC • Boston, MA, United States
    [job_card.full_time]
    Principal SaaS Security Engineer - Hybrid - Boston.Onshape is a next-generation, global Software-as-a-Service (SaaS) product development platform. The role focuses on security operations and continu...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Security Engineer

    Senior Security Engineer

    S&P Global • Cambridge, Massachusetts, United States
    [job_card.full_time]
    This job is with S&P Global, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.Kensho is S&a...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Principal SaaS Security Engineer Boston, MA, USA Dev-Ops

    Principal SaaS Security Engineer Boston, MA, USA Dev-Ops

    PTC Inc • Boston, MA, United States
    [job_card.full_time]
    Hybrid## Principal SaaS Security EngineerBoston, MA, USAOur world is transforming, and PTC is leading the way.Our software brings the physical and digital worlds together, enabling companies to imp...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]