Cybersecurity Engineer (Embedded Systems)
Position Summary
Seeking a *Software Cybersecurity Engineer* to support cybersecurity for *Trip Optimizer® and LOCOTROL* product lines. This role will work with software development, systems engineering, and program teams throughout the product development lifecycle.
Key Responsibilities
* Support cybersecurity activities across the *software development lifecycle (SSDLC)*.
* Maintain cybersecurity documentation, including *CATO evidence packages*.
* Perform and track vulnerability assessments, security scans, and remediation activities.
* Review software architectures, designs, and requirements for security risks.
* Support *threat modeling, risk assessments, and security impact analysis*.
* Track security findings and work with engineering teams through resolution.
* Support cybersecurity compliance, audits, and readiness assessments.
* Develop cybersecurity metrics, dashboards, and status reports.
* Provide guidance on *secure C++ coding* and vulnerability remediation.
* Integrate cybersecurity requirements into product development processes.
Required Qualifications
* Bachelor’s degree in *Cybersecurity, Information Security, Computer Science, Software Engineering, Computer Engineering*, or related technical field.
* Experience supporting cybersecurity in *software, embedded systems, or industrial environments*.
* Experience with security scanning/analysis tools.
* Understanding of cybersecurity frameworks and standards.
* Strong technical documentation and communication skills.
* Ability to work independently and collaborate with cross-functional engineering teams.
* Knowledge of *vulnerability management, threat modeling, risk assessment, SSDLC, and security compliance/governance*.
Preferred Skills
* Experience with *Polaris, Black Duck, Coverity, SAST, DAST, or SCA* tools.
* Embedded *C++ / RTOS / QNX Neutrino* experience.
* *DevSecOps, CI/CD, GitLab, Jenkins* security integration.
* IBM ELM Tool Suite experience.
* Security certifications such as *Security+, CISSP, GSEC, or SSCP*.
* Experience in *rail, transportation, industrial automation, or safety-critical environments*.
* Knowledge of *IEC 62443, NIST CSF, and NIST 800-53*.
Ideal Candidate
A cybersecurity professional with strong *software/embedded security experience*, vulnerability management, secure development, and compliance expertise—ideally with exposure to *C++, RTOS, DevSecOps, and safety-critical or industrial systems*.
#IT03
Pay: $63.00 - $70.00 per hour
Benefits:
* Dental insurance
* Health insurance
* Vision insurance
Work Location: In person