Senior Offensive Cybersecurity Test Engineer
Listed on 2026-01-10
-
Engineering
Cybersecurity, Systems Engineer -
IT/Tech
Cybersecurity, Systems Engineer
Overview
At Boeing, we innovate and collaborate to make the world a better place. We’re committed to fostering an environment for every teammate that’s welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us.
The Boeing Company is seeking a Senior Offensive Cybersecurity Test Engineer to support the Boeing Test & Evaluation (BT&E) cyber test capability. The selected applicant will join a highly technical Test & Evaluation team building an offensive cyber test capability in Berkeley, MO
. This position will be providing testing services to Boeing Defense Space & Security (BDS) portfolio. The primary responsibilities will include product security (cyber) test planning, integration, and execution, mission-based risk assessments, vulnerability assessments, and penetration tests. The selected applicant will become a Berkeley team member trained across the broader BT&E Product Security Capability team.
This position is expected to be 100% onsite. The selected candidate will be required to work on-site at one of the listed location options.
PositionResponsibilities Include:
Lead execution of penetration tests to identify, exploit, and assess a target system’s vulnerabilities in a threat-representative manner on embedded systems and IP-based networks
Subject Matter Expert for emulating advanced cyber adversary (advanced persistent threats) tactics, techniques and procedures (TTPs)
Lead controlled attack simulations that test the effectiveness of a blue team and its capabilities to detect, block, and mitigate attacks and breaches
Develop exploits and malware targeting modern operating systems and defenses
Reverse engineering firmware and software to support vulnerability identification
Develop cyber test tools as necessary to achieve threat emulation objectives
Communicate recommendations for improvements to customer stakeholders via reports or presentations using common frameworks such as MITRE ATT&CK, Cyber Kill Chain, etc.
Participate in test design and planning
Occasional domestic and international travel as needed
Bachelor of Science degree in Engineering, Engineering Technology (including Manufacturing Technology), Computer Science, Data Science, Mathematics, Physics, Chemistry or non-US equivalent qualifications directly related to the work statement
5+ years of experience in product security, cybersecurity research, or a related field
5+ years of experience leading projects or engineering teams
5+ years of experience planning and executing penetration testing of either IT based systems or Avionics embedded systems
5+ years of experience working with Department of Defense (DoD) organizations, projects and/or programs
3+ years of experience leading and mentoring a technical team
Able to travel both domestically and internationally
Demonstrated ability to engage with stakeholders to define/plan/resource/deliver
Experience designing and/or testing product systems
Experience working with Product Security (non-IT) Cyber Compliance and/or Avionics Embedded systems risk management assessment
Experience facilitating and/or supporting Cyber Table Top, Mission Based Cyber Risk Assessment, or equivalent exercises
Experience planning and executing penetration tests in one or more of the following domains:
Windows, Linux, VxWorks, and INTEGRITY Operating Systems
IP-Based Networks
Avionics, Embedded Systems, Non-Standard Ethernet Protocols (ARINC, MIL-STD)
RF interfaces
Experience evaluating cybersecurity of proprietary protocols, applications, and firmware within a complex, integrated environment
Experience coordinating and presenting technical content to a diverse audience
Experience with program planning (cost and schedule)
Experience with scripting languages such as Bash, Python, Power Shell
Experience with Aircraft Platforms, Weapon Systems and/or C5
ISRKnowledgeable in Cryptography and Reverse Engineering
One or more of the following
Certifications:Offensive Security Certified Engineer (OSCE)
Offensive Security Certified Professional (OSCP)
GIAC Certified Exploit Researcher and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).