Embedded Product Security System Engineer
Listed on 2026-09-05
-
IT/Tech
Cybersecurity, Systems Engineer
System Security Engineer
At Collins Aerospace, a leader in technologically advanced, intelligent solutions, we are seeking a driven System Security Engineer to join our Embedded Product Cybersecurity Engineering team and defend mission-critical platforms from evolving cyber threats. This shared services team supports the development of products throughout the company wherever the customer has security requirements, or the system is exposed to cyber threats by its connectivity or operational use.
We develop tools and testing techniques to highlight residual defects in product design or implementation. These defects can lead to vulnerabilities that negatively impact the confidentiality, integrity, or availability of a system. Members of the security engineering team pursue security excellence by embedding with the design and implementation teams as subject matter experts supporting our Secure System Development Life Cycle (SSDLC).
This is an on-site position located in Cedar Rapids, Iowa, an established hub for aerospace and systems engineering excellence.
Primary Responsibilities:
- Developing threat model / data flow diagrams to ensure data can be properly isolated in motion and at rest
- Implementing mandatory access controls (MAC) through the development of SELinux policies
- Reviewing code to identify weaknesses in the implementation of security functions
- Developing and executing fuzzing and penetration tests to evaluate the robustness of the attack surface
- Conducting vulnerability assessments of proposed and in-service systems
- Authoring and managing cybersecurity certification artifacts to ensure alignment with industry standards and customer requirements
Basic Qualifications:
- Bachelor's degree in a STEM field and 2 years of relevant experience OR Advanced degree in Cybersecurity OR In absence of a degree, 6 years of relevant experience is required
- Embedded software development experience in Linux OS environment
- Experience coding in C, C++, Python or Rust
- Networking experience - Layer 2/Layer 3/Layer 4 protocols
Preferred Qualifications:
- Familiarity with Aviation cybersecurity standards: RTCA DO-326, DO-356, DO-355
- Knowledge of Threat Models and Data Flow Diagrams
- Data/network security implementations with Linux OS
- Understanding tailoring and hardening of Linux OS
- System and application penetration testing experience
- Experience with SAST and analyzing security impact of code defects
- Executing System & Application Fuzzing / Resiliency Tests
- Knowledge of Public Key Infrastructure (PKI)
- Industry recognized security certifications (Sec+, OSCP, CISSP, etc.) is desirable
The candidate is required to have excellent communications skills to communicate technical issues and status in both written and oral form. The candidate must be adaptable to change, determined to accomplish tasks based on program schedule, collaborate with teammates in order to learn and make good decisions, enjoy learning new technologies, and contribute to a positive work environment.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).