Raytheon logo

Software Security Lead - Principal Software Engineer - S3E

Job Overview

briefcase

Employment Type

Full-time
moneybag

Compensation

Salary
Range $110,900.00 - $153,000.00
diamond

Benefits

Health Insurance
Dental Insurance
Paid Time Off
Retirement Plan
employee wellness program
Professional development opportunities
Life insurance

Job Description

RTX, formerly known as Raytheon Technologies, stands as the world's largest aerospace and defense company, employing over 185,000 talented professionals united by a shared purpose to address and solve some of the most complex challenges facing the world today. With a heritage built on more than 100 years of experience and cutting-edge engineering expertise, RTX integrates three market-leading business segments to provide unmatched capabilities and opportunities. The company is dedicated to pushing the boundaries of science, fostering innovation, and ensuring the protection and connectivity of the world through advanced aerospace and defense technologies.

RTX is committed to delivering solutions that enable the United States and allied nations to defend their freedoms and deter aggression, thereby contributing to a safer and more secure global environment. The organization's steadfast values—trust, respect, accountability, collaboration, and innovation—shape its culture and drive its mission to develop technologies that impact millions worldwide.

The role of Software Security Lead (SSL) within RTX's Software Security Sensors and Effectors Department, part of the Software Product Assurance (SPA) Center, is a critical and highly specialized position based in Tucson, Arizona. This is an onsite role that requires the candidate to have an active and transferable U.S. government-issued security clearance due to the sensitive nature of the work.

The SSL will work closely with Systems and Software Architects as well as program stakeholders to ensure that robust software security measures are embedded throughout the program's lifecycle, from requirements gathering to delivery. The lead will be responsible for capturing and developing security-relevant software requirements, assessing their impact on the architecture and design, and ensuring compliance with secure coding standards and Software Product Assurance Command Media.

Key responsibilities include acting as the Technical Lead and possibly the Agile Product Owner for the Software Security Team, owning the implementation of software security to meet system security requirements, driving secure coding practices across diverse programming languages, and overseeing off-nominal testing to ensure the software maintains security even during failure conditions. The SSL will also explore the use of compiler features and build tools that enhance executable security and ensure security-critical behaviors are preserved.

Additionally, the SSL, in partnership with the Systems Security Lead, will be accountable for the software assurance implementation outlined in the Program Protection Implementation Plan (PPIP). This includes conducting software vulnerability risk assessments on reused and final-delivered code, and managing the Software Bill of Materials (SBOM) associated with final software deliveries.

Candidates ideal for this position will possess a strong background in secure software design and development, especially in applying secure coding principles to create hardened software applications. The role demands experience in object-oriented design and embedded development, familiarity with embedded operating systems like VxWorks or Embedded Linux, and practical knowledge of encryption and cryptographic algorithms.

Due to the nature of the defense contracts and security clearance requirements, this position requires the candidate to be a U.S. citizen eligible to obtain and maintain an active DoD Secret security clearance. This role offers a unique opportunity to contribute to national security by developing secure software solutions within a leading aerospace and defense organization renowned for technological excellence and innovation.

Job Requirements

  • Bachelor's degree in science, technology, engineering or mathematics (STEM)
  • Minimum 8 years of related experience
  • Experience in object-oriented software design and embedded development using languages such as C and C++
  • Ability to obtain and maintain a US security clearance
  • U.S. citizenship is required
  • Experience with embedded OS like VxWorks, Embedded Linux, or similar
  • Knowledge of secure coding principles and implementation
  • Experience with embedded software security and cryptographic algorithms
  • Experience with secure boot concepts
  • Experience working onsite at Tucson, Arizona location

Job Qualifications

  • Bachelors degree in science, technology, engineering or mathematics (STEM) and 8 years of related experience
  • Experience in object-oriented software design and embedded development using languages such as C and or C++
  • Experience with Xilinx UltaScale+ MPSoC, Versal, or similar embedded processors
  • Experience with embedded OS like VxWorks, Embedded Linux, or similar
  • Embedded software security and cryptographic algorithm experience
  • Experience with secure boot concepts
  • Understanding of secure coding principles, architecture and implementation of secure coding best practices
  • Ability to obtain and maintain a US security clearance
  • Experience with validation and verification of software applications
  • Knowledge of Linux/Unix environment
  • Interfacing with FPGAs
  • Interfacing with low-level memory drivers
  • Inter-processor communication
  • ARM architecture
  • Experience designing, implementing, testing, or fielding real-time security-oriented solutions on Department of Defense (DoD) programs
  • Experience using security-relevant tools and devices for security auditing, network security, host/server security, communication security, or policy management
  • Experience in Agile and DevSecOps environments
  • Experience in Agile/Scrum/Kanban frameworks and development environments
  • Experience using software configuration management and bug tracking tools
  • Experience with Python / Perl
  • Knowledge of modern computer architecture and hardware technologies including PCIe, GPIO, I2C, SATA
  • Experience with Field Programmable Gate Arrays (FPGAs)
  • Experience with Application-Specific Integrated Circuits (ASICs)

Job Duties

  • Act as the technical lead and possibly the agile product owner for the software security team
  • Primary owner of the software security implementation to ensure compliance with system security requirements
  • Adopt and implement secure coding standards for each programming language used
  • Drive off-nominal testing by ensuring the software will remain in a secure state during failure conditions and developing negative test cases for bypassing security
  • Consider using compiler, interpreter and build tool features that improve executable security and ensure the compiler does not optimize out any security-critical behaviors
  • Partner with the systems security lead to provide software assurance implementation for the Program Protection Implementation Plan (PPIP)
  • Conduct software vulnerability risk assessment on reused code and the final delivery
  • Manage the Software Bill of Materials (SBOM) on the final delivery

Job Criteria

Experience

No experience required


Job Location

Your Profile Is Visible To Hiring Managers Across OysterLink.

We'll match you with best jobs

Get job offers faster

Business woman
Business man
Search For More Opportunities:

How Candidates Get Hired Faster

Apply to 2–3 similar roles

Complete profile & get best matches

Check new opportunities daily

Woman chef
Man chef