Senior Principal Cybersecurity Engineer, FOSS Governance and Risk Management

🔥 0 minutes ago

🐊 Florida – Remote

infoinfo

💵 $132.4k - $251.6k / year

⏰ Full Time

🟠 Senior

🔒 Insurance

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of RTX

RTX

10,000+ employees

Founded 2020

🏭 Manufacturing

💼 Consulting

📦 Logistics

Manufacturing • Consulting • Logistics

RTX is a globally recognized aerospace and defense company dedicated to transformative technologies and era-defining innovation. It operates through various businesses, including Collins Aerospace, Pratt & Whitney, and Raytheon, with a focus on sustainable, connected flight and smarter defense systems. RTX is committed to diversity, equity, and inclusion across the company and aims to solve the world’s most complex problems with cutting-edge technology and talent. Additionally, RTX is involved in significant projects like upgrading the F135 Engine Core and developing missile-defense systems. The company emphasizes corporate responsibility and sustainable practices.

📋 Description

• Define and maintain enterprise FOSS cybersecurity governance, including policies, standards, lifecycle controls, and decision frameworks • Establish FOSS vulnerability management requirements for ingestion, approved use, patching, ratings, and escalation • Design and operationalize processes for identifying, triaging, and remediating FOSS vulnerabilities • Develop and maintain a FOSS cybersecurity incident response model for enterprise coordination, threat assessment, containment, and communications • Integrate governance controls with ingestion pipelines, scanning workflows, SBOM generation, and enterprise artifact management • Partner with legal, supply chain, platform owners, and cybersecurity governance to align policies with licensing, regulatory, and software supply chain requirements • Provide expert guidance to programs and engineering teams on risk-based decisions and FOSS governance adherence • Guide teams in effective Software Bill of Materials (SBOM) use • Develop technical documentation, governance models, workflows, diagrams, policy standards, and process guidance • Travel as needed, estimated at 10–15%

🎯 Requirements

• Bachelor’s degree in Cybersecurity, Engineering, Computer Science, Software Engineering, or related STEM discipline • Minimum of 10 years of experience in cybersecurity engineering, governance, vulnerability management, secure software development, or supply chain security • Demonstrated experience developing or operating enterprise security policies, standards, or risk based decision frameworks • Expertise in software supply chain security, FOSS vulnerability analysis, threat triage, or incident response processes • Practical understanding of SCA tooling, SBOM technologies, and enterprise monitoring of open-source components • Experience collaborating with cross disciplinary teams including legal, supply chain, engineering, DT, and cyber governance • Strong technical writing skills for creating policies, workflows, and governance documentation • Experience with DevSecOps • Experience with Agile development such as Scrum, Continuous Integration, Automated Testing, etc. • U.S. citizenship required • Ability to obtain and maintain a U.S. government security clearance • Active and existing DoD Secret security clearance required after day 1 • Advanced degree in Cybersecurity, Engineering, Computer Science, Software Engineering, or related field preferred • Experience with enterprise artifact ecosystems such as JFrog and Sonatype or large-scale CI/CD environments preferred • Background in developing vulnerability scoring methodologies or enterprise-wide threat triage models preferred • Experience with regulatory bodies, audit organizations, or software supply chain security frameworks such as NIST SSDF, SLSA, CMMC, and EO 14028 preferred • Experience leading cybersecurity governance initiatives across multiple business units preferred • Preferred: Within 50 miles of an RTX facility

🏖️ Benefits

• Medical insurance • Dental insurance • Vision insurance • Life insurance • Short-term disability • Long-term disability • 401(k) match • Flexible spending accounts • Flexible work schedules • Employee assistance program • Employee Scholar Program • Parental leave • Paid time off • Holidays • Annual short-term and/or long-term incentive compensation programs, where eligible

Apply Now

Similar Jobs

🔥 27 minutes ago

Jerry

201 - 500

💼 Consulting

📦 Logistics

📣 Marketing

Remote insurance agent serving Jerry.ai customers with auto, home, and other policy sales or service. Matching customers to coverage through Jerry.ai’s insurance app.

🔥 2 hours ago

Affirm

1001 - 5000

💳 Fintech

👥 B2C

🛍️ eCommerce

Financial Model Risk Management Lead validating finance and analytics models for Affirm’s buy-now-pay-later platform. Leading model governance, risk challenges, and remediation across Finance and Analytics.

🕒 Yesterday

Affirm

1001 - 5000

💳 Fintech

👥 B2C

🛍️ eCommerce

Security risk specialist automating third-party risk management for Affirm’s buy-now-pay-later platform. Assessing vendors, building Python workflows, and improving security governance across U.S. operations.

🕒 Yesterday

American Health Marketplace

1001 - 5000

🏥 Healthcare

🛡️ Insurance

⚕️ Healthcare Insurance

Insurance enrollment agent helping U.S. families secure Home Health and ACA coverage. Advising clients on plans from top national insurance carriers remotely.

🕒 Yesterday

iCareManager

51 - 200

🏥 Healthcare

💼 Consulting

⚕️ Healthcare Insurance

Remote Insurance Verification Representative verifying patient coverage, benefits, referrals, and authorizations for iCare Health Solutions. Documenting insurance data and billing codes in electronic medical records while supporting patients and providers.

🗣️🇪🇸 Spanish Required