Advanced Cyber Security Architect Engineer
Indexed description
Honeywell Global Security (HGS) integrates security into every product to help protect the people, processes, and assets that power Honeywell’s customers.
You will report directly to our Director of Cyber Security, and you’ll work out of our Phoenix, AZ location on a Hybrid work schedule.
As an Advanced Cyber Security Architect, you will join a growing centralized Product Security organization and partner with product and engineering teams to implement secure-by-design practices and strengthen SSDLC execution across products. You will lead security reviews, provide hands-on guidance, and help teams build secure software at scale. Reporting to the Director of Supply Chain Cyber Security, you will help apply and shape security baselines, improve processes, implement scalable solutions, and reduce risk across a growing portfolio of core products. This is a hands-on role focused on partnering directly with engineering teams to deliver secure products.
This is a highly cross-functional role with broad visibility and influence. You will contribute to security standards and best practices that touch Honeywell’s products, product lifecycle, cyber supply chain, and business operations. You will also work closely with suppliers and industry partners to stay ahead of an evolving threat landscape.
Responsibilities
KEY RESPONSIBILITIES
- Partner with development teams and suppliers to assess product risk and implement the right security controls
- Provide product security guidance and coaching to software and firmware development teams
- Apply and refine security requirements for products and services
- Lead cross-functional supplier cyber assessments and related risk-reduction activities
- Support adoption of SSDLC (Secure Software Development Lifecycle) across vendor product teams
- Mentor engineers, security architects, and security advocates to advance secure-by-design and shift-left practices
- Support security reviews of AI-enabled features and tools used in Honeywell’s cyber supply chain and operations
- Provide security input into cloud and application architectures to ensure security by design across services and offerings
- Ensure data security requirements are understood and implemented in line with applicable laws and regulations
- Lead security reviews including threat modeling, vulnerability and risk assessments, and analysis of findings from penetration tests and tools such as SAST, SCA, and container scans
- Support incident response investigations and coordinate remediation planning and execution
The application period for the job is estimated to be 40 days from the job posting date; however, this may be shortened or extended depending on business needs and the availability of qualified candidates.
Qualifications
YOU MUST HAVE
- 6+ years of experience in product security, application security, or a related field
- Hands-on experience with the Secure Software Development Lifecycle (SSDLC) practices and tooling
- Strong understanding of security-by-design principles
- Up-to-date knowledge of current and emerging threats and common exploitation techniques
- Experience with NIST SP 800-218 and ISO/IEC 62443
- Strong interpersonal skills, including the ability to align diverse groups, negotiate priorities, and resolve conflicts
- Experience working cross-functionally and with external partners
- Experience defining, integrating, and monitoring metrics
- Experience with cloud security architecture and controls across providers such as Azure, AWS, or GCP
- Experience with threat modeling
- Experience with security tools such as SAST, SCA, vulnerability scanning, and penetration testing
- Understanding of Agile software development and DevOps (CI/CD) practices
- Experience with SaaS, Cloud, IoT, and OT security controls
- Solid understanding of cryptography, encryption, PKI, secure boot, and open-source risk management
- Security certifications such as CISSP, CSSLP, CCSP, or AIGP
- Knowledge of AI frameworks such as NIST SP 800-218A, NIST AI RMF/Profile, ISO/IEC 27090, ISO/IEC 42001, MITRE ATLAS, or the OWASP Gen AI Security Project
- Experience with SBOM and AIBOM
- A passion for results and continuous improvement
- A master’s degree
THE BUSINESS UNIT
The Corporate Strategic Business Group (CORP SBG) at Honeywell is a division focused on corporate-level functions and initiatives that support the overall operations and strategy of the company. It is responsible for overseeing areas such as finance, legal, human resources, communications, and corporate governance, working closely with other business units and SBGs to ensure alignment and coordination across the organization. The CORP SBG plays a crucial role in the overall strategic direction and management of Honeywell's corporate functions and operations, supporting the company's business objectives.
U.s. Person Requirements
Due to compliance with U.S. export control laws and regulations, candidate must be a U.S. Person, which is defined as, a U.S. citizen, a U.S. permanent resident, or have protected status in the U.S. under asylum or refugee status or have the ability to obtain an export authorization.
About Us
Honeywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments – powered by our Honeywell Forge software – that help make the world smarter, safer and more sustainable.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search