Job Closed
This listing is no longer active.
Open Source Security Compliance Engineer, Experienced or Senior (Virtual)
Location
Florida
Posted
105 days ago
Salary
$94.4K - $178.3K / year
Seniority
Senior
Job Description
Open Source Security Compliance Engineer, Experienced or Senior (Virtual)
Boeing
Job Description At Boeing, we innovate and collaborate to make the world a better place. We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us. The Boeing Company is currently seeking Open Source Security Compliance Engineer , (Experienced or Senior) (Virtual) to support our Open Source Program Office located in Orlando, Florida (Virtual) . This position will focus on supporting the Products and Capabilities team. The Open Source Program Office's mission is to champion open-source engagement across the enterprise and deliver a world class open-source management experience with flawless compliance. To fulfill that mission, we are looking for a Software Security Engineer to evaluate and mitigate security risks within the enterprise's use and contribution of open-source software, perform product security risk, vulnerability analyses, and security audits. The individual selected will also be automating security assessments and translating the Chief Engineer's strategic security analysis (risk assessments, policy definitions) into automated and integrated open-source security practices for the rest of the company. This position has been identified as a virtual opportunity and will not require the selected candidate to relocate. Position Responsibilities: Operationalize the open-source policy and process through automation Independently investigate, analyze, and resolve licensing issues, driving for business-based outcomes Automate Software Composition Analysis (SCA) through a combination of COTS, open source, and in-house tooling. Conduct trade studies and work with Product Owners to meet requirements for a broad range of stakeholders Basic Qualifications (Required Skills/ Experience): 1+ years' experience with software licensing and knowledge of issues with the use of third party and open-source software 2+ years' experience in the application of software cybersecurity principles and techniques 3+ years' experience in software development lifecycle Ability to obtain a U.S. Security Clearance for which the U.S. Government requires U.S. Citizenship Bachelor of Science degree from an accredited course of study in engineering, engineering technology (includes manufacturing engineering technology), chemistry, physics, mathematics, data science, or computer science Preferred Qualifications (Desired Skills/Experience): Ability to independently make and execute Software product level licensing decisions Ability to interact effectively with Legal, Ethics, and Program Management Previous experience performing license assessments and working licensing issues Excellent communication skills, both verbal and written Travel: 10% Drug Free Workplace: Boeing is a Drug Free Workplace (DFW) where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies. Pay & Benefits: At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities. The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work. The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements. Pay is based upon candidate experience and qualifications, as well as market and business considerations. Summary pay range for Experienced Level: $94,350 - $146,050 Summary pay range for Senior Level: $114,750 - $178,250 Applications for this position will be accepted until Feb. 24, 2026 Export Control Requirements: This position must meet U.S. export control compliance requirements. To meet U.S. export control compliance requirements, a "U.S. Person" as defined by 22 C.F.R. §120.62 is required. "U.S. Person" includes U.S. Citizen, U.S. National, lawful permanent resident, refugee, or asylee. Export Control Details: US based job, US Person required Education Bachelor's Degree or Equivalent Required Relocation Relocation assistance is not a negotiable benefit for this position. Security Clearance This position requires the ability to obtain a U.S. Security Clearance for which the U.S. Government requires U.S. Citizenship. An interim and/or final U.S. Secret Clearance Post-Start is required. Visa Sponsorship Employer will not sponsor applicants for employment visa status. Shift This position is for 1st shift Equal Opportunity Employer: Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law.
Job Requirements
- Manage the configuration and output of dependency scanners, triage critical open-source software vulnerabilities, and ensure timely remediation with development teams.
- Translate approved legal/license policies into code-based checks and automated tooling to prevent incompatible license usage in new projects.
- Engineer and maintain security and license scanning tools; enforce compliance by ensuring automated build failures upon policy violation.
- Document all automated processes and serve as the technical liaison, transferring security analysis into scalable, repeatable engineering practices across the enterprise.
- Collaborate with the Product Owner on the backlog and technical roadmap
- Seek out additional automation opportunities
- Track and improve KPIs
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Impulsar la transformación digital con soluciones de virtualización, almacenamiento y seguridad. • Colaborar en el diseño de soluciones de servicios Hosting. • Administrar DataCenters Virtuales y mantener la infraestructura relacionada. • Garantizar la seguridad en entornos de Data Center.
Information Security Accreditations Specialist
ExperianBased in Dublin, Leinster, Ireland, Experian is a global information services company that operates in 40 countries around the world and has additional headquarters in the United K
• Coordinate compliance with standards (PCI, HIPAA, ISO 27002, SOC 1/2/3, FISMA/FedRAMP, etc.) under guidance. • Maintain evidence repositories and partner with SMEs to refresh artifacts. • Coordinate audits and certification efforts, partnering with support teams on timelines and resourcing. • Work with stakeholders to establish program and workstream governance and ensure adherence to standards. • Define, document, maintain, and communicate project scope, plans, risks, and issues, using them to drive alignment. • Facilitate discussions with external auditors to ensure full program engagement. • Provide program-level status reporting and collaborate with workstream owners for detailed updates. • Partner with policy and standards teams to incorporate compliance-driven updates into enterprise policies. • Develop compliance metrics and reporting to highlight status and risks. • Communicate compliance posture and effectiveness to Management on a regular schedule. • Follow up on identified deficiencies to ensure appropriate remediation.
Information Security Expert
ExperianBased in Dublin, Leinster, Ireland, Experian is a global information services company that operates in 40 countries around the world and has additional headquarters in the United K
• Lead client audits (onsite/virtual) including presentation of evidence, explanation of controls, planning and execution of pre and post audit activities (coordinate needed remediation, etc.). • Support commercial teams to present Experian's security controls and risk posture to clients through Requests for Information / Requests for Proposal and/or pre-sales consultancy. • Review contractual security clauses & deliverables under contractual agreements to ensure Experian does not exceed risk tolerance or be put in a position where it fails in its ability to meet client requirements. • Take the lead on articulating Experian's security posture to justify any changes with clients. • Analyze audit results and post audit reports and follow up on security items. • Conduct gap analysis and articulate contractual risks to internal stakeholders to enable risk-informed contractual decisions. • Maintain current and up-to-date evidence repository. • Provide accurate, valid, and appropriate responses in a timely manner to security questionnaires and ad-hoc inquiries sent by prospective and existing clients and business partners. • Provide SME consultancy to Business Units on Experian information security governance and risk management framework in the context of the above. • Maintain client-facing security documentation ensuring its continued relevance and accuracy. • Collaborate with global team members across regions to ensure consistent experiences for clients around the world, and act as a mentor to junior members in sharing knowledges and experiences.
• Analysis of major risks affecting Industrial Information Systems (IIS) • Design of a maturity assessment tool • Development of a Proof of Concept (PoC) based on security level evaluation



